2024 CVE Vulnerabilities
39,235 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-0626 | MEDIUM | 5.3 | 0.6% | Apr 9, 2024 | The WooCommerce Clover Payment Gateway plugin for WordPress is vulnerable to unauthorized modification of data due to a ... |
| CVE-2024-0598 | MEDIUM | 4.8 | 0.7% | Apr 9, 2024 | The Gutenberg Blocks by Kadence Blocks – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Site S... |
| CVE-2024-0588 | MEDIUM | 4.3 | 0.9% | Apr 9, 2024 | The Paid Memberships Pro – Content Restriction, User Registration, & Paid Subscriptions plugin for WordPress is vulnerab... |
| CVE-2024-0376 | MEDIUM | 5.4 | 0.7% | Apr 9, 2024 | The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Wrap... |
| CVE-2024-31454 | MEDIUM | 6.5 | 0.5% | Apr 9, 2024 | PsiTransfer is an open source, self-hosted file sharing solution. Prior to version 2.2.0, the absence of restrictions on... |
| CVE-2024-31453 | MEDIUM | 6.5 | 0.5% | Apr 9, 2024 | PsiTransfer is an open source, self-hosted file sharing solution. Prior to version 2.2.0, the absence of restrictions on... |
| CVE-2024-27247 | MEDIUM | 6.7 | 0.1% | Apr 9, 2024 | Improper privilege management in the installer for Zoom Desktop Client for macOS before version 5.17.10 may allow a priv... |
| CVE-2024-27242 | MEDIUM | 6.8 | 0.5% | Apr 9, 2024 | Cross site scripting in Zoom Desktop Client for Linux before version 5.17.10 may allow an authenticated user to conduct ... |
| CVE-2024-25116 | MEDIUM | 5.5 | 0.2% | Apr 9, 2024 | RedisBloom adds a set of probabilistic data structures to Redis. Starting in version 2.0.0 and prior to version 2.4.7 an... |
| CVE-2024-31867 | MEDIUM | 6.5 | 1.8% | Apr 9, 2024 | Improper Input Validation vulnerability in Apache Zeppelin. The attackers can execute malicious queries by setting impr... |
| CVE-2024-31455 | MEDIUM | 4.3 | 0.8% | Apr 9, 2024 | Minder by Stacklok is an open source software supply chain security platform. A refactoring in commit `5c381cf` added th... |
| CVE-2024-29992 | MEDIUM | 5.5 | 0.7% | Apr 9, 2024 | Azure Identity Library for .NET Information Disclosure Vulnerability |
| CVE-2024-29905 | MEDIUM | 5.5 | 0.3% | Apr 9, 2024 | DIRAC is an interware, meaning a software framework for distributed computing. Prior to version 8.0.41, during the proxy... |
| CVE-2024-29064 | MEDIUM | 5.5 | 0.7% | Apr 9, 2024 | Windows Hyper-V Denial of Service Vulnerability |
| CVE-2024-29063 | MEDIUM | 5.5 | 0.8% | Apr 9, 2024 | Azure AI Search Information Disclosure Vulnerability |
| CVE-2024-29056 | MEDIUM | 4.3 | 1.0% | Apr 9, 2024 | Windows Authentication Elevation of Privilege Vulnerability |
| CVE-2024-28924 | MEDIUM | 6.7 | 0.6% | Apr 9, 2024 | Secure Boot Security Feature Bypass Vulnerability |
| CVE-2024-28923 | MEDIUM | 6.4 | 0.5% | Apr 9, 2024 | Secure Boot Security Feature Bypass Vulnerability |
| CVE-2024-28922 | MEDIUM | 4.1 | 0.7% | Apr 9, 2024 | Secure Boot Security Feature Bypass Vulnerability |
| CVE-2024-28921 | MEDIUM | 6.7 | 0.7% | Apr 9, 2024 | Secure Boot Security Feature Bypass Vulnerability |
| CVE-2024-28919 | MEDIUM | 6.7 | 0.6% | Apr 9, 2024 | Secure Boot Security Feature Bypass Vulnerability |
| CVE-2024-28917 | MEDIUM | 6.2 | 0.9% | Apr 9, 2024 | Azure Arc-enabled Kubernetes Extension Cluster-Scope Elevation of Privilege Vulnerability |
| CVE-2024-28903 | MEDIUM | 6.7 | 0.7% | Apr 9, 2024 | Secure Boot Security Feature Bypass Vulnerability |
| CVE-2024-28902 | MEDIUM | 5.5 | 0.8% | Apr 9, 2024 | Windows Remote Access Connection Manager Information Disclosure Vulnerability |
| CVE-2024-28901 | MEDIUM | 5.5 | 0.7% | Apr 9, 2024 | Windows Remote Access Connection Manager Information Disclosure Vulnerability |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now