2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-0626MEDIUM5.3The WooCommerce Clover Payment Gateway plugin for WordPress is vulnerable to unauthorized modification of data due to a ...
CVE-2024-0598MEDIUM4.8The Gutenberg Blocks by Kadence Blocks – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Site S...
CVE-2024-0588MEDIUM4.3The Paid Memberships Pro – Content Restriction, User Registration, & Paid Subscriptions plugin for WordPress is vulnerab...
CVE-2024-0376MEDIUM5.4The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Wrap...
CVE-2024-31454MEDIUM6.5PsiTransfer is an open source, self-hosted file sharing solution. Prior to version 2.2.0, the absence of restrictions on...
CVE-2024-31453MEDIUM6.5PsiTransfer is an open source, self-hosted file sharing solution. Prior to version 2.2.0, the absence of restrictions on...
CVE-2024-27247MEDIUM6.7Improper privilege management in the installer for Zoom Desktop Client for macOS before version 5.17.10 may allow a priv...
CVE-2024-27242MEDIUM6.8Cross site scripting in Zoom Desktop Client for Linux before version 5.17.10 may allow an authenticated user to conduct ...
CVE-2024-25116MEDIUM5.5RedisBloom adds a set of probabilistic data structures to Redis. Starting in version 2.0.0 and prior to version 2.4.7 an...
CVE-2024-31867MEDIUM6.5Improper Input Validation vulnerability in Apache Zeppelin. The attackers can execute malicious queries by setting impr...
CVE-2024-31455MEDIUM4.3Minder by Stacklok is an open source software supply chain security platform. A refactoring in commit `5c381cf` added th...
CVE-2024-29992MEDIUM5.5Azure Identity Library for .NET Information Disclosure Vulnerability
CVE-2024-29905MEDIUM5.5DIRAC is an interware, meaning a software framework for distributed computing. Prior to version 8.0.41, during the proxy...
CVE-2024-29064MEDIUM5.5Windows Hyper-V Denial of Service Vulnerability
CVE-2024-29063MEDIUM5.5Azure AI Search Information Disclosure Vulnerability
CVE-2024-29056MEDIUM4.3Windows Authentication Elevation of Privilege Vulnerability
CVE-2024-28924MEDIUM6.7Secure Boot Security Feature Bypass Vulnerability
CVE-2024-28923MEDIUM6.4Secure Boot Security Feature Bypass Vulnerability
CVE-2024-28922MEDIUM4.1Secure Boot Security Feature Bypass Vulnerability
CVE-2024-28921MEDIUM6.7Secure Boot Security Feature Bypass Vulnerability
CVE-2024-28919MEDIUM6.7Secure Boot Security Feature Bypass Vulnerability
CVE-2024-28917MEDIUM6.2Azure Arc-enabled Kubernetes Extension Cluster-Scope Elevation of Privilege Vulnerability
CVE-2024-28903MEDIUM6.7Secure Boot Security Feature Bypass Vulnerability
CVE-2024-28902MEDIUM5.5Windows Remote Access Connection Manager Information Disclosure Vulnerability
CVE-2024-28901MEDIUM5.5Windows Remote Access Connection Manager Information Disclosure Vulnerability

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now