2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-13794MEDIUM5.3The WP Ghost (Hide My WP Ghost) – Security & Firewall plugin for WordPress is vulnerable to Login Page Dislcosure in all...
CVE-2024-13601MEDIUM4.3The Majestic Support – The Leading-Edge Help Desk & Customer Support Plugin plugin for WordPress is vulnerable to Insecu...
CVE-2024-13374MEDIUM6.5The WP Table Manager plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on thew...
CVE-2024-13769MEDIUM5.4The Puzzles | WP Magazine / Review with Store WordPress Theme + RTL theme for WordPress is vulnerable to Stored Cross-Si...
CVE-2024-13665MEDIUM5.4The Admire Extra plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'space' shortcode in...
CVE-2024-13658MEDIUM5.4The NGG Smart Image Search plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'hr_SIS_ne...
CVE-2024-12164MEDIUM4.3The WPSyncSheets Lite For WPForms – WPForms Google Spreadsheet Addon plugin for WordPress is vulnerable to unauthorized ...
CVE-2024-11746MEDIUM5.4The Discover the Best Woocommerce Product Brands Plugin for WordPress – Woocommerce Brands Plugin plugin for WordPress i...
CVE-2024-13749MEDIUM6.1The StaffList plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.2...
CVE-2024-13701MEDIUM5.4The Liveticker (by stklcode) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'livetic...
CVE-2024-13554MEDIUM5.3The The Ultimate WordPress Toolkit – WP Extended plugin for WordPress is vulnerable to unauthorized modification of data...
CVE-2024-13541MEDIUM5.4The aDirectory – WordPress Directory Listing Plugin plugin for WordPress is vulnerable to unauthorized loss of data due ...
CVE-2024-13539MEDIUM5.3The AForms Eats plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.3.1. ...
CVE-2024-53880MEDIUM6.5NVIDIA Triton Inference Server contains a vulnerability in the model loading API, where a user could cause an integer ov...
CVE-2024-0145MEDIUM6.8NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause a heap-based buffer overflow issue by mea...
CVE-2024-0144MEDIUM6.8NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause a buffer overflow issue by means of a spe...
CVE-2024-0143MEDIUM6.8NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause an out-of-bounds write issue by means of ...
CVE-2024-21971MEDIUM5.5Improper input validation in AMD Crash Defender could allow an attacker to provide the Windows® system process ID to a k...
CVE-2024-0142MEDIUM6.8NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause an out-of-bounds write issue by means of ...
CVE-2024-54916MEDIUM6.8An issue in the SharedConfig class of Telegram Android APK v.11.7.0 allows a physically proximate attacker to bypass aut...
CVE-2024-54772MEDIUM5.4An issue was discovered in the Winbox service of MikroTik RouterOS long-term release v6.43.13 through v6.49.13 and stabl...
CVE-2024-44336MEDIUM5.3An issue in AnkiDroid Android Application v2.17.6 allows attackers to retrieve internal files from the /data/data/com.ic...
CVE-2024-57777MEDIUM5.1Directory Traversal vulnerability in Ianproxy v.0.1 and before allows a remote attacker to obtain sensitive information
CVE-2024-57241MEDIUM6.5Dedecms 5.71sp1 and earlier is vulnerable to URL redirect. In the web application, a logic error does not judge the inpu...
CVE-2024-55212MEDIUM6.5DNNGo xBlog v6.5.0 was discovered to contain a SQL injection vulnerability via the Categorys parameter at /DNNGo_xBlog/R...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now