2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-9300MEDIUM6.1A vulnerability classified as problematic was found in SourceCodester Online Railway Reservation System 1.0. This vulner...
CVE-2024-9299MEDIUM5.4A vulnerability classified as problematic has been found in SourceCodester Online Railway Reservation System 1.0. This a...
CVE-2024-9298MEDIUM4.3A vulnerability was found in SourceCodester Online Railway Reservation System 1.0. It has been rated as problematic. Aff...
CVE-2024-8189MEDIUM4.8The WP MultiTasking – WP Utilities plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘wpmt_menu_...
CVE-2024-9297MEDIUM6.3A vulnerability was found in SourceCodester Online Railway Reservation System 1.0. It has been declared as critical. Aff...
CVE-2024-9296CRITICAL9.8A vulnerability was found in SourceCodester Advocate Office Management System 1.0. It has been classified as critical. A...
CVE-2024-8712MEDIUM6.1The GTM Server Side plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg...
CVE-2024-9295CRITICAL9.8A vulnerability was found in SourceCodester Advocate Office Management System 1.0 and classified as critical. This issue...
CVE-2024-23967HIGH8Autel MaxiCharger AC Elite Business C50 WebSocket Base64 Decoding Stack-based Buffer Overflow Remote Code Execution Vuln...
CVE-2024-23961MEDIUM6.8Alpine Halo9 UPDM_wemCmdUpdFSpeDecomp Command Injection Remote Code Execution Vulnerability. This vulnerability allows p...
CVE-2024-23960MEDIUM4.6Alpine Halo9 Improper Verification of Cryptographic Signature Vulnerability. This vulnerability allows physically presen...
CVE-2024-23959HIGH8Autel MaxiCharger AC Elite Business C50 BLE AppChargingControl Stack-based Buffer Overflow Remote Code Execution Vulnera...
CVE-2024-23958HIGH8.8Autel MaxiCharger AC Elite Business C50 BLE Hardcoded Credentials Authentication Bypass Vulnerability. This vulnerabilit...
CVE-2024-23935HIGH7.5Alpine Halo9 DecodeUTF7 Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows netwo...
CVE-2024-23924MEDIUM6.8Alpine Halo9 UPDM_wemCmdCreatSHA256Hash Command Injection Remote Code Execution Vulnerability. This vulnerability allows...
CVE-2024-23923HIGH8.8Alpine Halo9 prh_l2_sar_data_ind Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows network-a...
CVE-2024-23957HIGH8.8Autel MaxiCharger AC Elite Business C50 DLB_HostHeartBeat Stack-based Buffer Overflow Remote Code Execution Vulnerabilit...
CVE-2024-23938HIGH8.8Silicon Labs Gecko OS Debug Interface Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabilit...
CVE-2024-8715MEDIUM6.1The Simple LDAP Login plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_a...
CVE-2024-9189MEDIUM5.3The EU/UK VAT Manager for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a m...
CVE-2024-9023MEDIUM5.4The WP-WebAuthn plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wwa_login_form shortc...
CVE-2024-8788MEDIUM6.1The EU/UK VAT Manager for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the us...
CVE-2024-8547MEDIUM5.4The Simple Popup Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's [popup] short...
CVE-2024-8353CRITICAL9.8The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to PHP Object Injection in all ...
CVE-2024-9294MEDIUM6.3A vulnerability, which was classified as critical, has been found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff922722...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now