2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-9300 | MEDIUM | 6.1 | 0.6% | Sep 28, 2024 | A vulnerability classified as problematic was found in SourceCodester Online Railway Reservation System 1.0. This vulner... |
| CVE-2024-9299 | MEDIUM | 5.4 | 0.4% | Sep 28, 2024 | A vulnerability classified as problematic has been found in SourceCodester Online Railway Reservation System 1.0. This a... |
| CVE-2024-9298 | MEDIUM | 4.3 | 0.5% | Sep 28, 2024 | A vulnerability was found in SourceCodester Online Railway Reservation System 1.0. It has been rated as problematic. Aff... |
| CVE-2024-8189 | MEDIUM | 4.8 | 0.4% | Sep 28, 2024 | The WP MultiTasking – WP Utilities plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘wpmt_menu_... |
| CVE-2024-9297 | MEDIUM | 6.3 | 0.4% | Sep 28, 2024 | A vulnerability was found in SourceCodester Online Railway Reservation System 1.0. It has been declared as critical. Aff... |
| CVE-2024-9296 | CRITICAL | 9.8 | 0.6% | Sep 28, 2024 | A vulnerability was found in SourceCodester Advocate Office Management System 1.0. It has been classified as critical. A... |
| CVE-2024-8712 | MEDIUM | 6.1 | 0.4% | Sep 28, 2024 | The GTM Server Side plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg... |
| CVE-2024-9295 | CRITICAL | 9.8 | 0.6% | Sep 28, 2024 | A vulnerability was found in SourceCodester Advocate Office Management System 1.0 and classified as critical. This issue... |
| CVE-2024-23967 | HIGH | 8 | 0.9% | Sep 28, 2024 | Autel MaxiCharger AC Elite Business C50 WebSocket Base64 Decoding Stack-based Buffer Overflow Remote Code Execution Vuln... |
| CVE-2024-23961 | MEDIUM | 6.8 | 1.0% | Sep 28, 2024 | Alpine Halo9 UPDM_wemCmdUpdFSpeDecomp Command Injection Remote Code Execution Vulnerability. This vulnerability allows p... |
| CVE-2024-23960 | MEDIUM | 4.6 | 0.3% | Sep 28, 2024 | Alpine Halo9 Improper Verification of Cryptographic Signature Vulnerability. This vulnerability allows physically presen... |
| CVE-2024-23959 | HIGH | 8 | 0.8% | Sep 28, 2024 | Autel MaxiCharger AC Elite Business C50 BLE AppChargingControl Stack-based Buffer Overflow Remote Code Execution Vulnera... |
| CVE-2024-23958 | HIGH | 8.8 | 0.8% | Sep 28, 2024 | Autel MaxiCharger AC Elite Business C50 BLE Hardcoded Credentials Authentication Bypass Vulnerability. This vulnerabilit... |
| CVE-2024-23935 | HIGH | 7.5 | 0.5% | Sep 28, 2024 | Alpine Halo9 DecodeUTF7 Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows netwo... |
| CVE-2024-23924 | MEDIUM | 6.8 | 1.0% | Sep 28, 2024 | Alpine Halo9 UPDM_wemCmdCreatSHA256Hash Command Injection Remote Code Execution Vulnerability. This vulnerability allows... |
| CVE-2024-23923 | HIGH | 8.8 | 0.8% | Sep 28, 2024 | Alpine Halo9 prh_l2_sar_data_ind Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows network-a... |
| CVE-2024-23957 | HIGH | 8.8 | 1.0% | Sep 28, 2024 | Autel MaxiCharger AC Elite Business C50 DLB_HostHeartBeat Stack-based Buffer Overflow Remote Code Execution Vulnerabilit... |
| CVE-2024-23938 | HIGH | 8.8 | 0.9% | Sep 28, 2024 | Silicon Labs Gecko OS Debug Interface Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabilit... |
| CVE-2024-8715 | MEDIUM | 6.1 | 0.4% | Sep 28, 2024 | The Simple LDAP Login plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_a... |
| CVE-2024-9189 | MEDIUM | 5.3 | 0.5% | Sep 28, 2024 | The EU/UK VAT Manager for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a m... |
| CVE-2024-9023 | MEDIUM | 5.4 | 0.4% | Sep 28, 2024 | The WP-WebAuthn plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wwa_login_form shortc... |
| CVE-2024-8788 | MEDIUM | 6.1 | 0.4% | Sep 28, 2024 | The EU/UK VAT Manager for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the us... |
| CVE-2024-8547 | MEDIUM | 5.4 | 0.4% | Sep 28, 2024 | The Simple Popup Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's [popup] short... |
| CVE-2024-8353 | CRITICAL | 9.8 | 29.1% | Sep 28, 2024 | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to PHP Object Injection in all ... |
| CVE-2024-9294 | MEDIUM | 6.3 | 0.3% | Sep 27, 2024 | A vulnerability, which was classified as critical, has been found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff922722... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now