2024 CVE Vulnerabilities
39,235 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-24718 | MEDIUM | 6.5 | 0.3% | Mar 26, 2024 | Missing Authorization vulnerability in PropertyHive.This issue affects PropertyHive: from n/a through 2.0.6. |
| CVE-2024-24711 | MEDIUM | 4.3 | 0.3% | Mar 26, 2024 | Missing Authorization vulnerability in weDevs WooCommerce Conversion Tracking.This issue affects WooCommerce Conversion ... |
| CVE-2024-23520 | MEDIUM | 4.3 | 0.3% | Mar 26, 2024 | Missing Authorization vulnerability in AccessAlly PopupAlly.This issue affects PopupAlly: from n/a through 2.1.0. |
| CVE-2024-28126 | MEDIUM | 6.1 | 0.3% | Mar 26, 2024 | Cross-site scripting vulnerability exists in 0ch BBS Script ver.4.00. An arbitrary script may be executed on the web bro... |
| CVE-2024-28034 | MEDIUM | 5.4 | 0.3% | Mar 26, 2024 | Cross-site scripting vulnerability exists in Mini Thread Version 3.33βi. An arbitrary script may be executed on the web ... |
| CVE-2024-26018 | MEDIUM | 6.1 | 0.3% | Mar 26, 2024 | Cross-site scripting vulnerability exists in TvRock 0.9t8a. An arbitrary script may be executed on the web browser of th... |
| CVE-2024-24805 | MEDIUM | 5.3 | 0.4% | Mar 26, 2024 | Missing Authorization vulnerability in Deepak anand WP Dummy Content Generator.This issue affects WP Dummy Content Gener... |
| CVE-2024-2889 | MEDIUM | 5.9 | 0.4% | Mar 26, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Lab WP-Lister L... |
| CVE-2024-2888 | MEDIUM | 5.4 | 0.3% | Mar 26, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BoldGrid Post and ... |
| CVE-2024-2303 | MEDIUM | 6.4 | 0.3% | Mar 26, 2024 | The Easy Textillate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'textillate' shor... |
| CVE-2024-2170 | MEDIUM | 5.4 | 0.3% | Mar 26, 2024 | The VK All in One Expansion Unit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the child page in... |
| CVE-2024-1745 | MEDIUM | 4.3 | 0.4% | Mar 26, 2024 | The Testimonial Slider WordPress plugin before 2.3.7 does not properly ensure that a user has the necessary capabilities... |
| CVE-2024-29199 | MEDIUM | 5.3 | 0.6% | Mar 26, 2024 | Nautobot is a Network Source of Truth and Network Automation Platform. A number of Nautobot URL endpoints were found to ... |
| CVE-2024-2732 | MEDIUM | 5.4 | 0.3% | Mar 26, 2024 | The Themify Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'themify_post_... |
| CVE-2024-21914 | MEDIUM | 5.3 | 0.7% | Mar 25, 2024 | A vulnerability exists in the affected product that allows a malicious user to restart the Rockwell Automation PanelVie... |
| CVE-2024-29179 | MEDIUM | 4.8 | 0.5% | Mar 25, 2024 | phpMyFAQ is an open source FAQ web application for PHP 8.1+ and MySQL, PostgreSQL and other databases. An attacker with ... |
| CVE-2024-29041 | MEDIUM | 6.1 | 0.8% | Mar 25, 2024 | Express.js minimalist web framework for node. Versions of Express.js prior to 4.19.0 and all pre-release alpha and beta ... |
| CVE-2024-29025 | MEDIUM | 5.3 | 1.4% | Mar 25, 2024 | Netty is an asynchronous event-driven network application framework for rapid development of maintainable high performan... |
| CVE-2024-28246 | MEDIUM | 5.4 | 0.4% | Mar 25, 2024 | KaTeX is a JavaScript library for TeX math rendering on the web. Code that uses KaTeX's `trust` option, specifically tha... |
| CVE-2024-28245 | MEDIUM | 6.1 | 0.4% | Mar 25, 2024 | KaTeX is a JavaScript library for TeX math rendering on the web. KaTeX users who render untrusted mathematical expressio... |
| CVE-2024-28244 | MEDIUM | 6.5 | 2.2% | Mar 25, 2024 | KaTeX is a JavaScript library for TeX math rendering on the web. KaTeX users who render untrusted mathematical expressio... |
| CVE-2024-28243 | MEDIUM | 6.5 | 1.4% | Mar 25, 2024 | KaTeX is a JavaScript library for TeX math rendering on the web. KaTeX users who render untrusted mathematical expressio... |
| CVE-2024-28108 | MEDIUM | 6.1 | 0.5% | Mar 25, 2024 | phpMyFAQ is an open source FAQ web application for PHP 8.1+ and MySQL, PostgreSQL and other databases. Due to insufficie... |
| CVE-2024-28106 | MEDIUM | 5.4 | 0.5% | Mar 25, 2024 | phpMyFAQ is an open source FAQ web application for PHP 8.1+ and MySQL, PostgreSQL and other databases. By manipulating t... |
| CVE-2024-27300 | MEDIUM | 5.4 | 0.7% | Mar 25, 2024 | phpMyFAQ is an open source FAQ web application for PHP 8.1+ and MySQL, PostgreSQL and other databases. The `email` field... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now