2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-22085MEDIUM6.2An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. The shadow file is world reada...
CVE-2024-22083MEDIUM6.5An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. A hardcoded backdoor session I...
CVE-2024-22077MEDIUM5.3An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. The SQLite database file has w...
CVE-2024-0337MEDIUM6.1The Travelpayouts: All Travel Brands in One Place WordPress plugin through 1.1.15 is vulnerable to Open Redirect due to ...
CVE-2024-2671MEDIUM6.5A vulnerability was found in Campcodes Online Job Finder System 1.0. It has been declared as critical. Affected by this ...
CVE-2024-2670MEDIUM6.5A vulnerability was found in Campcodes Online Job Finder System 1.0. It has been classified as critical. Affected is an ...
CVE-2024-2255MEDIUM5.4The Essential Blocks – Page Builder Gutenberg Blocks, Patterns & Templates plugin for WordPress is vulnerable to Stored ...
CVE-2024-22258MEDIUM6.1Spring Authorization Server versions 1.0.0 - 1.0.5, 1.1.0 - 1.1.5, 1.2.0 - 1.2.2 and older unsupported versions are susc...
CVE-2024-2460MEDIUM5.4The GamiPress – Button plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'gamipress_but...
CVE-2024-2384MEDIUM4.3The WooCommerce POS plugin for WordPress is vulnerable to information disclosure in all versions up to, and including, 1...
CVE-2024-2669MEDIUM6.5A vulnerability was found in Campcodes Online Job Finder System 1.0 and classified as critical. This issue affects some ...
CVE-2024-2668MEDIUM6.5A vulnerability has been found in Campcodes Online Job Finder System 1.0 and classified as critical. This vulnerability ...
CVE-2024-2387MEDIUM6.1The Advanced Form Integration – Connect WooCommerce and Contact Form 7 to Google Sheets and other platforms plugin for W...
CVE-2024-1995MEDIUM4.3The Smart Custom Fields plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability ch...
CVE-2024-1787MEDIUM6.4The Contests by Rewards Fuel plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'update_rewards_f...
CVE-2024-1785MEDIUM5.4The Contests by Rewards Fuel plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and...
CVE-2024-2197MEDIUM4.3The Chirp Access app contains a hard-coded password, BEACON_PASSWORD. An attacker within Bluetooth range could change co...
CVE-2024-2648MEDIUM5.3A vulnerability, which was classified as problematic, was found in Netentsec NS-ASG Application Security Gateway 6.3. Af...
CVE-2024-2645MEDIUM5.3A vulnerability classified as problematic has been found in Netentsec NS-ASG Application Security Gateway 6.3. This affe...
CVE-2024-2641MEDIUM5.3A vulnerability was found in Ruijie RG-NBS2009G-P up to 20240305. It has been classified as critical. Affected is an unk...
CVE-2024-28283MEDIUM6.7There is stack-based buffer overflow vulnerability in pc_change_act function in Linksys E1000 router firmware version v....
CVE-2024-2307MEDIUM6.1A flaw was found in osbuild-composer. A condition can be triggered that disables GPG verification for package repositori...
CVE-2024-29094MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HasThemes HT Easy ...
CVE-2024-29093MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Saleswonder Team: Tobias Builder for WooCommerce reviews shortcodes –...
CVE-2024-29092MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Maciej Bis Permali...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now