2024 CVE Vulnerabilities
39,235 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-22085 | MEDIUM | 6.2 | 0.2% | Mar 20, 2024 | An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. The shadow file is world reada... |
| CVE-2024-22083 | MEDIUM | 6.5 | 0.6% | Mar 20, 2024 | An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. A hardcoded backdoor session I... |
| CVE-2024-22077 | MEDIUM | 5.3 | 0.5% | Mar 20, 2024 | An issue was discovered in Elspec G5 digital fault recorder versions 1.1.4.15 and before. The SQLite database file has w... |
| CVE-2024-0337 | MEDIUM | 6.1 | 0.9% | Mar 20, 2024 | The Travelpayouts: All Travel Brands in One Place WordPress plugin through 1.1.15 is vulnerable to Open Redirect due to ... |
| CVE-2024-2671 | MEDIUM | 6.5 | 0.6% | Mar 20, 2024 | A vulnerability was found in Campcodes Online Job Finder System 1.0. It has been declared as critical. Affected by this ... |
| CVE-2024-2670 | MEDIUM | 6.5 | 0.6% | Mar 20, 2024 | A vulnerability was found in Campcodes Online Job Finder System 1.0. It has been classified as critical. Affected is an ... |
| CVE-2024-2255 | MEDIUM | 5.4 | 0.6% | Mar 20, 2024 | The Essential Blocks – Page Builder Gutenberg Blocks, Patterns & Templates plugin for WordPress is vulnerable to Stored ... |
| CVE-2024-22258 | MEDIUM | 6.1 | 0.5% | Mar 20, 2024 | Spring Authorization Server versions 1.0.0 - 1.0.5, 1.1.0 - 1.1.5, 1.2.0 - 1.2.2 and older unsupported versions are susc... |
| CVE-2024-2460 | MEDIUM | 5.4 | 0.4% | Mar 20, 2024 | The GamiPress – Button plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'gamipress_but... |
| CVE-2024-2384 | MEDIUM | 4.3 | 0.3% | Mar 20, 2024 | The WooCommerce POS plugin for WordPress is vulnerable to information disclosure in all versions up to, and including, 1... |
| CVE-2024-2669 | MEDIUM | 6.5 | 0.6% | Mar 20, 2024 | A vulnerability was found in Campcodes Online Job Finder System 1.0 and classified as critical. This issue affects some ... |
| CVE-2024-2668 | MEDIUM | 6.5 | 0.6% | Mar 20, 2024 | A vulnerability has been found in Campcodes Online Job Finder System 1.0 and classified as critical. This vulnerability ... |
| CVE-2024-2387 | MEDIUM | 6.1 | 1.7% | Mar 20, 2024 | The Advanced Form Integration – Connect WooCommerce and Contact Form 7 to Google Sheets and other platforms plugin for W... |
| CVE-2024-1995 | MEDIUM | 4.3 | 0.6% | Mar 20, 2024 | The Smart Custom Fields plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability ch... |
| CVE-2024-1787 | MEDIUM | 6.4 | 0.6% | Mar 20, 2024 | The Contests by Rewards Fuel plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'update_rewards_f... |
| CVE-2024-1785 | MEDIUM | 5.4 | 0.3% | Mar 20, 2024 | The Contests by Rewards Fuel plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and... |
| CVE-2024-2197 | MEDIUM | 4.3 | 0.3% | Mar 20, 2024 | The Chirp Access app contains a hard-coded password, BEACON_PASSWORD. An attacker within Bluetooth range could change co... |
| CVE-2024-2648 | MEDIUM | 5.3 | 0.7% | Mar 19, 2024 | A vulnerability, which was classified as problematic, was found in Netentsec NS-ASG Application Security Gateway 6.3. Af... |
| CVE-2024-2645 | MEDIUM | 5.3 | 0.7% | Mar 19, 2024 | A vulnerability classified as problematic has been found in Netentsec NS-ASG Application Security Gateway 6.3. This affe... |
| CVE-2024-2641 | MEDIUM | 5.3 | 0.8% | Mar 19, 2024 | A vulnerability was found in Ruijie RG-NBS2009G-P up to 20240305. It has been classified as critical. Affected is an unk... |
| CVE-2024-28283 | MEDIUM | 6.7 | 0.5% | Mar 19, 2024 | There is stack-based buffer overflow vulnerability in pc_change_act function in Linksys E1000 router firmware version v.... |
| CVE-2024-2307 | MEDIUM | 6.1 | 0.2% | Mar 19, 2024 | A flaw was found in osbuild-composer. A condition can be triggered that disables GPG verification for package repositori... |
| CVE-2024-29094 | MEDIUM | 6.1 | 0.4% | Mar 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HasThemes HT Easy ... |
| CVE-2024-29093 | MEDIUM | 4.3 | 0.2% | Mar 19, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Saleswonder Team: Tobias Builder for WooCommerce reviews shortcodes –... |
| CVE-2024-29092 | MEDIUM | 6.1 | 0.4% | Mar 19, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Maciej Bis Permali... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now