2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-26633MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tn...
CVE-2024-26632MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: block: Fix iterating over an empty bio with bio_for...
CVE-2024-26631MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: ipv6: mcast: fix data-race in ipv6_mc_down / mld_if...
CVE-2024-1606MEDIUM5.4Lack of input sanitization in BMC Control-M branches 9.0.20 and 9.0.21 allows logged-in users for manipulation of gener...
CVE-2024-1604MEDIUM6.8Improper authorization in the report management and creation module of BMC Control-M branches 9.0.20 and 9.0.21 allows l...
CVE-2024-28039MEDIUM5.8Improper restriction of XML external entity references vulnerability exists in FitNesse all releases, which allows a rem...
CVE-2024-28128MEDIUM6.1Cross-site scripting vulnerability exists in FitNesse releases prior to 20220319, which may allow a remote unauthenticat...
CVE-2024-27974MEDIUM6.3Cross-site request forgery vulnerability in FUJIFILM printers which implement CentreWare Internet Services or Internet S...
CVE-2024-23604MEDIUM6.1Cross-site scripting vulnerability exists in FitNesse all releases, which may allow a remote unauthenticated attacker to...
CVE-2024-22475MEDIUM6.1Cross-site request forgery vulnerability in multiple printers and scanners which implement Web Based Management provided...
CVE-2024-21824MEDIUM5.3Improper authentication vulnerability in exists in multiple printers and scanners which implement Web Based Management p...
CVE-2024-29156MEDIUM6.5In OpenStack Murano through 16.0.0, when YAQL before 3.0.0 is used, the Murano service's MuranoPL extension to the YAQL ...
CVE-2024-27757MEDIUM6.1flusity CMS through 2.45 allows tools/addons_model.php Gallery Name XSS. The reporter indicates that this product "cease...
CVE-2024-24539MEDIUM5.3FusionPBX before 5.2.0 does not validate a session.
CVE-2024-27960MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in I Thirteen Web Sol...
CVE-2024-27959MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Wpexpertsio WC Sho...
CVE-2024-27958MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeisle Visualiz...
CVE-2024-2560MEDIUM4.3A vulnerability classified as problematic was found in Tenda AC18 15.03.05.05. Affected by this vulnerability is the fun...
CVE-2024-2559MEDIUM6.5A vulnerability classified as problematic has been found in Tenda AC18 15.03.05.05. Affected is the function fromSysTool...
CVE-2024-2553MEDIUM6.1A vulnerability, which was classified as problematic, was found in SourceCodester Product Review Rating System 1.0. Affe...
CVE-2024-2535MEDIUM6.1A vulnerability has been found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0 and classified as problema...
CVE-2024-2533MEDIUM6.1A vulnerability, which was classified as problematic, has been found in MAGESH-K21 Online-College-Event-Hall-Reservation...
CVE-2024-2530MEDIUM6.1A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. It has been rated as problemat...
CVE-2024-2526MEDIUM6.1A vulnerability has been found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0 and classified as problema...
CVE-2024-2525MEDIUM6.1A vulnerability, which was classified as problematic, was found in MAGESH-K21 Online-College-Event-Hall-Reservation-Syst...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now