2024 CVE Vulnerabilities
39,235 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-2523 | MEDIUM | 6.1 | 0.4% | Mar 16, 2024 | A vulnerability classified as problematic was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. This... |
| CVE-2024-2521 | MEDIUM | 6.1 | 0.4% | Mar 16, 2024 | A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. It has been rated as problemat... |
| CVE-2024-2519 | MEDIUM | 6.1 | 0.4% | Mar 16, 2024 | A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. It has been classified as prob... |
| CVE-2024-2518 | MEDIUM | 6.1 | 0.5% | Mar 16, 2024 | A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0 and classified as problematic. ... |
| CVE-2024-2515 | MEDIUM | 6.1 | 0.4% | Mar 16, 2024 | A vulnerability, which was classified as problematic, has been found in MAGESH-K21 Online-College-Event-Hall-Reservation... |
| CVE-2024-1857 | MEDIUM | 5.3 | 0.3% | Mar 16, 2024 | The Ultimate Gift Cards for WooCommerce – Create, Redeem & Manage Digital Gift Certificates with Personalized Templates ... |
| CVE-2024-22513 | MEDIUM | 5.5 | 0.8% | Mar 16, 2024 | djangorestframework-simplejwt version 5.3.1 and before is vulnerable to information disclosure. A user can access web ap... |
| CVE-2024-28070 | MEDIUM | 6.8 | 0.4% | Mar 16, 2024 | A vulnerability in the legacy chat component of Mitel MiContact Center Business through 10.0.0.4 could allow an unauthen... |
| CVE-2024-24156 | MEDIUM | 6.1 | 0.5% | Mar 16, 2024 | Cross Site Scripting (XSS) vulnerability in Gnuboard g6 before Github commit 58c737a263ac0c523592fd87ff71b9e3c07d7cf5, a... |
| CVE-2024-1733 | MEDIUM | 5.3 | 0.4% | Mar 16, 2024 | The Word Replacer Pro plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit... |
| CVE-2024-24845 | MEDIUM | 5.3 | 0.4% | Mar 16, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Sewpafly Post Thumbnail Editor.This issue af... |
| CVE-2024-23523 | MEDIUM | 6.5 | 0.5% | Mar 16, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Elementor Pro.This issue affects Elementor P... |
| CVE-2024-2042 | MEDIUM | 5.4 | 0.5% | Mar 16, 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Accordi... |
| CVE-2024-1239 | MEDIUM | 5.4 | 0.4% | Mar 16, 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the blog post rea... |
| CVE-2024-2308 | MEDIUM | 5.4 | 0.3% | Mar 16, 2024 | The ElementInvader Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the button... |
| CVE-2024-2294 | MEDIUM | 4.9 | 0.9% | Mar 16, 2024 | The Backuply – Backup, Restore, Migrate and Clone plugin for WordPress is vulnerable to Directory Traversal in all versi... |
| CVE-2024-27194 | MEDIUM | 6.1 | 0.2% | Mar 16, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Andrei Ivasiuc Fontific | Google Fonts allows Stored XSS.This issue a... |
| CVE-2024-28862 | MEDIUM | 5.5 | 0.2% | Mar 16, 2024 | The Ruby One Time Password library (ROTP) is an open source library for generating and validating one time passwords. Af... |
| CVE-2024-23298 | MEDIUM | 5.5 | 0.5% | Mar 15, 2024 | A logic issue was addressed with improved state management. This issue is fixed in Xcode 15.3. An app may bypass Gatekee... |
| CVE-2024-27351 | MEDIUM | 5.3 | 1.9% | Mar 15, 2024 | In Django 3.2 before 3.2.25, 4.2 before 4.2.11, and 5.0 before 5.0.3, the django.utils.text.Truncator.words() method (wi... |
| CVE-2024-27100 | MEDIUM | 6.5 | 0.6% | Mar 15, 2024 | Discourse is an open source platform for community discussion. In affected versions the endpoints for suspending users, ... |
| CVE-2024-27085 | MEDIUM | 6.5 | 0.6% | Mar 15, 2024 | Discourse is an open source platform for community discussion. In affected versions users that are allowed to invite oth... |
| CVE-2024-24748 | MEDIUM | 5.3 | 0.5% | Mar 15, 2024 | Discourse is an open source platform for community discussion. In affected versions an attacker can learn that a secret ... |
| CVE-2024-2193 | MEDIUM | 5.7 | 1.2% | Mar 15, 2024 | A Speculative Race Condition (SRC) vulnerability that impacts modern CPU architectures supporting speculative execution ... |
| CVE-2024-28401 | MEDIUM | 5.4 | 0.4% | Mar 15, 2024 | TOTOLINK X2000R before v1.0.0-B20231213.1013 contains a Store Cross-site scripting (XSS) vulnerability in Root Access Co... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now