2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-2523MEDIUM6.1A vulnerability classified as problematic was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. This...
CVE-2024-2521MEDIUM6.1A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. It has been rated as problemat...
CVE-2024-2519MEDIUM6.1A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0. It has been classified as prob...
CVE-2024-2518MEDIUM6.1A vulnerability was found in MAGESH-K21 Online-College-Event-Hall-Reservation-System 1.0 and classified as problematic. ...
CVE-2024-2515MEDIUM6.1A vulnerability, which was classified as problematic, has been found in MAGESH-K21 Online-College-Event-Hall-Reservation...
CVE-2024-1857MEDIUM5.3The Ultimate Gift Cards for WooCommerce – Create, Redeem & Manage Digital Gift Certificates with Personalized Templates ...
CVE-2024-22513MEDIUM5.5djangorestframework-simplejwt version 5.3.1 and before is vulnerable to information disclosure. A user can access web ap...
CVE-2024-28070MEDIUM6.8A vulnerability in the legacy chat component of Mitel MiContact Center Business through 10.0.0.4 could allow an unauthen...
CVE-2024-24156MEDIUM6.1Cross Site Scripting (XSS) vulnerability in Gnuboard g6 before Github commit 58c737a263ac0c523592fd87ff71b9e3c07d7cf5, a...
CVE-2024-1733MEDIUM5.3The Word Replacer Pro plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit...
CVE-2024-24845MEDIUM5.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Sewpafly Post Thumbnail Editor.This issue af...
CVE-2024-23523MEDIUM6.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Elementor Pro.This issue affects Elementor P...
CVE-2024-2042MEDIUM5.4The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Accordi...
CVE-2024-1239MEDIUM5.4The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the blog post rea...
CVE-2024-2308MEDIUM5.4The ElementInvader Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the button...
CVE-2024-2294MEDIUM4.9The Backuply – Backup, Restore, Migrate and Clone plugin for WordPress is vulnerable to Directory Traversal in all versi...
CVE-2024-27194MEDIUM6.1Cross-Site Request Forgery (CSRF) vulnerability in Andrei Ivasiuc Fontific | Google Fonts allows Stored XSS.This issue a...
CVE-2024-28862MEDIUM5.5The Ruby One Time Password library (ROTP) is an open source library for generating and validating one time passwords. Af...
CVE-2024-23298MEDIUM5.5A logic issue was addressed with improved state management. This issue is fixed in Xcode 15.3. An app may bypass Gatekee...
CVE-2024-27351MEDIUM5.3In Django 3.2 before 3.2.25, 4.2 before 4.2.11, and 5.0 before 5.0.3, the django.utils.text.Truncator.words() method (wi...
CVE-2024-27100MEDIUM6.5Discourse is an open source platform for community discussion. In affected versions the endpoints for suspending users, ...
CVE-2024-27085MEDIUM6.5Discourse is an open source platform for community discussion. In affected versions users that are allowed to invite oth...
CVE-2024-24748MEDIUM5.3Discourse is an open source platform for community discussion. In affected versions an attacker can learn that a secret ...
CVE-2024-2193MEDIUM5.7A Speculative Race Condition (SRC) vulnerability that impacts modern CPU architectures supporting speculative execution ...
CVE-2024-28401MEDIUM5.4TOTOLINK X2000R before v1.0.0-B20231213.1013 contains a Store Cross-site scripting (XSS) vulnerability in Root Access Co...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now