2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-28403 | MEDIUM | 5.4 | 0.4% | Mar 15, 2024 | TOTOLINK X2000R before V1.0.0-B20231213.1013 is vulnerable to Cross Site Scripting (XSS) via the VPN Page. |
| CVE-2024-28319 | MEDIUM | 6.2 | 0.2% | Mar 15, 2024 | gpac 2.3-DEV-rev921-g422b78ecf-master was discovered to contain an out of boundary read vulnerability via gf_dash_setup_... |
| CVE-2024-25597 | MEDIUM | 6.1 | 0.4% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Etoile Web Design ... |
| CVE-2024-25596 | MEDIUM | 4.8 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Doofinder Doofinde... |
| CVE-2024-25593 | MEDIUM | 5.4 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Basix NEX-Forms – ... |
| CVE-2024-25592 | MEDIUM | 4.8 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPMU DEV Broken Li... |
| CVE-2024-2495 | MEDIUM | 4.4 | 0.2% | Mar 15, 2024 | Cryptographic key vulnerability encoded in the FriendlyWrt firmware affecting version 2022-11-16.51b3d35. This vulnerabi... |
| CVE-2024-27196 | MEDIUM | 6.1 | 0.4% | Mar 15, 2024 | Cross Site Scripting (XSS) vulnerability in Joel Starnes postMash – custom post order allows Reflected XSS.This issue af... |
| CVE-2024-27193 | MEDIUM | 6.1 | 0.4% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PayU India PayU In... |
| CVE-2024-27189 | MEDIUM | 5.4 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in catchsquare WP Soc... |
| CVE-2024-25936 | MEDIUM | 6.5 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SoundCloud Inc., L... |
| CVE-2024-25934 | MEDIUM | 5.4 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FormFacade allows ... |
| CVE-2024-25919 | MEDIUM | 6.5 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Hiroaki Miyashita ... |
| CVE-2024-25916 | MEDIUM | 6.5 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Joseph C Dolson My... |
| CVE-2024-25598 | MEDIUM | 5.4 | 0.3% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Livemesh Livemesh ... |
| CVE-2024-27987 | MEDIUM | 6.1 | 0.4% | Mar 15, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in StellarWP GiveWP g... |
| CVE-2024-23944 | MEDIUM | 5.3 | 0.2% | Mar 15, 2024 | Information disclosure in persistent watchers handling in Apache ZooKeeper due to missing ACL check. It allows an attack... |
| CVE-2024-2446 | MEDIUM | 4.3 | 0.4% | Mar 15, 2024 | Mattermost versions 8.1.x before 8.1.10, 9.2.x before 9.2.6, 9.3.x before 9.3.2, and 9.4.x before 9.4.3 fail to limit th... |
| CVE-2024-2445 | MEDIUM | 6.1 | 0.3% | Mar 15, 2024 | Mattermost Jira plugin versions shipped with Mattermost versions 8.1.x before 8.1.10, 9.2.x before 9.2.6, 9.3.x before 9... |
| CVE-2024-28053 | MEDIUM | 6.5 | 0.5% | Mar 15, 2024 | Resource Exhaustion in Mattermost Server versions 8.1.x before 8.1.10 fails to limit the size of the payload that can be... |
| CVE-2024-24975 | MEDIUM | 6.5 | 0.4% | Mar 15, 2024 | Uncontrolled Resource Consumption in Mattermost Mobile versions before 2.13.0 fails to limit the size of the code block ... |
| CVE-2024-2483 | MEDIUM | 4.3 | 0.3% | Mar 15, 2024 | A vulnerability, which was classified as problematic, has been found in Surya2Developer Hostel Management Service 1.0. T... |
| CVE-2024-2399 | MEDIUM | 5.4 | 0.4% | Mar 15, 2024 | The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widg... |
| CVE-2024-1796 | MEDIUM | 5.4 | 0.3% | Mar 15, 2024 | The HUSKY – Products Filter for WooCommerce Professional plugin for WordPress is vulnerable to Stored Cross-Site Scripti... |
| CVE-2024-2481 | MEDIUM | 6.5 | 1.0% | Mar 15, 2024 | A vulnerability, which was classified as critical, was found in Surya2Developer Hostel Management System 1.0. Affected i... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now