2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-2395MEDIUM4.3The Bulgarisation for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to...
CVE-2024-0386MEDIUM6.1The weForms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Referer' HTTP header in all versi...
CVE-2024-28239MEDIUM4.3Directus is a real-time API and App dashboard for managing SQL database content. The authentication API has a `redirect`...
CVE-2024-28236MEDIUM6.5Vela is a Pipeline Automation (CI/CD) framework built on Linux container technology written in Golang. Vela pipelines ca...
CVE-2024-27305MEDIUM5.3aiosmtpd is a reimplementation of the Python stdlib smtpd.py based on asyncio. aiosmtpd is vulnerable to inbound SMTP sm...
CVE-2024-24097MEDIUM5.4Cross Site Scripting (XSS) vulnerability in Code-projects Scholars Tracking System 1.0 allows attackers to run arbitrary...
CVE-2024-2130MEDIUM5.4The CWW Companion plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Module2 widget in all versio...
CVE-2024-2031MEDIUM5.4The Video Conferencing with Zoom plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'zoo...
CVE-2024-28113MEDIUM6.1Peering Manager is a BGP session management tool. In Peering Manager <=1.8.2, it is possible to redirect users to an arb...
CVE-2024-28112MEDIUM4.8Peering Manager is a BGP session management tool. Affected versions of Peering Manager are subject to a potential stored...
CVE-2024-28098MEDIUM5.4The vulnerability allows authenticated users with only produce or consume permissions to modify topic-level policies, su...
CVE-2024-1410MEDIUM5.3Cloudflare quiche was discovered to be vulnerable to unbounded storage of information related to connection ID retiremen...
CVE-2024-1137MEDIUM4.3The Proxy and Client components of TIBCO Software Inc.'s TIBCO ActiveSpaces - Enterprise Edition contain a vulnerability...
CVE-2024-2182MEDIUM6.5A flaw was found in the Open Virtual Network (OVN). In OVN clusters where BFD is used between hypervisors for high avail...
CVE-2024-28339MEDIUM5.4An information leak in the debuginfo.htm component of Netgear CBR40 2.5.0.28, Netgear CBK40 2.5.0.28, and Netgear CBK43 ...
CVE-2024-26201MEDIUM6.6Microsoft Intune Linux Agent Elevation of Privilege Vulnerability
CVE-2024-26197MEDIUM6.5Windows Standards-Based Storage Management Service Denial of Service Vulnerability
CVE-2024-26185MEDIUM6.5Windows Compressed Folder Tampering Vulnerability
CVE-2024-26181MEDIUM5.5Windows Kernel Denial of Service Vulnerability
CVE-2024-26177MEDIUM5.5Windows Kernel Information Disclosure Vulnerability
CVE-2024-26174MEDIUM5.5Windows Kernel Information Disclosure Vulnerability
CVE-2024-26160MEDIUM5.5Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability
CVE-2024-21448MEDIUM5Microsoft Teams for Android Information Disclosure Vulnerability
CVE-2024-21431MEDIUM6.7Hypervisor-Protected Code Integrity (HVCI) Security Feature Bypass Vulnerability
CVE-2024-21430MEDIUM6.4Windows USB Attached SCSI (UAS) Protocol Remote Code Execution Vulnerability

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now