2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-8864HIGH8.8A vulnerability has been found in composiohq composio up to 0.5.6 and classified as critical. Affected by this vulnerabi...
CVE-2024-8863MEDIUM5.4A vulnerability, which was classified as problematic, was found in aimhubio aim up to 3.24. Affected is the function dan...
CVE-2024-8862CRITICAL9.8A vulnerability, which was classified as critical, has been found in h2oai h2o-3 3.46.0.4. This issue affects the functi...
CVE-2024-6482HIGH8.8The Login with phone number plugin for WordPress is vulnerable to privilege escalation in all versions up to, and includ...
CVE-2024-8797MEDIUM6.1The WP Booking System – Booking Calendar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the...
CVE-2024-8724MEDIUM6.1The Waitlist Woocommerce ( Back in stock notifier ) plugin for WordPress is vulnerable to Reflected Cross-Site Scripting...
CVE-2024-8669HIGH7.2The Backuply – Backup, Restore, Migrate and Clone plugin for WordPress is vulnerable to SQL Injection via the 'options' ...
CVE-2024-8479HIGH7.3The The Simple Spoiler plugin for WordPress is vulnerable to arbitrary shortcode execution in versions 1.2 to 1.3. This ...
CVE-2024-8246HIGH8.8The Post Form – Registration Form – Profile Form for User Profiles – Frontend Content Forms for User Submissions (UGC) p...
CVE-2024-8039CRITICAL9.8Improper permission configurationDomain configuration vulnerability of the mobile application (com.afmobi.boomplayer) ca...
CVE-2024-8775MEDIUM5.5A flaw was found in Ansible, where sensitive information stored in Ansible Vault files can be exposed in plaintext durin...
CVE-2024-8271HIGH7.3The The FOX – Currency Switcher Professional for WooCommerce plugin for WordPress is vulnerable to arbitrary shortcode e...
CVE-2024-6259MEDIUM6.5BT: HCI: adv_ext_report Improper discarding in adv_ext_report
CVE-2024-44096MEDIUM4.4there is a possible arbitrary read due to an insecure default value. This could lead to local information disclosure wit...
CVE-2024-44095HIGH7.8In ppmp_protect_mfcfw_buf of code/drm_fw.c, there is a possible corrupt memory due to a logic error in the code. This co...
CVE-2024-44094HIGH7.8In ppmp_protect_mfcfw_buf of code/drm_fw.c, there is a possible memory corruption due to improper input validation. This...
CVE-2024-44093HIGH7.8In ppmp_unprotect_buf of drm/code/drm_fw.c, there is a possible memory corruption due to a logic error in the code. This...
CVE-2024-44092HIGH7.8There is a possible LCS signing enforcement missing due to test/debugging code left in a production build. This could l...
CVE-2024-29779HIGH7.8there is a possible escalation of privilege due to an unusual root cause. This could lead to local escalation of privile...
CVE-2024-6137MEDIUM6.5BT: Classic: SDP OOB access in get_att_search_list
CVE-2024-6135MEDIUM6.5BT:Classic: Multiple missing buf length checks
CVE-2024-5931MEDIUM6.5BT: Unchecked user input in bap_broadcast_assistant
CVE-2024-44430CRITICAL9.8SQL Injection vulnerability in Best Free Law Office Management Software-v1.0 allows an attacker to execute arbitrary cod...
CVE-2024-8784HIGH8.8A vulnerability classified as critical was found in QDocs Smart School Management System 7.0.0. Affected by this vulnera...
CVE-2024-8783MEDIUM5.4A vulnerability classified as problematic has been found in OpenTibiaBR MyAAC up to 0.8.16. Affected is an unknown funct...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now