2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-23231MEDIUM5.5A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 16.7.6 an...
CVE-2024-23230MEDIUM5.5This issue was addressed with improved file handling. This issue is fixed in macOS Monterey 12.7.4, macOS Sonoma 14.4, m...
CVE-2024-23220MEDIUM5.5The issue was addressed with improved handling of caches. This issue is fixed in iOS 17.4 and iPadOS 17.4, visionOS 1.1....
CVE-2024-23205MEDIUM5.5A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in iOS 17.4 and ...
CVE-2024-23201MEDIUM5.5A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 17.3 and iPadOS 17.3, macOS M...
CVE-2024-2276MEDIUM6.1A vulnerability has been found in Bdtask G-Prescription Gynaecology & OBS Consultation Software 1.0 and classified as pr...
CVE-2024-2275MEDIUM6.1A vulnerability, which was classified as problematic, was found in Bdtask G-Prescription Gynaecology & OBS Consultation ...
CVE-2024-2274MEDIUM6.1A vulnerability, which was classified as problematic, has been found in Bdtask G-Prescription Gynaecology & OBS Consulta...
CVE-2024-25327MEDIUM6.1Cross Site Scripting (XSS) vulnerability in Justice Systems FullCourt Enterprise v.8.2 allows a remote attacker to execu...
CVE-2024-2270MEDIUM6.1A vulnerability was found in keerti1924 Online-Book-Store-Website 1.0. It has been rated as problematic. Affected by thi...
CVE-2024-2266MEDIUM6.1A vulnerability has been found in keerti1924 Secret-Coder-PHP-Project 1.0 and classified as problematic. This vulnerabil...
CVE-2024-27707MEDIUM4.3Server Side Request Forgery (SSRF) vulnerability in hcengineering Huly Platform v.0.6.202 allows attackers to run arbitr...
CVE-2024-26492MEDIUM6.3An issue in Online Diagnostic Lab Management System 1.0 allows a remote attacker to gain control of a 'Staff' user accou...
CVE-2024-26167MEDIUM4.3Microsoft Edge for Android Spoofing Vulnerability
CVE-2024-24035MEDIUM6.1Cross Site Scripting (XSS) vulnerability in Setor Informatica SIL 3.1 allows attackers to run arbitrary code via the hme...
CVE-2024-1802MEDIUM5.4The EmbedPress – Embed PDF, Google Docs, Vimeo, Wistia, Embed YouTube Videos, Audios, Maps & Embed Any Documents in Gute...
CVE-2024-2128MEDIUM5.4The EmbedPress – Embed PDF, Google Docs, Vimeo, Wistia, Embed YouTube Videos, Audios, Maps & Embed Any Documents in Gute...
CVE-2024-2127MEDIUM5.4The Page Builder: Pagelayer – Drag and Drop website builder plugin for WordPress is vulnerable to Stored Cross-Site Scri...
CVE-2024-1725MEDIUM6.5A flaw was found in the kubevirt-csi component of OpenShift Virtualization's Hosted Control Plane (HCP). This issue coul...
CVE-2024-2245MEDIUM6.1Cross-Site Scripting vulnerability in moziloCMS version 2.0. By sending a POST request to the '/install.php' endpoint, a...
CVE-2024-2241MEDIUM6.3Improper access control in the user interface in Devolutions Workspace 2024.1.0 and earlier allows an authenticated user...
CVE-2024-28230MEDIUM6.5In JetBrains YouTrack before 2024.1.25893 attaching/detaching workflow to a project was possible without project admin p...
CVE-2024-28229MEDIUM6.5In JetBrains YouTrack before 2024.1.25893 user without appropriate permissions could restore issues and articles
CVE-2024-28228MEDIUM5.3In JetBrains YouTrack before 2024.1.25893 creation comments on behalf of an arbitrary user in HelpDesk was possible
CVE-2024-22256MEDIUM4.3VMware Cloud Director contains a partial information disclosure vulnerability. A malicious actor can potentially gather ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now