2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-20830 | MEDIUM | 5.3 | 0.1% | Mar 5, 2024 | Incorrect default permission in AppLock prior to SMR MAr-2024 Release 1 allows local attackers to configure AppLock sett... |
| CVE-2024-20829 | MEDIUM | 5.3 | 0.3% | Mar 5, 2024 | Missing proper interaction for opening deeplink in Samsung Internet prior to version v24.0.0.0 allows remote attackers t... |
| CVE-2024-22383 | MEDIUM | 6.2 | 0.2% | Mar 5, 2024 | Missing release of resource after effective lifetime (CWE-772) in the Controller 7000 resulted in HBUS connected T-Seri... |
| CVE-2024-21838 | MEDIUM | 5.4 | 0.3% | Mar 5, 2024 | Improper neutralization of special elements in output (CWE-74) used by the email generation feature of the Command Cent... |
| CVE-2024-21815 | MEDIUM | 6.5 | 0.3% | Mar 5, 2024 | Insufficiently protected credentials (CWE-522) for third party DVR integrations to the Command Centre Server are access... |
| CVE-2024-1782 | MEDIUM | 6.1 | 0.4% | Mar 5, 2024 | The Blue Triad EZAnalytics plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'bt_webid' param... |
| CVE-2024-1769 | MEDIUM | 5.3 | 0.6% | Mar 5, 2024 | The JM Twitter Cards plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 14... |
| CVE-2024-1478 | MEDIUM | 5.3 | 0.5% | Mar 5, 2024 | The Maintenance Mode plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and inc... |
| CVE-2024-1381 | MEDIUM | 6.5 | 0.5% | Mar 5, 2024 | The Page Builder Sandwich – Front End WordPress Page Builder Plugin plugin for WordPress is vulnerable to Sensitive Info... |
| CVE-2024-1285 | MEDIUM | 6.5 | 0.4% | Mar 5, 2024 | The Page Builder Sandwich – Front End WordPress Page Builder Plugin plugin for WordPress is vulnerable to unauthorized m... |
| CVE-2024-1178 | MEDIUM | 5.3 | 0.4% | Mar 5, 2024 | The SportsPress – Sports Club & League Manager plugin for WordPress is vulnerable to unauthorized modification of data d... |
| CVE-2024-1095 | MEDIUM | 5.3 | 0.5% | Mar 5, 2024 | The Build & Control Block Patterns – Boost up Gutenberg Editor plugin for WordPress is vulnerable to unauthorized access... |
| CVE-2024-1093 | MEDIUM | 5.3 | 0.4% | Mar 5, 2024 | The Change Memory Limit plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabil... |
| CVE-2024-1088 | MEDIUM | 5.3 | 0.6% | Mar 5, 2024 | The Password Protected Store for WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in all... |
| CVE-2024-0698 | MEDIUM | 5.4 | 0.4% | Mar 5, 2024 | The Easy!Appointments plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'easyappointmen... |
| CVE-2024-1319 | MEDIUM | 4.3 | 0.5% | Mar 4, 2024 | The Events Tickets Plus WordPress plugin before 5.9.1 does not prevent users with at least the contributor role from lea... |
| CVE-2024-1316 | MEDIUM | 6.5 | 0.6% | Mar 4, 2024 | The Event Tickets and Registration WordPress plugin before 5.8.1, Events Tickets Plus WordPress plugin before 5.9.1 does... |
| CVE-2024-27680 | MEDIUM | 6.1 | 0.4% | Mar 4, 2024 | Flusity-CMS v2.33 is vulnerable to Cross Site Scripting (XSS) in the "Contact form." |
| CVE-2024-27668 | MEDIUM | 6.1 | 0.4% | Mar 4, 2024 | Flusity-CMS v2.33 is affected by: Cross Site Scripting (XSS) in 'Custom Blocks.' |
| CVE-2024-27684 | MEDIUM | 6.1 | 0.5% | Mar 4, 2024 | A Cross-site scripting (XSS) vulnerability in dlapn.cgi, dldongle.cgi, dlcfg.cgi, fwup.cgi and seama.cgi in D-Link GORTA... |
| CVE-2024-21826 | MEDIUM | 5.5 | 0.2% | Mar 4, 2024 | in OpenHarmony v3.2.4 and prior versions allow a local attacker cause sensitive information leak through insecure storag... |
| CVE-2024-21816 | MEDIUM | 5.5 | 0.1% | Mar 4, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker cause information leak through improper preservation of ... |
| CVE-2024-20037 | MEDIUM | 6.7 | 0.1% | Mar 4, 2024 | In pq, there is a possible write-what-where condition due to an incorrect bounds check. This could lead to local escalat... |
| CVE-2024-20036 | MEDIUM | 4.4 | 0.1% | Mar 4, 2024 | In vdec, there is a possible permission bypass due to a permissions bypass. This could lead to local information disclos... |
| CVE-2024-20033 | MEDIUM | 4.4 | 0.1% | Mar 4, 2024 | In nvram, there is a possible information disclosure due to a missing bounds check. This could lead to local information... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now