2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-45203 | MEDIUM | 4.3 | 0.3% | Sep 9, 2024 | Improper authorization in handler for custom URL scheme issue in "@cosme" App for Android versions prior 5.69.0 and "@co... |
| CVE-2024-7918 | MEDIUM | 4.8 | 0.3% | Sep 9, 2024 | The Pocket Widget WordPress plugin through 0.1.3 does not sanitise and escape some of its settings, which could allow hi... |
| CVE-2024-7689 | MEDIUM | 4.3 | 0.2% | Sep 9, 2024 | The Snapshot Backup WordPress plugin through 2.1.1 does not have CSRF check in some places, and is missing sanitisation ... |
| CVE-2024-7688 | MEDIUM | 6.5 | 0.2% | Sep 9, 2024 | The AZIndex WordPress plugin through 0.8.1 does not have CSRF checks in some places, which could allow attackers to make... |
| CVE-2024-7687 | MEDIUM | 4.3 | 0.2% | Sep 9, 2024 | The AZIndex WordPress plugin through 0.8.1 does not have CSRF check in some places, and is missing sanitisation as well ... |
| CVE-2024-6910 | MEDIUM | 4.8 | 0.3% | Sep 9, 2024 | The EventON WordPress plugin before 2.2.17 does not sanitise and escape some of its settings, which could allow high pri... |
| CVE-2024-5561 | MEDIUM | 4.8 | 0.4% | Sep 9, 2024 | The Popup Maker WordPress plugin before 1.19.1 does not sanitise and escape some of its settings, which could allow hig... |
| CVE-2024-45625 | MEDIUM | 6.1 | 0.4% | Sep 9, 2024 | Cross-site scripting vulnerability exists in Forminator versions prior to 1.34.1. If this vulnerability is exploited, an... |
| CVE-2024-8586 | MEDIUM | 6.1 | 0.4% | Sep 9, 2024 | WebITR from Uniong has an Open Redirect vulnerability, which allows unauthorized remote attackers to exploit this vulner... |
| CVE-2024-8585 | MEDIUM | 6.5 | 0.7% | Sep 9, 2024 | Orca HCM from LEARNING DIGITA does not properly restrict a specific parameter of the file download functionality, allowi... |
| CVE-2024-8584 | CRITICAL | 9.8 | 0.7% | Sep 9, 2024 | Orca HCM from LEARNING DIGITAL has an Missing Authentication vulnerability, allowing unauthenticated remote attacker to ... |
| CVE-2024-8583 | MEDIUM | 5.4 | 0.4% | Sep 8, 2024 | A vulnerability was found in SourceCodester Online Bank Management System and Online Bank Management System - 1.0. It ha... |
| CVE-2024-8582 | MEDIUM | 6.1 | 0.4% | Sep 8, 2024 | A vulnerability was found in SourceCodester Food Ordering Management System 1.0 and classified as problematic. Affected ... |
| CVE-2024-8580 | HIGH | 8.1 | 1.3% | Sep 8, 2024 | A vulnerability classified as critical was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. This vulnerability affects... |
| CVE-2024-8579 | CRITICAL | 9.8 | 1.3% | Sep 8, 2024 | A vulnerability classified as critical has been found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. This affects the func... |
| CVE-2024-8578 | HIGH | 8.8 | 1.1% | Sep 8, 2024 | A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. It has been rated as critical. Affected by this i... |
| CVE-2024-8577 | HIGH | 8.8 | 1.1% | Sep 8, 2024 | A vulnerability was found in TOTOLINK AC1200 T8 and AC1200 T10 4.1.5cu.861_B20230220/4.1.8cu.5207. It has been declared ... |
| CVE-2024-8576 | HIGH | 8.8 | 1.1% | Sep 8, 2024 | A vulnerability was found in TOTOLINK AC1200 T8 and AC1200 T10 4.1.5cu.861_B20230220/4.1.8cu.5207. It has been classifie... |
| CVE-2024-8575 | HIGH | 8.8 | 1.1% | Sep 8, 2024 | A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220 and classified as critical. This issue affects the... |
| CVE-2024-42343 | HIGH | 7.5 | 0.3% | Sep 8, 2024 | Loway - CWE-204: Observable Response Discrepancy |
| CVE-2024-42342 | MEDIUM | 4.3 | 0.3% | Sep 8, 2024 | Loway - CWE-444: Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') |
| CVE-2024-42341 | MEDIUM | 6.1 | 0.2% | Sep 8, 2024 | Loway - CWE-601: URL Redirection to Untrusted Site ('Open Redirect') |
| CVE-2024-8574 | HIGH | 8.8 | 3.1% | Sep 8, 2024 | A vulnerability has been found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220 and classified as critical. This vulnerabilit... |
| CVE-2024-8573 | HIGH | 8.8 | 1.4% | Sep 8, 2024 | A vulnerability, which was classified as critical, was found in TOTOLINK AC1200 T8 and AC1200 T10 4.1.5cu.861_B20230220/... |
| CVE-2024-8572 | MEDIUM | 6.1 | 0.4% | Sep 8, 2024 | A vulnerability was found in Gouniverse GoLang CMS 1.4.0. It has been declared as problematic. This vulnerability affect... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now