2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-45203MEDIUM4.3Improper authorization in handler for custom URL scheme issue in "@cosme" App for Android versions prior 5.69.0 and "@co...
CVE-2024-7918MEDIUM4.8The Pocket Widget WordPress plugin through 0.1.3 does not sanitise and escape some of its settings, which could allow hi...
CVE-2024-7689MEDIUM4.3The Snapshot Backup WordPress plugin through 2.1.1 does not have CSRF check in some places, and is missing sanitisation ...
CVE-2024-7688MEDIUM6.5The AZIndex WordPress plugin through 0.8.1 does not have CSRF checks in some places, which could allow attackers to make...
CVE-2024-7687MEDIUM4.3The AZIndex WordPress plugin through 0.8.1 does not have CSRF check in some places, and is missing sanitisation as well ...
CVE-2024-6910MEDIUM4.8The EventON WordPress plugin before 2.2.17 does not sanitise and escape some of its settings, which could allow high pri...
CVE-2024-5561MEDIUM4.8The Popup Maker WordPress plugin before 1.19.1 does not sanitise and escape some of its settings, which could allow hig...
CVE-2024-45625MEDIUM6.1Cross-site scripting vulnerability exists in Forminator versions prior to 1.34.1. If this vulnerability is exploited, an...
CVE-2024-8586MEDIUM6.1WebITR from Uniong has an Open Redirect vulnerability, which allows unauthorized remote attackers to exploit this vulner...
CVE-2024-8585MEDIUM6.5Orca HCM from LEARNING DIGITA does not properly restrict a specific parameter of the file download functionality, allowi...
CVE-2024-8584CRITICAL9.8Orca HCM from LEARNING DIGITAL has an Missing Authentication vulnerability, allowing unauthenticated remote attacker to ...
CVE-2024-8583MEDIUM5.4A vulnerability was found in SourceCodester Online Bank Management System and Online Bank Management System - 1.0. It ha...
CVE-2024-8582MEDIUM6.1A vulnerability was found in SourceCodester Food Ordering Management System 1.0 and classified as problematic. Affected ...
CVE-2024-8580HIGH8.1A vulnerability classified as critical was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. This vulnerability affects...
CVE-2024-8579CRITICAL9.8A vulnerability classified as critical has been found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. This affects the func...
CVE-2024-8578HIGH8.8A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220. It has been rated as critical. Affected by this i...
CVE-2024-8577HIGH8.8A vulnerability was found in TOTOLINK AC1200 T8 and AC1200 T10 4.1.5cu.861_B20230220/4.1.8cu.5207. It has been declared ...
CVE-2024-8576HIGH8.8A vulnerability was found in TOTOLINK AC1200 T8 and AC1200 T10 4.1.5cu.861_B20230220/4.1.8cu.5207. It has been classifie...
CVE-2024-8575HIGH8.8A vulnerability was found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220 and classified as critical. This issue affects the...
CVE-2024-42343HIGH7.5Loway - CWE-204: Observable Response Discrepancy
CVE-2024-42342MEDIUM4.3Loway - CWE-444: Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')
CVE-2024-42341MEDIUM6.1Loway - CWE-601: URL Redirection to Untrusted Site ('Open Redirect')
CVE-2024-8574HIGH8.8A vulnerability has been found in TOTOLINK AC1200 T8 4.1.5cu.861_B20230220 and classified as critical. This vulnerabilit...
CVE-2024-8573HIGH8.8A vulnerability, which was classified as critical, was found in TOTOLINK AC1200 T8 and AC1200 T10 4.1.5cu.861_B20230220/...
CVE-2024-8572MEDIUM6.1A vulnerability was found in Gouniverse GoLang CMS 1.4.0. It has been declared as problematic. This vulnerability affect...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now