2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-25226MEDIUM6.1A cross-site scripting (XSS) vulnerability in Simple Admin Panel App v1.0 allows attackers to execute arbitrary web scri...
CVE-2024-25225MEDIUM5.4A cross-site scripting (XSS) vulnerability in Simple Admin Panel App v1.0 allows attackers to execute arbitrary web scri...
CVE-2024-25224MEDIUM5.4A cross-site scripting (XSS) vulnerability in Simple Admin Panel App v1.0 allows attackers to execute arbitrary web scri...
CVE-2024-25221MEDIUM6.1A cross-site scripting (XSS) vulnerability in Task Manager App v1.0 allows attackers to execute arbitrary web scripts or...
CVE-2024-25219MEDIUM6.1A cross-site scripting (XSS) vulnerability in Task Manager App v1.0 allows attackers to execute arbitrary web scripts or...
CVE-2024-25218MEDIUM6.1A cross-site scripting (XSS) vulnerability in Task Manager App v1.0 allows attackers to execute arbitrary web scripts or...
CVE-2024-25208MEDIUM5.4Barangay Population Monitoring System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the A...
CVE-2024-25207MEDIUM5.4Barangay Population Monitoring System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the A...
CVE-2024-23952MEDIUM6.5This is a duplicate for CVE-2023-46104. With correct CVE version ranges for affected Apache Superset. Uncontrolled res...
CVE-2024-23787MEDIUM6.5Path traversal vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9.1 and earli...
CVE-2024-23785MEDIUM6.5Cross-site request forgery vulnerability in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0.1.9...
CVE-2024-23784MEDIUM6.5Improper access control vulnerability exists in Energy Management Controller with Cloud Services JH-RVB1 /JH-RV11 Ver.B0...
CVE-2024-22455MEDIUM4.6Dell Mobility - E-Lab Navigator, version(s) 3.1.9, 3.2.0, contain(s) an Authorization Bypass Through User-Controlled Key...
CVE-2024-25125MEDIUM5.3Digdag is an open source tool that to build, run, schedule, and monitor complex pipelines of tasks across various platfo...
CVE-2024-24699MEDIUM6.5Business logic error in some Zoom clients may allow an authenticated user to conduct information disclosure via network ...
CVE-2024-24698MEDIUM4.4Improper authentication in some Zoom clients may allow a privileged user to conduct a disclosure of information via loca...
CVE-2024-24696MEDIUM6.5Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Wind...
CVE-2024-24695MEDIUM6.5Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Wind...
CVE-2024-24690MEDIUM6.5Improper input validation in some Zoom clients may allow an authenticated user to conduct a denial of service via networ...
CVE-2024-25120MEDIUM4.3TYPO3 is an open source PHP based web content management system released under the GNU GPL. The TYPO3-specific `t3://` U...
CVE-2024-25119MEDIUM4.9TYPO3 is an open source PHP based web content management system released under the GNU GPL. The plaintext value of `$GLO...
CVE-2024-25118MEDIUM6.5TYPO3 is an open source PHP based web content management system released under the GNU GPL. Password hashes were being r...
CVE-2024-25122MEDIUM6.1sidekiq-unique-jobs is an open source project which prevents simultaneous Sidekiq jobs with the same unique arguments to...
CVE-2024-1084MEDIUM6.1Cross-site Scripting in the tag name pattern field in the tag protections UI in GitHub Enterprise Server allows a malici...
CVE-2024-1082MEDIUM6.5A path traversal vulnerability was identified in GitHub Enterprise Server that allowed an attacker to gain unauthorized ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now