2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-25106 | MEDIUM | 6.5 | 0.5% | Feb 8, 2024 | OpenObserve is a observability platform built specifically for logs, metrics, traces, analytics, designed to work at pet... |
| CVE-2024-24494 | MEDIUM | 6.1 | 25.9% | Feb 8, 2024 | Cross Site Scripting vulnerability in Daily Habit Tracker v.1.0 allows a remote attacker to execute arbitrary code via t... |
| CVE-2024-24115 | MEDIUM | 5.4 | 0.4% | Feb 8, 2024 | A stored cross-site scripting (XSS) vulnerability in the Edit Page function of Cotonti CMS v0.9.24 allows authenticated ... |
| CVE-2024-24215 | MEDIUM | 5.3 | 0.5% | Feb 8, 2024 | An issue in the component /cgi-bin/GetJsonValue.cgi of Cellinx NVT Web Server 5.0.0.014 allows attackers to leak configu... |
| CVE-2024-23764 | MEDIUM | 6.7 | 0.2% | Feb 8, 2024 | Certain WithSecure products allow Local Privilege Escalation. This affects WithSecure Client Security 15 and later, With... |
| CVE-2024-24834 | MEDIUM | 4.8 | 0.3% | Feb 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in realmag777 BEAR – ... |
| CVE-2024-24878 | MEDIUM | 6.1 | 0.3% | Feb 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Marco Almeida | We... |
| CVE-2024-24877 | MEDIUM | 6.1 | 0.3% | Feb 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Magic Hills Pty Lt... |
| CVE-2024-24871 | MEDIUM | 5.4 | 0.3% | Feb 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in creativethemeshq B... |
| CVE-2024-24836 | MEDIUM | 5.4 | 0.3% | Feb 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Audrasjb GDPR Data... |
| CVE-2024-1312 | MEDIUM | 4.7 | 0.2% | Feb 8, 2024 | A use-after-free flaw was found in the Linux kernel's Memory Management subsystem when a user wins two races at the same... |
| CVE-2024-1150 | MEDIUM | 5.5 | 0.1% | Feb 8, 2024 | Improper Verification of Cryptographic Signature vulnerability in Snow Software Inventory Agent on Unix allows File Mani... |
| CVE-2024-1149 | MEDIUM | 5.5 | 0.1% | Feb 8, 2024 | Improper Verification of Cryptographic Signature vulnerability in Snow Software Inventory Agent on MacOS, Snow Software ... |
| CVE-2024-24885 | MEDIUM | 5.4 | 0.3% | Feb 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Lê Văn Toản Woocom... |
| CVE-2024-24881 | MEDIUM | 6.1 | 0.4% | Feb 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VeronaLabs WP SMS ... |
| CVE-2024-24880 | MEDIUM | 5.4 | 0.3% | Feb 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Apollo13Themes Apo... |
| CVE-2024-24879 | MEDIUM | 6.1 | 0.4% | Feb 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Yannick Lefebvre L... |
| CVE-2024-24886 | MEDIUM | 5.4 | 0.3% | Feb 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Acowebs Product La... |
| CVE-2024-22464 | MEDIUM | 6.8 | 0.5% | Feb 8, 2024 | Dell EMC AppSync, versions from 4.2.0.0 to 4.6.0.0 including all Service Pack releases, contain an exposure of sensitiv... |
| CVE-2024-24034 | MEDIUM | 6.1 | 0.6% | Feb 8, 2024 | Setor Informatica S.I.L version 3.0 is vulnerable to Open Redirect via the hprinter parameter, allows remote attackers t... |
| CVE-2024-0965 | MEDIUM | 5.3 | 0.5% | Feb 8, 2024 | The Simple Page Access Restriction plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions ... |
| CVE-2024-0511 | MEDIUM | 4.3 | 0.2% | Feb 8, 2024 | The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Cross-Site Request Forgery in all version... |
| CVE-2024-25146 | MEDIUM | 5.3 | 0.6% | Feb 8, 2024 | Liferay Portal 7.2.0 through 7.4.1, and older unsupported versions, and Liferay DXP 7.3 before service pack 3, 7.2 befor... |
| CVE-2024-25144 | MEDIUM | 6.5 | 0.6% | Feb 8, 2024 | The IFrame widget in Liferay Portal 7.2.0 through 7.4.3.26, and older unsupported versions, and Liferay DXP 7.4 before u... |
| CVE-2024-1066 | MEDIUM | 6.5 | 0.6% | Feb 7, 2024 | An issue has been discovered in GitLab EE affecting all versions from 13.3.0 prior to 16.6.7, 16.7 prior to 16.7.5, and ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now