2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-0781MEDIUM6.1A vulnerability, which was classified as problematic, was found in CodeAstro Internet Banking System 1.0. This affects a...
CVE-2024-22113MEDIUM6.1Open redirect vulnerability in Access analysis CGI An-Analyzer released in 2023 December 31 and earlier allows a remote ...
CVE-2024-21484MEDIUM5.9Versions of the package jsrsasign before 11.0.0 are vulnerable to Observable Discrepancy via the RSA PKCS1.5 or RSAOAEP ...
CVE-2024-23770MEDIUM5.5darkhttpd through 1.15 allows local users to discover credentials (for --auth) by listing processes and their arguments.
CVE-2024-0776MEDIUM5.4A vulnerability, which was classified as problematic, has been found in LinZhaoguan pb-cms 2.0. Affected by this issue i...
CVE-2024-0774MEDIUM5.5A vulnerability was found in Any-Capture Any Sound Recorder 2.93. It has been declared as problematic. This vulnerabilit...
CVE-2024-0773MEDIUM5.4A vulnerability classified as problematic was found in CodeAstro Internet Banking System 1.0. Affected by this vulnerabi...
CVE-2024-0772MEDIUM5.5A vulnerability was found in Nsasoft ShareAlarmPro 2.1.4 and classified as problematic. Affected by this issue is some u...
CVE-2024-0771MEDIUM5.5A vulnerability has been found in Nsasoft Product Key Explorer 4.0.9 and classified as problematic. Affected by this vul...
CVE-2024-23725MEDIUM6.1Ghost before 5.76.0 allows XSS via a post excerpt in excerpt.js. An XSS payload can be rendered in post summaries.
CVE-2024-0679MEDIUM6.5The ColorMag theme for WordPress is vulnerable to unauthorized access due to a missing capability check on the plugin_ac...
CVE-2024-0623MEDIUM4.3The VK Block Patterns plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includ...
CVE-2024-23332MEDIUM6.8The Notary Project is a set of specifications and tools intended to provide a cross-industry standard for securing softw...
CVE-2024-23688MEDIUM5.3Consensys Discovery versions less than 0.4.5 uses the same AES/GCM nonce for the entire session. which should ideally be...
CVE-2024-23686MEDIUM5.3DependencyCheck for Maven 9.0.0 to 9.0.6, for CLI version 9.0.0 to 9.0.5, and for Ant versions 9.0.0 to 9.0.5, when used...
CVE-2024-23685MEDIUM5.3Hard-coded credentials in mod-remote-storage versions under 1.7.2 and from 2.0.0 to 2.0.3 allows unauthorized users to g...
CVE-2024-23680MEDIUM5.3AWS Encryption SDK for Java versions 2.0.0 to 2.2.0 and less than 1.9.0 incorrectly validates some invalid ECDSA signatu...
CVE-2024-22421MEDIUM6.5JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook and Ar...
CVE-2024-22420MEDIUM6.1JupyterLab is an extensible environment for interactive and reproducible computing, based on the Jupyter Notebook and Ar...
CVE-2024-0758MEDIUM6.1MolecularFaces before 0.3.0 is vulnerable to cross site scripting. A remote attacker can execute arbitrary JavaScript in...
CVE-2024-22957MEDIUM5.5swftools 0.9.2 was discovered to contain an Out-of-bounds Read vulnerability via the function dict_do_lookup in swftools...
CVE-2024-22914MEDIUM5.5A heap-use-after-free was found in SWFTools v0.9.2, in the function input at lex.swf5.c:2620. It allows an attacker to c...
CVE-2024-0726MEDIUM6.1A vulnerability was found in Project Worlds Student Project Allocation System 1.0. It has been rated as problematic. Thi...
CVE-2024-0722MEDIUM5.4A vulnerability was found in code-projects Social Networking Site 1.0 and classified as problematic. Affected by this is...
CVE-2024-0721MEDIUM6.1A vulnerability has been found in Jspxcms 10.2.0 and classified as problematic. Affected by this vulnerability is an unk...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now