2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-22414MEDIUM5.4flaskBlog is a simple blog app built with Flask. Improper storage and rendering of the `/user/<user>` page allows a user...
CVE-2024-0647MEDIUM6.1A vulnerability, which was classified as problematic, was found in Sparksuite SimpleMDE up to 1.11.2. This affects an un...
CVE-2024-22714MEDIUM6.1Stupid Simple CMS <=1.2.4 is vulnerable to Cross Site Scripting (XSS) in the editing section of the article content.
CVE-2024-20270MEDIUM5.4A vulnerability in the web-based management interface of Cisco BroadWorks Application Delivery Platform and Cisco BroadW...
CVE-2024-20251MEDIUM5.4A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat...
CVE-2024-0641MEDIUM5.5A denial of service vulnerability was found in tipc_crypto_key_revoke in net/tipc/crypto.c in the Linux kernel’s TIPC su...
CVE-2024-0639MEDIUM5.5A denial of service vulnerability due to a deadlock was found in sctp_auto_asconf_init in net/sctp/socket.c in the Linux...
CVE-2024-0405MEDIUM6.5The Burst Statistics – Privacy-Friendly Analytics for WordPress plugin, version 1.5.3, is vulnerable to Post-Authenticat...
CVE-2024-22407MEDIUM6.5Shopware is an open headless commerce platform. In the Shopware CMS, the state handler for orders fails to sufficiently ...
CVE-2024-22411MEDIUM5.4Avo is a framework to create admin panels for Ruby on Rails apps. In Avo 3 pre12, any HTML inside text that is passed to...
CVE-2024-22192MEDIUM6.5Ursa is a cryptographic library for use with blockchains. The revocation scheme that is part of the Ursa CL-Signatures i...
CVE-2024-22191MEDIUM5.4Avo is a framework to create admin panels for Ruby on Rails apps. A stored cross-site scripting (XSS) vulnerability was ...
CVE-2024-20987MEDIUM5.4Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Web Server). The supported version th...
CVE-2024-20985MEDIUM6.5Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: UDF). Supported versions that are affecte...
CVE-2024-20983MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affecte...
CVE-2024-20981MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affecte...
CVE-2024-20979MEDIUM5.4Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Web Server). Supported versions that a...
CVE-2024-20977MEDIUM6.5Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a...
CVE-2024-20975MEDIUM6.5Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a...
CVE-2024-20973MEDIUM6.5Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a...
CVE-2024-20971MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a...
CVE-2024-20969MEDIUM5.5Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affecte...
CVE-2024-20967MEDIUM5.5Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are...
CVE-2024-20965MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a...
CVE-2024-20963MEDIUM6.5Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now