2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-22414 | MEDIUM | 5.4 | 0.4% | Jan 17, 2024 | flaskBlog is a simple blog app built with Flask. Improper storage and rendering of the `/user/<user>` page allows a user... |
| CVE-2024-0647 | MEDIUM | 6.1 | 0.7% | Jan 17, 2024 | A vulnerability, which was classified as problematic, was found in Sparksuite SimpleMDE up to 1.11.2. This affects an un... |
| CVE-2024-22714 | MEDIUM | 6.1 | 0.4% | Jan 17, 2024 | Stupid Simple CMS <=1.2.4 is vulnerable to Cross Site Scripting (XSS) in the editing section of the article content. |
| CVE-2024-20270 | MEDIUM | 5.4 | 0.4% | Jan 17, 2024 | A vulnerability in the web-based management interface of Cisco BroadWorks Application Delivery Platform and Cisco BroadW... |
| CVE-2024-20251 | MEDIUM | 5.4 | 0.4% | Jan 17, 2024 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat... |
| CVE-2024-0641 | MEDIUM | 5.5 | 0.2% | Jan 17, 2024 | A denial of service vulnerability was found in tipc_crypto_key_revoke in net/tipc/crypto.c in the Linux kernel’s TIPC su... |
| CVE-2024-0639 | MEDIUM | 5.5 | 0.2% | Jan 17, 2024 | A denial of service vulnerability due to a deadlock was found in sctp_auto_asconf_init in net/sctp/socket.c in the Linux... |
| CVE-2024-0405 | MEDIUM | 6.5 | 0.6% | Jan 17, 2024 | The Burst Statistics – Privacy-Friendly Analytics for WordPress plugin, version 1.5.3, is vulnerable to Post-Authenticat... |
| CVE-2024-22407 | MEDIUM | 6.5 | 0.4% | Jan 16, 2024 | Shopware is an open headless commerce platform. In the Shopware CMS, the state handler for orders fails to sufficiently ... |
| CVE-2024-22411 | MEDIUM | 5.4 | 0.7% | Jan 16, 2024 | Avo is a framework to create admin panels for Ruby on Rails apps. In Avo 3 pre12, any HTML inside text that is passed to... |
| CVE-2024-22192 | MEDIUM | 6.5 | 0.3% | Jan 16, 2024 | Ursa is a cryptographic library for use with blockchains. The revocation scheme that is part of the Ursa CL-Signatures i... |
| CVE-2024-22191 | MEDIUM | 5.4 | 0.7% | Jan 16, 2024 | Avo is a framework to create admin panels for Ruby on Rails apps. A stored cross-site scripting (XSS) vulnerability was ... |
| CVE-2024-20987 | MEDIUM | 5.4 | 0.3% | Jan 16, 2024 | Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Web Server). The supported version th... |
| CVE-2024-20985 | MEDIUM | 6.5 | 1.1% | Jan 16, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: UDF). Supported versions that are affecte... |
| CVE-2024-20983 | MEDIUM | 4.9 | 0.9% | Jan 16, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DML). Supported versions that are affecte... |
| CVE-2024-20981 | MEDIUM | 4.9 | 1.0% | Jan 16, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affecte... |
| CVE-2024-20979 | MEDIUM | 5.4 | 0.3% | Jan 16, 2024 | Vulnerability in the Oracle BI Publisher product of Oracle Analytics (component: Web Server). Supported versions that a... |
| CVE-2024-20977 | MEDIUM | 6.5 | 1.1% | Jan 16, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a... |
| CVE-2024-20975 | MEDIUM | 6.5 | 0.9% | Jan 16, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a... |
| CVE-2024-20973 | MEDIUM | 6.5 | 1.1% | Jan 16, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a... |
| CVE-2024-20971 | MEDIUM | 4.9 | 1.0% | Jan 16, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a... |
| CVE-2024-20969 | MEDIUM | 5.5 | 0.8% | Jan 16, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versions that are affecte... |
| CVE-2024-20967 | MEDIUM | 5.5 | 0.8% | Jan 16, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are... |
| CVE-2024-20965 | MEDIUM | 4.9 | 1.5% | Jan 16, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are a... |
| CVE-2024-20963 | MEDIUM | 6.5 | 1.1% | Jan 16, 2024 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now