2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-22137MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MailMunch Constant...
CVE-2024-23301MEDIUM5.5Relax-and-Recover (aka ReaR) through 2.7 creates a world-readable initrd when using GRUB_RESCUE=y. This allows local att...
CVE-2024-21655MEDIUM4.3Discourse is a platform for community discussion. For fields that are client editable, limits on sizes are not imposed. ...
CVE-2024-0467MEDIUM6.1A vulnerability, which was classified as problematic, was found in code-projects Employee Profile Management System 1.0....
CVE-2024-0465MEDIUM5.3A vulnerability classified as problematic was found in code-projects Employee Profile Management System 1.0. This vulner...
CVE-2024-22494MEDIUM5.4A stored XSS vulnerability exists in JFinalcms 5.0.0 via the /gusetbook/save mobile parameter, which allows remote attac...
CVE-2024-22493MEDIUM5.4A stored XSS vulnerability exists in JFinalcms 5.0.0 via the /gusetbook/save content parameter, which allows remote atta...
CVE-2024-22492MEDIUM5.4A stored XSS vulnerability exists in JFinalcms 5.0.0 via the /gusetbook/save contact parameter, which allows remote atta...
CVE-2024-22027MEDIUM6.5Improper input validation vulnerability in WordPress Quiz Maker Plugin prior to 6.5.0.6 allows a remote authenticated at...
CVE-2024-23179MEDIUM6.1An issue was discovered in the GlobalBlocking extension in MediaWiki before 1.40.2. For a Special:GlobalBlock?uselang=x-...
CVE-2024-23178MEDIUM5.4An issue was discovered in the Phonos extension in MediaWiki before 1.40.2. PhonosButton.js allows i18n-based XSS via th...
CVE-2024-23177MEDIUM6.1An issue was discovered in the WatchAnalytics extension in MediaWiki before 1.40.2. XSS can occur via the Special:PageSt...
CVE-2024-23174MEDIUM5.4An issue was discovered in the PageTriage extension in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6, an...
CVE-2024-23173MEDIUM6.1An issue was discovered in the Cargo extension in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6, and 1.4...
CVE-2024-23172MEDIUM5.4An issue was discovered in the CheckUser extension in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6, and...
CVE-2024-23171MEDIUM5.4An issue was discovered in the CampaignEvents extension in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6...
CVE-2024-0454MEDIUM6.1ELAN Match-on-Chip FPR solution has design fault about potential risk of valid SID leakage and enumeration with spoof se...
CVE-2024-21617MEDIUM6.5 An Incomplete Cleanup vulnerability in Nonstop active routing (NSR) component of Juniper Networks Junos OS allows an ad...
CVE-2024-21613MEDIUM6.5 A Missing Release of Memory after Effective Lifetime vulnerability in Routing Protocol Daemon (RPD) of Juniper Networks...
CVE-2024-21607MEDIUM5.3 An Unsupported Feature in the UI vulnerability in Juniper Networks Junos OS on MX Series and EX9200 Series allows an un...
CVE-2024-21603MEDIUM6.5 An Improper Check for Unusual or Exceptional Conditions vulnerability in the kernel of Juniper Network Junos OS on MX S...
CVE-2024-21601MEDIUM5.9 A Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability in the Flow...
CVE-2024-21600MEDIUM6.5 An Improper Neutralization of Equivalent Special Elements vulnerability in the Packet Forwarding Engine (PFE) of Junipe...
CVE-2024-21599MEDIUM6.5 A Missing Release of Memory after Effective Lifetime vulnerability in the Packet Forwarding Engine (PFE) of Juniper Net...
CVE-2024-21596MEDIUM5.3 A Heap-based Buffer Overflow vulnerability in the Routing Protocol Daemon (RPD) of Juniper Networks Junos OS and Junos ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now