2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-22137 | MEDIUM | 5.4 | 0.3% | Jan 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MailMunch Constant... |
| CVE-2024-23301 | MEDIUM | 5.5 | 0.3% | Jan 12, 2024 | Relax-and-Recover (aka ReaR) through 2.7 creates a world-readable initrd when using GRUB_RESCUE=y. This allows local att... |
| CVE-2024-21655 | MEDIUM | 4.3 | 0.6% | Jan 12, 2024 | Discourse is a platform for community discussion. For fields that are client editable, limits on sizes are not imposed. ... |
| CVE-2024-0467 | MEDIUM | 6.1 | 0.4% | Jan 12, 2024 | A vulnerability, which was classified as problematic, was found in code-projects Employee Profile Management System 1.0.... |
| CVE-2024-0465 | MEDIUM | 5.3 | 0.7% | Jan 12, 2024 | A vulnerability classified as problematic was found in code-projects Employee Profile Management System 1.0. This vulner... |
| CVE-2024-22494 | MEDIUM | 5.4 | 0.5% | Jan 12, 2024 | A stored XSS vulnerability exists in JFinalcms 5.0.0 via the /gusetbook/save mobile parameter, which allows remote attac... |
| CVE-2024-22493 | MEDIUM | 5.4 | 0.6% | Jan 12, 2024 | A stored XSS vulnerability exists in JFinalcms 5.0.0 via the /gusetbook/save content parameter, which allows remote atta... |
| CVE-2024-22492 | MEDIUM | 5.4 | 0.6% | Jan 12, 2024 | A stored XSS vulnerability exists in JFinalcms 5.0.0 via the /gusetbook/save contact parameter, which allows remote atta... |
| CVE-2024-22027 | MEDIUM | 6.5 | 0.7% | Jan 12, 2024 | Improper input validation vulnerability in WordPress Quiz Maker Plugin prior to 6.5.0.6 allows a remote authenticated at... |
| CVE-2024-23179 | MEDIUM | 6.1 | 0.4% | Jan 12, 2024 | An issue was discovered in the GlobalBlocking extension in MediaWiki before 1.40.2. For a Special:GlobalBlock?uselang=x-... |
| CVE-2024-23178 | MEDIUM | 5.4 | 0.4% | Jan 12, 2024 | An issue was discovered in the Phonos extension in MediaWiki before 1.40.2. PhonosButton.js allows i18n-based XSS via th... |
| CVE-2024-23177 | MEDIUM | 6.1 | 0.4% | Jan 12, 2024 | An issue was discovered in the WatchAnalytics extension in MediaWiki before 1.40.2. XSS can occur via the Special:PageSt... |
| CVE-2024-23174 | MEDIUM | 5.4 | 0.4% | Jan 12, 2024 | An issue was discovered in the PageTriage extension in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6, an... |
| CVE-2024-23173 | MEDIUM | 6.1 | 0.4% | Jan 12, 2024 | An issue was discovered in the Cargo extension in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6, and 1.4... |
| CVE-2024-23172 | MEDIUM | 5.4 | 0.5% | Jan 12, 2024 | An issue was discovered in the CheckUser extension in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6, and... |
| CVE-2024-23171 | MEDIUM | 5.4 | 0.4% | Jan 12, 2024 | An issue was discovered in the CampaignEvents extension in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6... |
| CVE-2024-0454 | MEDIUM | 6.1 | 0.3% | Jan 12, 2024 | ELAN Match-on-Chip FPR solution has design fault about potential risk of valid SID leakage and enumeration with spoof se... |
| CVE-2024-21617 | MEDIUM | 6.5 | 0.3% | Jan 12, 2024 | An Incomplete Cleanup vulnerability in Nonstop active routing (NSR) component of Juniper Networks Junos OS allows an ad... |
| CVE-2024-21613 | MEDIUM | 6.5 | 0.3% | Jan 12, 2024 | A Missing Release of Memory after Effective Lifetime vulnerability in Routing Protocol Daemon (RPD) of Juniper Networks... |
| CVE-2024-21607 | MEDIUM | 5.3 | 0.3% | Jan 12, 2024 | An Unsupported Feature in the UI vulnerability in Juniper Networks Junos OS on MX Series and EX9200 Series allows an un... |
| CVE-2024-21603 | MEDIUM | 6.5 | 0.5% | Jan 12, 2024 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the kernel of Juniper Network Junos OS on MX S... |
| CVE-2024-21601 | MEDIUM | 5.9 | 0.5% | Jan 12, 2024 | A Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability in the Flow... |
| CVE-2024-21600 | MEDIUM | 6.5 | 0.3% | Jan 12, 2024 | An Improper Neutralization of Equivalent Special Elements vulnerability in the Packet Forwarding Engine (PFE) of Junipe... |
| CVE-2024-21599 | MEDIUM | 6.5 | 0.3% | Jan 12, 2024 | A Missing Release of Memory after Effective Lifetime vulnerability in the Packet Forwarding Engine (PFE) of Juniper Net... |
| CVE-2024-21596 | MEDIUM | 5.3 | 0.5% | Jan 12, 2024 | A Heap-based Buffer Overflow vulnerability in the Routing Protocol Daemon (RPD) of Juniper Networks Junos OS and Junos ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now