2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-41175 | MEDIUM | 5.5 | 0.2% | Aug 27, 2024 | The IPC-Diagnostics package included in TwinCAT/BSD is vulnerable to a local denial-of-service attack by a low privilege... |
| CVE-2024-41174 | HIGH | 7.3 | 0.2% | Aug 27, 2024 | The IPC-Diagnostics package in TwinCAT/BSD is susceptible to improper input neutralization by a low-privileged local att... |
| CVE-2024-41173 | HIGH | 7.8 | 0.2% | Aug 27, 2024 | The IPC-Diagnostics package included in TwinCAT/BSD is vulnerable to a local authentication bypass by a low privileged a... |
| CVE-2024-7304 | MEDIUM | 5.4 | 0.4% | Aug 27, 2024 | The Ninja Tables – Easiest Data Table Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG ... |
| CVE-2024-6804 | MEDIUM | 5.4 | 0.4% | Aug 27, 2024 | The Jeg Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all vers... |
| CVE-2024-7125 | HIGH | 7.8 | 0.2% | Aug 27, 2024 | Authentication Bypass vulnerability in Hitachi Ops Center Common Services.This issue affects Hitachi Ops Center Common S... |
| CVE-2024-6688 | MEDIUM | 4.3 | 0.3% | Aug 27, 2024 | The Oxygen Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability c... |
| CVE-2024-45321 | HIGH | 8.1 | 0.7% | Aug 27, 2024 | The App::cpanminus package through 1.7047 for Perl downloads code via insecure HTTP, enabling code execution for network... |
| CVE-2024-45036 | MEDIUM | 4.3 | 0.3% | Aug 26, 2024 | Tophat is a mobile applications testing harness. An Improper Access Control vulnerability can expose the `TOPHAT_APP_TOK... |
| CVE-2024-43798 | HIGH | 8.6 | 0.4% | Aug 26, 2024 | Chisel is a fast TCP/UDP tunnel, transported over HTTP, secured via SSH. The Chisel server doesn't ever read the documen... |
| CVE-2024-7989 | — | — | — | Aug 26, 2024 | Rejected reason: Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdra... |
| CVE-2024-43916 | HIGH | 7.1 | 0.3% | Aug 26, 2024 | Authorization Bypass Through User-Controlled Key vulnerability in Dylan James Zephyr Project Manager.This issue affects ... |
| CVE-2024-43915 | MEDIUM | 5.4 | 0.2% | Aug 26, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Dylan James... |
| CVE-2024-43356 | MEDIUM | 4.3 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in bobbingwide.This issue affects oik: from n/a through 4.12.0. |
| CVE-2024-43340 | MEDIUM | 4.3 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Nasirahmed Advanced Form Integration.This issue affects Advanced Form... |
| CVE-2024-43339 | MEDIUM | 6.1 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WebinarPress allows Cross-Site Scripting (XSS).This issue affects Web... |
| CVE-2024-43337 | MEDIUM | 4.3 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Brave Brave Popup Builder.This issue affects Brave Popup Builder: fro... |
| CVE-2024-43336 | MEDIUM | 4.3 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WP User Manager WP User Manager wp-user-manager.This issue affects WP... |
| CVE-2024-43325 | HIGH | 8.8 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Naiche Dark Mode for WP Dashboard.This issue affects Dark Mode for WP... |
| CVE-2024-43316 | MEDIUM | 4.3 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Checkout Plugins Stripe Payments For WooCommerce by Checkout.This iss... |
| CVE-2024-43301 | MEDIUM | 5.4 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Fonts Plugin Fonts allows Stored XSS.This issue affects Fonts: from n... |
| CVE-2024-43299 | MEDIUM | 5.4 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Softaculous SpeedyCache speedycache.This issue affects SpeedyCache: f... |
| CVE-2024-43295 | MEDIUM | 4.3 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Passionate Programmers B.V. WP Data Access.This issue affects WP Data... |
| CVE-2024-43287 | HIGH | 8.8 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Brevo Newsletter, SMTP, Email marketing and Subscribe forms by Sendin... |
| CVE-2024-43269 | MEDIUM | 4.3 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WPBackItUp Backup and Restore WordPress.This issue affects Backup and... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now