2024 CVE Vulnerabilities
39,217 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-44655 | MEDIUM | 6.1 | 0.2% | Nov 17, 2025 | PHPGurukul Complaint Management System 2.0 is vulnerable to Cross Site Scripting (XSS) via the search parameter in user-... |
| CVE-2024-44654 | MEDIUM | 6.5 | 0.2% | Nov 17, 2025 | PHPGurukul Complaint Management System 2.0 is vulnerable to SQL Injection via the email and mobileno parameters in reset... |
| CVE-2024-44657 | MEDIUM | 6.5 | 0.2% | Nov 17, 2025 | PHPGurukul Complaint Management System 2.0 is vulnerable to SQL Injection via the fromdate and todate parameters in betw... |
| CVE-2024-44653 | MEDIUM | 6.5 | 0.2% | Nov 17, 2025 | Kashipara Ecommerce Website 1.0 is vulnerable to SQL Injection via the user_email parameter in user_login.php. |
| CVE-2024-44651 | MEDIUM | 6.5 | 0.2% | Nov 17, 2025 | Kashipara Ecommerce Website 1.0 is vulnerable to SQL Injection via the recover_email parameter in user_password_recover.... |
| CVE-2024-46336 | MEDIUM | 6.1 | 0.2% | Nov 17, 2025 | kashipara School Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via /client_user/feedback.php. |
| CVE-2024-46334 | MEDIUM | 6.1 | 0.2% | Nov 17, 2025 | kashipara School Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via the formuser and formpassword par... |
| CVE-2024-44652 | MEDIUM | 6.5 | 0.2% | Nov 17, 2025 | Kashipara Ecommerce Website 1.0 is vulnerable to SQL Injection via the user_email, username, user_firstname, user_lastna... |
| CVE-2024-44648 | MEDIUM | 6.5 | 0.2% | Nov 17, 2025 | PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via id and adminremark parameters in quote-details.php. |
| CVE-2024-44647 | MEDIUM | 6.1 | 0.2% | Nov 17, 2025 | PHPGurukul Small CRM 3.0 is vulnerable to Cross Site Scripting (XSS) via the aremark parameter in manage-tickets.php. |
| CVE-2024-44644 | MEDIUM | 6.5 | 0.2% | Nov 17, 2025 | PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via the frm_id and aremark parameters in manage-tickets.php. |
| CVE-2024-44641 | MEDIUM | 6.5 | 0.2% | Nov 17, 2025 | PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via the oldpass parameter in change-password.php. |
| CVE-2024-55016 | MEDIUM | 6.5 | 0.2% | Nov 14, 2025 | PHPGurukul Student Record Management System 3.20 is vulnerable to SQL Injection via the id and password parameters in lo... |
| CVE-2024-44640 | MEDIUM | 6.5 | 0.2% | Nov 14, 2025 | PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the course-short, course-full, and cdate parame... |
| CVE-2024-44639 | MEDIUM | 6.5 | 0.2% | Nov 14, 2025 | PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the sub1, sub2, sub3, sub4, and course-short pa... |
| CVE-2024-44636 | MEDIUM | 6.5 | 0.2% | Nov 14, 2025 | PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the adminname and aemailid parameters in /admin... |
| CVE-2024-44635 | MEDIUM | 6.1 | 0.2% | Nov 14, 2025 | PHPGurukul Student Record System 3.20 is vulnerable to Cross Site Scripting (XSS) via adminname and aemailid parameters ... |
| CVE-2024-44633 | MEDIUM | 6.5 | 0.2% | Nov 14, 2025 | PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the currentpassword parameter in change-passwor... |
| CVE-2024-44632 | MEDIUM | 6.5 | 0.2% | Nov 14, 2025 | PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the id and emailid parameters in password-recov... |
| CVE-2024-44630 | MEDIUM | 6.5 | 0.2% | Nov 14, 2025 | Multiple parameters in register.php in PHPGurukul Student Record System 3.20 are vulnerable to SQL injection. These incl... |
| CVE-2024-42749 | MEDIUM | 6.1 | 0.2% | Nov 14, 2025 | Cross Site Scripting vulnerability in Alto CMS v.1.1.13 allows a local attacker to execute arbitrary code via a crafted ... |
| CVE-2024-7021 | MEDIUM | 4.3 | 0.2% | Nov 14, 2025 | Inappropriate implementation in Autofill in Google Chrome on Windows prior to 124.0.6367.60 allowed a remote attacker to... |
| CVE-2024-13983 | MEDIUM | 6.3 | 0.1% | Nov 14, 2025 | Inappropriate implementation in Lens in Google Chrome on iOS prior to 136.0.7103.59 allowed a remote attacker to perform... |
| CVE-2024-13178 | MEDIUM | 4.3 | 0.2% | Nov 14, 2025 | Inappropriate implementation in Fullscreen in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform ... |
| CVE-2024-11920 | MEDIUM | 4.3 | 0.2% | Nov 14, 2025 | Inappropriate implementation in Dawn in Google Chrome on Mac prior to 130.0.6723.92 allowed a remote attacker to perform... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now