2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-7640CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Kortex Lite Advocate Office Manageme...
CVE-2024-7639CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Kortex Lite Advocate Office Management System 1.0. Th...
CVE-2024-7638CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Kortex Lite Advocate Office Management System 1....
CVE-2024-7637CRITICAL9.8A vulnerability was found in code-projects Online Polling 1.0. It has been rated as critical. Affected by this issue is ...
CVE-2024-7636CRITICAL9.8A vulnerability was found in code-projects Simple Ticket Booking 1.0. It has been declared as critical. Affected by this...
CVE-2024-7635CRITICAL9.8A vulnerability was found in code-projects Simple Ticket Booking 1.0. It has been classified as critical. Affected is an...
CVE-2024-7633Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:...
CVE-2024-7621MEDIUM5.4The Visual Website Collaboration, Feedback & Project Management – Atarim plugin for WordPress is vulnerable to unauthori...
CVE-2024-7616CRITICAL9.8A vulnerability was found in Edimax IC-6220DC and IC-5150W up to 3.06. It has been rated as critical. Affected by this i...
CVE-2024-7615CRITICAL9.8A vulnerability was found in Tenda FH1206 1.2.0.8. It has been declared as critical. Affected by this vulnerability is t...
CVE-2024-7614CRITICAL9.8A vulnerability was found in Tenda FH1206 1.2.0.8(8155). It has been classified as critical. Affected is the function fr...
CVE-2024-7613CRITICAL9.8A vulnerability was found in Tenda FH1206 1.2.0.8(8155) and classified as critical. This issue affects the function from...
CVE-2024-7589HIGH8.1A signal handler in sshd(8) may call a logging function that is not async-signal-safe. The signal handler is invoked wh...
CVE-2024-7574MEDIUM6.1The Christmasify! plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.5...
CVE-2024-7557HIGH8.8A vulnerability was found in OpenShift AI that allows for authentication bypass and privilege escalation across models w...
CVE-2024-7512MEDIUM4.8Concrete CMS versions 9.0.0 through 9.3.2 are affected by a stored XSS vulnerability in Board instances. A rogue adminis...
CVE-2024-7503CRITICAL9.8The WooCommerce - Social Login plugin for WordPress is vulnerable to authentication bypass in versions up to, and includ...
CVE-2024-7416MEDIUM5.3The Reveal Template plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 3.7...
CVE-2024-7414MEDIUM5.3The PDF Builder for WPForms plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and includ...
CVE-2024-7413MEDIUM5.3The Obfuscate Email plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 3.8...
CVE-2024-7412MEDIUM5.3The No Update Nag plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.4.1...
CVE-2024-7410MEDIUM5.3The My Custom CSS PHP & ADS plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and includ...
CVE-2024-7408MEDIUM6.5This vulnerability exists in Airveda Air Quality Monitor PM2.5 PM10 due to transmission of sensitive information in plai...
CVE-2024-7399CRITICAL9.8Improper limitation of a pathname to a restricted directory vulnerability in Samsung MagicINFO 9 Server version before 2...
CVE-2024-7382MEDIUM5.3The Linkify Text plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.9.1....

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now