2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-56225 | HIGH | 8.8 | 0.3% | Dec 31, 2024 | Missing Authorization vulnerability in Leap13 Premium Addons for Elementor premium-addons-for-elementor allows Accessing... |
| CVE-2024-56223 | HIGH | 7.1 | 0.3% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fahad Mahmood Gulr... |
| CVE-2024-56210 | HIGH | 7.1 | 0.3% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in DeluxeThemes Userp... |
| CVE-2024-56209 | HIGH | 7.1 | 0.3% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SeventhQueen Kleo ... |
| CVE-2024-12106 | HIGH | 7.5 | 9.4% | Dec 31, 2024 | In WhatsUp Gold versions released before 2024.0.2, an unauthenticated attacker can configure LDAP settings. |
| CVE-2024-56232 | HIGH | 7.1 | 0.1% | Dec 31, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Alex Volkov WP Nice Loader wp-nice-loader allows Stored XSS.This issu... |
| CVE-2024-56230 | HIGH | 7.5 | 0.5% | Dec 31, 2024 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2024-56214 | HIGH | 8.3 | 0.4% | Dec 31, 2024 | Path Traversal: '.../...//' vulnerability in DeluxeThemes Userpro userpro allows Path Traversal.This issue affects Userp... |
| CVE-2024-56213 | HIGH | 8.8 | 0.5% | Dec 31, 2024 | Path Traversal: '.../...//' vulnerability in Arraytics Eventin wp-event-solution allows Path Traversal.This issue affect... |
| CVE-2024-56212 | HIGH | 8.5 | 0.4% | Dec 31, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in DeluxeThemes Userp... |
| CVE-2024-56211 | HIGH | 8.8 | 0.4% | Dec 31, 2024 | Missing Authorization vulnerability in DeluxeThemes Userpro userpro.This issue affects Userpro: from n/a through <= 5.1.... |
| CVE-2024-45497 | HIGH | 7.6 | 0.6% | Dec 31, 2024 | A flaw was found in the OpenShift build process, where the docker-build container is configured with a hostPath volume m... |
| CVE-2024-13040 | HIGH | 8.8 | 0.5% | Dec 31, 2024 | The QOCA aim from Quanta Computer has an Authorization Bypass Through User-Controlled Key vulnerability. By controlling ... |
| CVE-2024-12839 | HIGH | 8.8 | 0.7% | Dec 31, 2024 | The login mechanism via device authentication of CGFIDO from Changing Information Technology has an Authentication Bypas... |
| CVE-2024-12838 | HIGH | 8.8 | 0.7% | Dec 31, 2024 | The passwordless login mechanism in CGFIDO from Changing Information Technology has an Authentication Bypass vulnerabili... |
| CVE-2024-13051 | HIGH | 7.8 | 0.3% | Dec 30, 2024 | Ashlar-Vellum Graphite VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabili... |
| CVE-2024-13050 | HIGH | 7.8 | 0.3% | Dec 30, 2024 | Ashlar-Vellum Graphite VC6 File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabili... |
| CVE-2024-13049 | HIGH | 7.8 | 0.2% | Dec 30, 2024 | Ashlar-Vellum Cobalt XE File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remot... |
| CVE-2024-13048 | HIGH | 7.8 | 0.3% | Dec 30, 2024 | Ashlar-Vellum Cobalt XE File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows ... |
| CVE-2024-13047 | HIGH | 7.8 | 0.3% | Dec 30, 2024 | Ashlar-Vellum Cobalt CO File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remot... |
| CVE-2024-13046 | HIGH | 7.8 | 0.3% | Dec 30, 2024 | Ashlar-Vellum Cobalt CO File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows ... |
| CVE-2024-13045 | HIGH | 7.8 | 0.3% | Dec 30, 2024 | Ashlar-Vellum Cobalt AR File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability... |
| CVE-2024-13044 | HIGH | 7.8 | 0.2% | Dec 30, 2024 | Ashlar-Vellum Cobalt AR File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows ... |
| CVE-2024-13043 | HIGH | 7.8 | 0.3% | Dec 30, 2024 | Panda Security Dome Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers t... |
| CVE-2024-12753 | HIGH | 7.3 | 0.3% | Dec 30, 2024 | Foxit PDF Reader Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to e... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now