2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-6710 | MEDIUM | 5.4 | 0.3% | Aug 5, 2024 | The Ditty WordPress plugin before 3.1.45 does not sanitise and escape some parameters, which could allow users with a r... |
| CVE-2024-6498 | MEDIUM | 4.8 | 0.3% | Aug 5, 2024 | The Chatbot for WordPress by Collect.chat ⚡️ WordPress plugin before 2.4.4 does not sanitise and escape some of its sett... |
| CVE-2024-6270 | MEDIUM | 4.8 | 0.3% | Aug 5, 2024 | The Community Events WordPress plugin before 1.5.1 does not sanitise and escape some of its settings, which could allow ... |
| CVE-2024-5081 | MEDIUM | 6.1 | 0.2% | Aug 5, 2024 | The wp-eMember WordPress plugin before v10.7.0 does not have CSRF check in some places, and is missing sanitisation as w... |
| CVE-2024-3636 | MEDIUM | 5.4 | 0.3% | Aug 5, 2024 | The Pinpoint Booking System WordPress plugin before 2.9.9.4.8 does not sanitise and escape some of its settings, which ... |
| CVE-2024-2232 | HIGH | 8.1 | 0.3% | Aug 5, 2024 | The lacks CSRF checks allowing a user to invite any user to any group (including private groups) |
| CVE-2024-6118 | CRITICAL | 9.1 | 0.5% | Aug 5, 2024 | A Plaintext Storage of a Password vulnerability in ebooknote function in Hamastar MeetingHub Paperless Meetings 2021 all... |
| CVE-2024-6117 | HIGH | 8.8 | 0.5% | Aug 5, 2024 | A Unrestricted upload of file with dangerous type vulnerability in meeting management function in Hamastar MeetingHub Pa... |
| CVE-2024-41889 | CRITICAL | 9.8 | 0.6% | Aug 5, 2024 | Multiple Pimax products accept WebSocket connections from unintended endpoints. If this vulnerability is exploited, arbi... |
| CVE-2024-41720 | HIGH | 8 | 0.2% | Aug 5, 2024 | Incorrect permission assignment for critical resource issue exists in ZWX-2000CSW2-HN firmware versions prior to Ver.0.3... |
| CVE-2024-39838 | HIGH | 8.8 | 0.3% | Aug 5, 2024 | ZWX-2000CSW2-HN firmware versions prior to Ver.0.3.15 uses hard-coded credentials, which may allow a network-adjacent at... |
| CVE-2024-39713 | HIGH | 8.6 | 3.2% | Aug 5, 2024 | A Server-Side Request Forgery (SSRF) affects Rocket.Chat's Twilio webhook endpoint before version 6.10.1. |
| CVE-2024-7470 | CRITICAL | 9.8 | 24.9% | Aug 5, 2024 | A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200 and MSG2300 3.90. It has been rated as critical. This i... |
| CVE-2024-7469 | CRITICAL | 9.8 | 24.9% | Aug 5, 2024 | A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200 and MSG2300 3.90. It has been declared as critical. Thi... |
| CVE-2024-7468 | CRITICAL | 9.8 | 24.9% | Aug 5, 2024 | A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200 and MSG2300 3.90. It has been classified as critical. T... |
| CVE-2024-7467 | CRITICAL | 9.8 | 23.4% | Aug 5, 2024 | A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200 and MSG2300 3.90 and classified as critical. Affected b... |
| CVE-2024-7466 | MEDIUM | 5.4 | 0.4% | Aug 5, 2024 | A vulnerability has been found in PMWeb 7.2.00 and classified as problematic. Affected by this vulnerability is an unkno... |
| CVE-2024-7465 | CRITICAL | 9.8 | 1.3% | Aug 5, 2024 | A vulnerability, which was classified as critical, was found in TOTOLINK CP450 4.1.0cu.747_B20191224. Affected is the fu... |
| CVE-2024-7464 | CRITICAL | 9.8 | 19.9% | Aug 5, 2024 | A vulnerability, which was classified as critical, has been found in TOTOLINK CP900 6.3c.566. This issue affects the fun... |
| CVE-2024-7463 | CRITICAL | 9.8 | 11.0% | Aug 5, 2024 | A vulnerability classified as critical was found in TOTOLINK CP900 6.3c.566. This vulnerability affects the function Upl... |
| CVE-2024-7462 | CRITICAL | 9.8 | 1.3% | Aug 5, 2024 | A vulnerability classified as critical has been found in TOTOLINK N350RT 9.3.5u.6139_B20201216. This affects the functio... |
| CVE-2024-7461 | CRITICAL | 9.8 | 0.5% | Aug 5, 2024 | A vulnerability was found in ForIP Tecnologia Administração PABX 1.x. It has been rated as critical. Affected by this is... |
| CVE-2024-7460 | HIGH | 8.8 | 0.4% | Aug 4, 2024 | A vulnerability was found in OSWAPP Warehouse Inventory System 1.0/2.0. It has been declared as problematic. Affected by... |
| CVE-2024-7459 | HIGH | 8.8 | 0.4% | Aug 4, 2024 | A vulnerability was found in OSWAPP Warehouse Inventory System 1.0/2.0. It has been classified as problematic. Affected ... |
| CVE-2024-7458 | CRITICAL | 9.8 | 0.8% | Aug 4, 2024 | A vulnerability was found in elunez eladmin up to 2.7 and classified as critical. This issue affects some unknown proces... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now