2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-6710MEDIUM5.4The Ditty WordPress plugin before 3.1.45 does not sanitise and escape some parameters, which could allow users with a r...
CVE-2024-6498MEDIUM4.8The Chatbot for WordPress by Collect.chat ⚡️ WordPress plugin before 2.4.4 does not sanitise and escape some of its sett...
CVE-2024-6270MEDIUM4.8The Community Events WordPress plugin before 1.5.1 does not sanitise and escape some of its settings, which could allow ...
CVE-2024-5081MEDIUM6.1The wp-eMember WordPress plugin before v10.7.0 does not have CSRF check in some places, and is missing sanitisation as w...
CVE-2024-3636MEDIUM5.4The Pinpoint Booking System WordPress plugin before 2.9.9.4.8 does not sanitise and escape some of its settings, which ...
CVE-2024-2232HIGH8.1The lacks CSRF checks allowing a user to invite any user to any group (including private groups)
CVE-2024-6118CRITICAL9.1A Plaintext Storage of a Password vulnerability in ebooknote function in Hamastar MeetingHub Paperless Meetings 2021 all...
CVE-2024-6117HIGH8.8A Unrestricted upload of file with dangerous type vulnerability in meeting management function in Hamastar MeetingHub Pa...
CVE-2024-41889CRITICAL9.8Multiple Pimax products accept WebSocket connections from unintended endpoints. If this vulnerability is exploited, arbi...
CVE-2024-41720HIGH8Incorrect permission assignment for critical resource issue exists in ZWX-2000CSW2-HN firmware versions prior to Ver.0.3...
CVE-2024-39838HIGH8.8ZWX-2000CSW2-HN firmware versions prior to Ver.0.3.15 uses hard-coded credentials, which may allow a network-adjacent at...
CVE-2024-39713HIGH8.6A Server-Side Request Forgery (SSRF) affects Rocket.Chat's Twilio webhook endpoint before version 6.10.1.
CVE-2024-7470CRITICAL9.8A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200 and MSG2300 3.90. It has been rated as critical. This i...
CVE-2024-7469CRITICAL9.8A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200 and MSG2300 3.90. It has been declared as critical. Thi...
CVE-2024-7468CRITICAL9.8A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200 and MSG2300 3.90. It has been classified as critical. T...
CVE-2024-7467CRITICAL9.8A vulnerability was found in Raisecom MSG1200, MSG2100E, MSG2200 and MSG2300 3.90 and classified as critical. Affected b...
CVE-2024-7466MEDIUM5.4A vulnerability has been found in PMWeb 7.2.00 and classified as problematic. Affected by this vulnerability is an unkno...
CVE-2024-7465CRITICAL9.8A vulnerability, which was classified as critical, was found in TOTOLINK CP450 4.1.0cu.747_B20191224. Affected is the fu...
CVE-2024-7464CRITICAL9.8A vulnerability, which was classified as critical, has been found in TOTOLINK CP900 6.3c.566. This issue affects the fun...
CVE-2024-7463CRITICAL9.8A vulnerability classified as critical was found in TOTOLINK CP900 6.3c.566. This vulnerability affects the function Upl...
CVE-2024-7462CRITICAL9.8A vulnerability classified as critical has been found in TOTOLINK N350RT 9.3.5u.6139_B20201216. This affects the functio...
CVE-2024-7461CRITICAL9.8A vulnerability was found in ForIP Tecnologia Administração PABX 1.x. It has been rated as critical. Affected by this is...
CVE-2024-7460HIGH8.8A vulnerability was found in OSWAPP Warehouse Inventory System 1.0/2.0. It has been declared as problematic. Affected by...
CVE-2024-7459HIGH8.8A vulnerability was found in OSWAPP Warehouse Inventory System 1.0/2.0. It has been classified as problematic. Affected ...
CVE-2024-7458CRITICAL9.8A vulnerability was found in elunez eladmin up to 2.7 and classified as critical. This issue affects some unknown proces...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now