2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-39649 | MEDIUM | 5.4 | 0.3% | Aug 1, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPDeveloper Essent... |
| CVE-2024-39648 | MEDIUM | 4.8 | 0.3% | Aug 1, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Themewinter... |
| CVE-2024-39637 | MEDIUM | 5.4 | 0.2% | Aug 1, 2024 | Server-Side Request Forgery (SSRF) vulnerability in pixelcurve Edubin edubin.This issue affects Edubin: from n/a through... |
| CVE-2024-39636 | HIGH | 8.3 | 0.4% | Aug 1, 2024 | Deserialization of Untrusted Data vulnerability in CodeSolz Better Find and Replace.This issue affects Better Find and R... |
| CVE-2024-38761 | HIGH | 7.5 | 0.4% | Aug 1, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Dylan James Zephyr Project Manager.This issu... |
| CVE-2024-32931 | MEDIUM | 5.7 | 0.4% | Aug 1, 2024 | Under certain circumstances the exacqVision Web Service can expose authentication token details within communications. |
| CVE-2024-32865 | HIGH | 7.3 | 0.1% | Aug 1, 2024 | Under certain circumstances the exacqVision Server will not properly validate TLS certificates provided by connected dev... |
| CVE-2024-32862 | HIGH | 8.1 | 0.4% | Aug 1, 2024 | Under certain circumstances the ExacqVision Web Services does not provide sufficient protection from untrusted domains. |
| CVE-2024-32758 | HIGH | 7.5 | 0.4% | Aug 1, 2024 | Under certain circumstances the communication between exacqVision Client and exacqVision Server will use insufficient ke... |
| CVE-2024-7367 | HIGH | 8.8 | 0.3% | Aug 1, 2024 | A vulnerability, which was classified as problematic, was found in SourceCodester Simple Realtime Quiz System 1.0. This ... |
| CVE-2024-7366 | CRITICAL | 9.8 | 0.6% | Aug 1, 2024 | A vulnerability was found in SourceCodester Tracking Monitoring Management System 1.0. It has been classified as critica... |
| CVE-2024-7093 | CRITICAL | 9.4 | 0.5% | Aug 1, 2024 | Dispatch's notification service uses Jinja templates to generate messages to users. Jinja permits code execution within ... |
| CVE-2024-41259 | CRITICAL | 9.1 | 0.4% | Aug 1, 2024 | Use of insecure hashing algorithm in the Gravatar's service in Navidrome v0.52.3 allows attackers to manipulate a user's... |
| CVE-2024-39634 | HIGH | 8.8 | 0.4% | Aug 1, 2024 | Improper Privilege Management vulnerability in IdeaBox PowerPack Pro for Elementor allows Privilege Escalation.This issu... |
| CVE-2024-39633 | HIGH | 8.8 | 0.4% | Aug 1, 2024 | Improper Privilege Management vulnerability in IdeaBox PowerPack for Beaver Builder allows Privilege Escalation.This iss... |
| CVE-2024-39630 | MEDIUM | 5.5 | 0.3% | Aug 1, 2024 | Deserialization of Untrusted Data vulnerability in MotoPress Timetable and Event Schedule allows Object Injection.This i... |
| CVE-2024-39624 | HIGH | 8.8 | 0.5% | Aug 1, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in CridioStudio ListingPro ... |
| CVE-2024-39621 | HIGH | 7.2 | 0.5% | Aug 1, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in CridioStudio ListingPro ... |
| CVE-2024-39619 | CRITICAL | 9.8 | 0.6% | Aug 1, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in CridioStudio ListingPro ... |
| CVE-2024-38791 | HIGH | 7.1 | 0.2% | Aug 1, 2024 | Server-Side Request Forgery (SSRF) vulnerability in Jordy Meow AI Engine: ChatGPT Chatbot allows Server Side Request For... |
| CVE-2024-38775 | HIGH | 7.2 | 0.6% | Aug 1, 2024 | Improper Privilege Management vulnerability in WebAppick CTX Feed allows Privilege Escalation.This issue affects CTX Fee... |
| CVE-2024-38772 | MEDIUM | 6.5 | 0.5% | Aug 1, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Crocoblock JetWidgets fo... |
| CVE-2024-38770 | CRITICAL | 9.8 | 0.5% | Aug 1, 2024 | Improper Privilege Management vulnerability in Revmakx Backup and Staging by WP Time Capsule allows Privilege Escalation... |
| CVE-2024-38768 | HIGH | 8.8 | 0.5% | Aug 1, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Webangon The Pack Elemen... |
| CVE-2024-38746 | HIGH | 7.1 | 0.5% | Aug 1, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in MakeStories Team MakeSto... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now