2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-28607 | LOW | 2.9 | 0.1% | Mar 11, 2025 | The ip-utils package through 2.4.0 for Node.js might allow SSRF because some IP addresses (such as 0x7f.1) are improperl... |
| CVE-2024-58102 | MEDIUM | 6.5 | 0.3% | Mar 11, 2025 | An issue was discovered in Datalust Seq before 2024.3.13545. An insecure default parsing depth limit allows stack consum... |
| CVE-2024-13228 | MEDIUM | 6.5 | 0.3% | Mar 11, 2025 | The Qubely – Advanced Gutenberg Blocks plugin for WordPress is vulnerable to Sensitive Information Exposure in all versi... |
| CVE-2024-13864 | HIGH | 7.1 | 0.3% | Mar 11, 2025 | The Countdown Timer WordPress plugin through 1.0 does not sanitise and escape a parameter before outputting it back in t... |
| CVE-2024-13862 | HIGH | 7.1 | 0.3% | Mar 11, 2025 | The S3Bubble Media Streaming (AWS|Elementor|YouTube|Vimeo Functionality) WordPress plugin through 8.0 does not sanitise ... |
| CVE-2024-13853 | MEDIUM | 6.1 | 0.6% | Mar 11, 2025 | The SEO Tools WordPress plugin through 4.0.7 does not sanitise and escape a parameter before outputting it back in the p... |
| CVE-2024-13836 | HIGH | 7.1 | 0.3% | Mar 11, 2025 | The WP Login Control WordPress plugin through 2.0.0 does not sanitise and escape a parameter before outputting it back i... |
| CVE-2024-13615 | LOW | 3.5 | 0.2% | Mar 11, 2025 | The Social Share Buttons, Social Sharing Icons, Click to Tweet — Social Media Plugin by Social Snap WordPress plugin thr... |
| CVE-2024-13580 | MEDIUM | 4.3 | 0.2% | Mar 11, 2025 | The XV Random Quotes WordPress plugin through 1.40 does not have CSRF check in place when updating its settings, which c... |
| CVE-2024-13574 | HIGH | 7.1 | 0.3% | Mar 11, 2025 | The XV Random Quotes WordPress plugin through 1.40 does not sanitise and escape a parameter before outputting it back in... |
| CVE-2024-13413 | MEDIUM | 6.1 | 0.3% | Mar 11, 2025 | The ProductDyno plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘res’ parameter in all vers... |
| CVE-2024-13436 | MEDIUM | 6.1 | 0.1% | Mar 11, 2025 | The Appsero Helper plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including... |
| CVE-2024-12010 | HIGH | 7.2 | 1.1% | Mar 11, 2025 | A post-authentication command injection vulnerability in the ”zyUtilMailSend” function of the Zyxel AX7501-B1 firmware v... |
| CVE-2024-12009 | HIGH | 7.2 | 1.1% | Mar 11, 2025 | A post-authentication command injection vulnerability in the "ZyEE" function of the Zyxel EX5601-T1 firmware version V5.... |
| CVE-2024-11253 | HIGH | 7.2 | 1.1% | Mar 11, 2025 | A post-authentication command injection vulnerability in the "DNSServer” parameter of the diagnostic function in the Zyx... |
| CVE-2024-49823 | MEDIUM | 6.5 | 0.3% | Mar 11, 2025 | IBM Common Cryptographic Architecture 7.0.0 through 7.5.51 could allow an authenticated user to cause a denial of servic... |
| CVE-2024-41760 | LOW | 3.7 | 0.2% | Mar 11, 2025 | IBM Common Cryptographic Architecture 7.0.0 through 7.5.51 could allow an attacker to obtain sensitive information due... |
| CVE-2024-22340 | MEDIUM | 6.5 | 0.4% | Mar 11, 2025 | IBM Common Cryptographic Architecture 7.0.0 through 7.5.51 could allow a remote attacker to obtain sensitive informa... |
| CVE-2024-56192 | HIGH | 7.8 | 0.1% | Mar 10, 2025 | In wl_notify_gscan_event of wl_cfgscan.c, there is a possible out of bounds write due to a missing bounds check. This co... |
| CVE-2024-56191 | HIGH | 8.4 | 0.1% | Mar 10, 2025 | In dhd_process_full_gscan_result of dhd_pno.c, there is a possible EoP due to an integer overflow. This could lead to lo... |
| CVE-2024-56188 | MEDIUM | 5.1 | 0.1% | Mar 10, 2025 | there is a possible way to crash the modem due to a missing null check. This could lead to remote denial of service with... |
| CVE-2024-56187 | MEDIUM | 6.6 | 0.1% | Mar 10, 2025 | In ppcfw_deny_sec_dram_access of ppcfw.c, there is a possible arbitrary read from TEE memory due to a logic error in the... |
| CVE-2024-56186 | MEDIUM | 5.1 | 0.1% | Mar 10, 2025 | In closeChannel of secureelementimpl.cpp, there is a possible out of bounds read due to an incorrect bounds check. This ... |
| CVE-2024-56185 | MEDIUM | 5.1 | 0.1% | Mar 10, 2025 | In ProtocolUnsolOnSSAdapter::GetServiceClass() of protocolcalladapter.cpp, there is a possible out-of-bounds read due to... |
| CVE-2024-56184 | MEDIUM | 5.1 | 0.1% | Mar 10, 2025 | In static long dev_send of tipc_dev_ql, there is a possible out of bounds read due to an incorrect bounds check. This co... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now