2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-12114 | MEDIUM | 4.3 | 0.3% | Mar 8, 2025 | The FooGallery – Responsive Photo Gallery, Image Viewer, Justified, Masonry & Carousel plugin for WordPress is vulnerabl... |
| CVE-2024-13640 | MEDIUM | 5.9 | 0.4% | Mar 8, 2025 | The Print Invoice & Delivery Notes for WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure ... |
| CVE-2024-13895 | MEDIUM | 6.3 | 0.3% | Mar 8, 2025 | The The Code Snippets CPT plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and... |
| CVE-2024-13890 | HIGH | 7.2 | 0.4% | Mar 8, 2025 | The Allow PHP Execute plugin for WordPress is vulnerable to PHP Code Injection in all versions up to, and including, 1.0... |
| CVE-2024-13835 | HIGH | 7.2 | 0.4% | Mar 8, 2025 | The Post Meta Data Manager plugin for WordPress is vulnerable to multisite privilege escalation in all versions up to, a... |
| CVE-2024-13774 | MEDIUM | 6.5 | 0.2% | Mar 8, 2025 | The Wishlist for WooCommerce: Multi Wishlists Per Customer plugin for WordPress is vulnerable to Cross-Site Request Forg... |
| CVE-2024-12460 | MEDIUM | 6.4 | 0.3% | Mar 8, 2025 | The Years Since – Timeless Texts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'yea... |
| CVE-2024-42733 | CRITICAL | 9.8 | 1.0% | Mar 7, 2025 | An issue in Docmosis Tornado v.2.9.7 and before allows a remote attacker to execute arbitrary code via a crafted script ... |
| CVE-2024-53700 | HIGH | 7.2 | 1.2% | Mar 7, 2025 | A command injection vulnerability has been reported to affect QHora. If exploited, the vulnerability could allow remote ... |
| CVE-2024-53699 | HIGH | 7.2 | 0.5% | Mar 7, 2025 | An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If exploited, t... |
| CVE-2024-53698 | MEDIUM | 4.9 | 0.4% | Mar 7, 2025 | A double free vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner... |
| CVE-2024-53697 | HIGH | 7.2 | 0.5% | Mar 7, 2025 | An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If exploited, t... |
| CVE-2024-53696 | MEDIUM | 4.9 | 0.4% | Mar 7, 2025 | A server-side request forgery (SSRF) vulnerability has been reported to affect QuLog Center. If exploited, the vulnerabi... |
| CVE-2024-53695 | CRITICAL | 9.1 | 0.5% | Mar 7, 2025 | A buffer overflow vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If exploited, the vulnerability co... |
| CVE-2024-53694 | HIGH | 8.6 | 0.1% | Mar 7, 2025 | A time-of-check time-of-use (TOCTOU) race condition vulnerability has been reported to affect several product versions. ... |
| CVE-2024-53693 | HIGH | 7.1 | 0.4% | Mar 7, 2025 | An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP o... |
| CVE-2024-53692 | MEDIUM | 5.1 | 0.8% | Mar 7, 2025 | A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the ... |
| CVE-2024-50405 | MEDIUM | 5.5 | 0.4% | Mar 7, 2025 | An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP o... |
| CVE-2024-50394 | HIGH | 8.8 | 0.3% | Mar 7, 2025 | An improper certificate validation vulnerability has been reported to affect Helpdesk. If exploited, the vulnerability c... |
| CVE-2024-50390 | CRITICAL | 9.8 | 1.1% | Mar 7, 2025 | A command injection vulnerability has been reported to affect QHora. If exploited, the vulnerability could allow remote ... |
| CVE-2024-48864 | CRITICAL | 9.1 | 0.5% | Mar 7, 2025 | A files or directories accessible to external parties vulnerability has been reported to affect File Station 5. If explo... |
| CVE-2024-38638 | HIGH | 7.2 | 0.5% | Mar 7, 2025 | An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If exploited, t... |
| CVE-2024-13086 | HIGH | 7.5 | 0.4% | Mar 7, 2025 | An exposure of sensitive information vulnerability has been reported to affect product. If exploited, the vulnerability ... |
| CVE-2024-12975 | LOW | 1 | 0.2% | Mar 7, 2025 | A buffer overread can occur in the CPC application when operating in full duplex SPI upon receiving an invalid packet ov... |
| CVE-2024-12634 | MEDIUM | 6.1 | 0.2% | Mar 7, 2025 | The Related Posts, Inline Related Posts, Contextual Related Posts, Related Content By PickPlugins plugin for WordPress i... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now