2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-12114MEDIUM4.3The FooGallery – Responsive Photo Gallery, Image Viewer, Justified, Masonry & Carousel plugin for WordPress is vulnerabl...
CVE-2024-13640MEDIUM5.9The Print Invoice & Delivery Notes for WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure ...
CVE-2024-13895MEDIUM6.3The The Code Snippets CPT plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and...
CVE-2024-13890HIGH7.2The Allow PHP Execute plugin for WordPress is vulnerable to PHP Code Injection in all versions up to, and including, 1.0...
CVE-2024-13835HIGH7.2The Post Meta Data Manager plugin for WordPress is vulnerable to multisite privilege escalation in all versions up to, a...
CVE-2024-13774MEDIUM6.5The Wishlist for WooCommerce: Multi Wishlists Per Customer plugin for WordPress is vulnerable to Cross-Site Request Forg...
CVE-2024-12460MEDIUM6.4The Years Since – Timeless Texts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'yea...
CVE-2024-42733CRITICAL9.8An issue in Docmosis Tornado v.2.9.7 and before allows a remote attacker to execute arbitrary code via a crafted script ...
CVE-2024-53700HIGH7.2A command injection vulnerability has been reported to affect QHora. If exploited, the vulnerability could allow remote ...
CVE-2024-53699HIGH7.2An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If exploited, t...
CVE-2024-53698MEDIUM4.9A double free vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulner...
CVE-2024-53697HIGH7.2An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If exploited, t...
CVE-2024-53696MEDIUM4.9A server-side request forgery (SSRF) vulnerability has been reported to affect QuLog Center. If exploited, the vulnerabi...
CVE-2024-53695CRITICAL9.1A buffer overflow vulnerability has been reported to affect HBS 3 Hybrid Backup Sync. If exploited, the vulnerability co...
CVE-2024-53694HIGH8.6A time-of-check time-of-use (TOCTOU) race condition vulnerability has been reported to affect several product versions. ...
CVE-2024-53693HIGH7.1An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP o...
CVE-2024-53692MEDIUM5.1A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the ...
CVE-2024-50405MEDIUM5.5An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability has been reported to affect several QNAP o...
CVE-2024-50394HIGH8.8An improper certificate validation vulnerability has been reported to affect Helpdesk. If exploited, the vulnerability c...
CVE-2024-50390CRITICAL9.8A command injection vulnerability has been reported to affect QHora. If exploited, the vulnerability could allow remote ...
CVE-2024-48864CRITICAL9.1A files or directories accessible to external parties vulnerability has been reported to affect File Station 5. If explo...
CVE-2024-38638HIGH7.2An out-of-bounds write vulnerability has been reported to affect several QNAP operating system versions. If exploited, t...
CVE-2024-13086HIGH7.5An exposure of sensitive information vulnerability has been reported to affect product. If exploited, the vulnerability ...
CVE-2024-12975LOW1A buffer overread can occur in the CPC application when operating in full duplex SPI upon receiving an invalid packet ov...
CVE-2024-12634MEDIUM6.1The Related Posts, Inline Related Posts, Contextual Related Posts, Related Content By PickPlugins plugin for WordPress i...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now