2024 CVE Vulnerabilities
39,241 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-5742 | MEDIUM | 6.7 | 0.3% | Jun 12, 2024 | A vulnerability was found in GNU Nano that allows a possible privilege escalation through an insecure temporary file. If... |
| CVE-2024-5468 | MEDIUM | 6.5 | 0.4% | Jun 12, 2024 | The WordPress Header Builder Plugin – Pearl plugin for WordPress is vulnerable to unauthorized site option deletion due ... |
| CVE-2024-5266 | MEDIUM | 5.4 | 0.4% | Jun 12, 2024 | The Download Manager Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via wpdm_user_dashboard, wpdm... |
| CVE-2024-5203 | — | — | — | Jun 12, 2024 | Rejected reason: After careful review of CVE-2024-5203, it has been determined that the issue is not exploitable in real... |
| CVE-2024-5154 | HIGH | 8.1 | 1.2% | Jun 12, 2024 | A flaw was found in cri-o. A malicious container can create a symbolic link to arbitrary files on the host via directory... |
| CVE-2024-3183 | HIGH | 8.1 | 2.1% | Jun 12, 2024 | A vulnerability was found in FreeIPA in a way when a Kerberos TGS-REQ is encrypted using the client’s session key. This ... |
| CVE-2024-5873 | — | — | — | Jun 12, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-5783 | — | — | — | Jun 12, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-5782 | — | — | — | Jun 12, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-5781 | — | — | — | Jun 12, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-5780 | — | — | — | Jun 12, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-5779 | — | — | — | Jun 12, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-5778 | — | — | — | Jun 12, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-5777 | — | — | — | Jun 12, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-5776 | — | — | — | Jun 12, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-3925 | MEDIUM | 5.4 | 0.3% | Jun 12, 2024 | The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for W... |
| CVE-2024-2698 | HIGH | 8.8 | 0.7% | Jun 12, 2024 | A vulnerability was found in FreeIPA in how the initial implementation of MS-SFU by MIT Kerberos was missing a condition... |
| CVE-2024-5739 | MEDIUM | 6.1 | 0.3% | Jun 12, 2024 | The in-app browser of LINE client for iOS versions below 14.9.0 contains a Universal XSS (UXSS) vulnerability. This vuln... |
| CVE-2024-28970 | MEDIUM | 4.4 | 0.1% | Jun 12, 2024 | Dell Client BIOS contains an Out-of-bounds Write vulnerability. A local authenticated malicious user with admin privileg... |
| CVE-2024-0160 | MEDIUM | 6.8 | 0.2% | Jun 12, 2024 | Dell Client Platform contains an incorrect authorization vulnerability. An attacker with physical access to the system c... |
| CVE-2024-5892 | MEDIUM | 6.4 | 0.3% | Jun 12, 2024 | The Divi Torque Lite – Divi Theme and Extra Theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ... |
| CVE-2024-4924 | MEDIUM | 6.1 | 0.5% | Jun 12, 2024 | The Social Sharing Plugin WordPress plugin before 3.3.63 does not sanitise and escape some of its settings, which could... |
| CVE-2024-36454 | MEDIUM | 5.3 | 0.5% | Jun 12, 2024 | Use of uninitialized resource issue exists in IPCOM EX2 Series (V01L0x Series) V01L07NF0201 and earlier, and IPCOM VE2 S... |
| CVE-2024-0427 | MEDIUM | 6.3 | 0.4% | Jun 12, 2024 | The ARForms - Premium WordPress Form Builder Plugin WordPress plugin before 6.4.1 does not properly escape user-controll... |
| CVE-2024-3559 | MEDIUM | 5.4 | 0.3% | Jun 12, 2024 | The Custom Field Suite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the the 'cfs[post_content]'... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now