2024 CVE Vulnerabilities

39,241 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-5742MEDIUM6.7A vulnerability was found in GNU Nano that allows a possible privilege escalation through an insecure temporary file. If...
CVE-2024-5468MEDIUM6.5The WordPress Header Builder Plugin – Pearl plugin for WordPress is vulnerable to unauthorized site option deletion due ...
CVE-2024-5266MEDIUM5.4The Download Manager Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via wpdm_user_dashboard, wpdm...
CVE-2024-5203Rejected reason: After careful review of CVE-2024-5203, it has been determined that the issue is not exploitable in real...
CVE-2024-5154HIGH8.1A flaw was found in cri-o. A malicious container can create a symbolic link to arbitrary files on the host via directory...
CVE-2024-3183HIGH8.1A vulnerability was found in FreeIPA in a way when a Kerberos TGS-REQ is encrypted using the client’s session key. This ...
CVE-2024-5873Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-5783Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-5782Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-5781Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-5780Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-5779Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-5778Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-5777Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-5776Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-3925MEDIUM5.4The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for W...
CVE-2024-2698HIGH8.8A vulnerability was found in FreeIPA in how the initial implementation of MS-SFU by MIT Kerberos was missing a condition...
CVE-2024-5739MEDIUM6.1The in-app browser of LINE client for iOS versions below 14.9.0 contains a Universal XSS (UXSS) vulnerability. This vuln...
CVE-2024-28970MEDIUM4.4Dell Client BIOS contains an Out-of-bounds Write vulnerability. A local authenticated malicious user with admin privileg...
CVE-2024-0160MEDIUM6.8Dell Client Platform contains an incorrect authorization vulnerability. An attacker with physical access to the system c...
CVE-2024-5892MEDIUM6.4The Divi Torque Lite – Divi Theme and Extra Theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ...
CVE-2024-4924MEDIUM6.1The Social Sharing Plugin WordPress plugin before 3.3.63 does not sanitise and escape some of its settings, which could...
CVE-2024-36454MEDIUM5.3Use of uninitialized resource issue exists in IPCOM EX2 Series (V01L0x Series) V01L07NF0201 and earlier, and IPCOM VE2 S...
CVE-2024-0427MEDIUM6.3The ARForms - Premium WordPress Form Builder Plugin WordPress plugin before 6.4.1 does not properly escape user-controll...
CVE-2024-3559MEDIUM5.4The Custom Field Suite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the the 'cfs[post_content]'...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now