2024 CVE Vulnerabilities
39,242 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-35689 | HIGH | 8.8 | 0.2% | Jun 8, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Analytify.This issue affects Analytify: from n/a through 5.2.3. |
| CVE-2024-35688 | MEDIUM | 5.4 | 0.3% | Jun 8, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Jewel Theme... |
| CVE-2024-35687 | MEDIUM | 6.1 | 0.3% | Jun 8, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Yannick Lef... |
| CVE-2024-35684 | MEDIUM | 4.3 | 0.2% | Jun 8, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in 10up ElasticPress elasticpress.This issue affects ElasticPress: from ... |
| CVE-2024-35682 | MEDIUM | 5.3 | 0.3% | Jun 8, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Themeisle Otter Blocks PRO.This issue affect... |
| CVE-2024-35681 | MEDIUM | 5.4 | 0.3% | Jun 8, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in gVectors Te... |
| CVE-2024-35679 | MEDIUM | 6.1 | 0.3% | Jun 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in StellarWP GiveWP g... |
| CVE-2024-34765 | MEDIUM | 6.5 | 0.4% | Jun 8, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Sensei Sens... |
| CVE-2024-37408 | HIGH | 7.3 | 0.3% | Jun 8, 2024 | fprintd through 1.94.3 lacks a security attention mechanism, and thus unexpected actions might be authorized by "auth su... |
| CVE-2024-35719 | MEDIUM | 5.4 | 0.3% | Jun 8, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in MagniGenie ... |
| CVE-2024-35718 | MEDIUM | 6.1 | 0.3% | Jun 8, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Tribulant N... |
| CVE-2024-35715 | MEDIUM | 5.4 | 0.3% | Jun 8, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in peregrineth... |
| CVE-2024-35714 | MEDIUM | 5.4 | 0.3% | Jun 8, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Theme Frees... |
| CVE-2024-35713 | MEDIUM | 5.4 | 0.2% | Jun 8, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in UAPP GROUP ... |
| CVE-2024-35711 | MEDIUM | 5.4 | 0.3% | Jun 8, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Theme Frees... |
| CVE-2024-35710 | MEDIUM | 5.3 | 0.4% | Jun 8, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Podlove Podlove Web Player.This issue affect... |
| CVE-2024-35709 | MEDIUM | 5.4 | 0.3% | Jun 8, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in POSIMYTH The Plus ... |
| CVE-2024-35708 | MEDIUM | 5.4 | 0.3% | Jun 8, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in apollo13the... |
| CVE-2024-35707 | MEDIUM | 5.4 | 0.3% | Jun 8, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Team Heateo... |
| CVE-2024-37407 | CRITICAL | 9.1 | 1.0% | Jun 8, 2024 | Libarchive before 3.7.4 allows name out-of-bounds access when a ZIP archive has an empty-name file and mac-ext is enable... |
| CVE-2024-36970 | MEDIUM | 5.5 | 0.1% | Jun 8, 2024 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: Use request_module_nowait This appe... |
| CVE-2024-36969 | MEDIUM | 5.5 | 0.2% | Jun 8, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix division by zero in setup_dsc_... |
| CVE-2024-36968 | MEDIUM | 6.5 | 0.2% | Jun 8, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix div-by-zero in l2cap_le_flowc... |
| CVE-2024-36967 | MEDIUM | 5.5 | 0.2% | Jun 8, 2024 | In the Linux kernel, the following vulnerability has been resolved: KEYS: trusted: Fix memory leak in tpm2_key_encode()... |
| CVE-2024-36966 | MEDIUM | 5.5 | 0.2% | Jun 8, 2024 | In the Linux kernel, the following vulnerability has been resolved: erofs: reliably distinguish block based and fscache... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now