2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-5848MEDIUM6.1A reflected cross-site scripting (XSS) vulnerability exists in multiple WSO2 products due to improper input validation. ...
CVE-2024-13907MEDIUM6.5The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to Serv...
CVE-2024-0392MEDIUM5.4A Cross-Site Request Forgery (CSRF) vulnerability exists in the management console of WSO2 Enterprise Integrator 6.6.0 d...
CVE-2024-6261MEDIUM5.4The Image Photo Gallery Final Tiles Grid plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi...
CVE-2024-2297HIGH8.8The Bricks theme for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.9.6.1. This...
CVE-2024-2321MEDIUM5.6An incorrect authorization vulnerability exists in multiple WSO2 products, allowing protected APIs to be accessed direct...
CVE-2024-13905CRITICAL9.1The OneStore Sites plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and includin...
CVE-2024-13647MEDIUM4.3The School Management System – SakolaWP plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions...
CVE-2024-58021MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: HID: winwing: Add NULL check in winwing_init_led() ...
CVE-2024-58020MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: HID: multitouch: Add NULL check in mt_input_configu...
CVE-2024-58019MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: nvkm/gsp: correctly advance the read pointer of GSP...
CVE-2024-58018MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: nvkm: correctly calculate the available space of th...
CVE-2024-58017MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: printk: Fix signed integer overflow when defining L...
CVE-2024-58016MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: safesetid: check size of policy writes syzbot atte...
CVE-2024-58015HIGH7.1In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: Fix for out-of bound access error Se...
CVE-2024-58014HIGH7.1In the Linux kernel, the following vulnerability has been resolved: wifi: brcmsmac: add gain range check to wlc_phy_iqc...
CVE-2024-58013HIGH7.8In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Fix slab-use-after-free Read in mg...
CVE-2024-58012MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ASoC: SOF: Intel: hda-dai: Ensure DAI widget is val...
CVE-2024-58011MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: platform/x86: int3472: Check for adev == NULL Not ...
CVE-2024-58010MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: binfmt_flat: Fix integer overflow bug on 32 bit sys...
CVE-2024-58009MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: handle NULL sock pointer in l2cap...
CVE-2024-58008MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: KEYS: trusted: dcp: fix improper sg use with CONFIG...
CVE-2024-58007HIGH7.1In the Linux kernel, the following vulnerability has been resolved: soc: qcom: socinfo: Avoid out of bounds read of ser...
CVE-2024-58006MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: PCI: dwc: ep: Prevent changing BAR size/flags in pc...
CVE-2024-58005MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: tpm: Change to kvalloc() in eventlog/acpi.c The fo...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now