2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-56496 | LOW | 3.3 | 0.1% | Feb 27, 2025 | IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed technical error message is ret... |
| CVE-2024-56495 | LOW | 3.3 | 0.1% | Feb 27, 2025 | IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed technical error message is ret... |
| CVE-2024-56494 | LOW | 3.3 | 0.1% | Feb 27, 2025 | IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed technical error message is ret... |
| CVE-2024-56493 | LOW | 3.3 | 0.1% | Feb 27, 2025 | IBM EntireX 11.1 could allow a local user to obtain sensitive information when a detailed technical error message is ret... |
| CVE-2024-54170 | MEDIUM | 5.5 | 0.1% | Feb 27, 2025 | IBM EntireX 11.1 could allow a local user to cause a denial of service due to use of a regular expression with an ineffi... |
| CVE-2024-54169 | MEDIUM | 6.5 | 0.4% | Feb 27, 2025 | IBM EntireX 11.1 could allow an authenticated attacker to traverse directories on the system. An attacker could send a s... |
| CVE-2024-13148 | CRITICAL | 9.8 | 0.4% | Feb 27, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Yukseloglu Filter ... |
| CVE-2024-9334 | HIGH | 8.2 | 0.3% | Feb 27, 2025 | Use of Hard-coded Credentials, Storage of Sensitive Data in a Mechanism without Access Control vulnerability in E-Kent P... |
| CVE-2024-13402 | MEDIUM | 5.4 | 0.2% | Feb 27, 2025 | The Buddyboss Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘link_title’ parameter ... |
| CVE-2024-13217 | MEDIUM | 4.3 | 0.3% | Feb 27, 2025 | The Jeg Elementor Kit plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in... |
| CVE-2024-10918 | CRITICAL | 9.8 | 0.4% | Feb 27, 2025 | Stack-based Buffer Overflow vulnerability in libmodbus v3.1.10 allows to overflow the buffer allocated for the Modbus re... |
| CVE-2024-13734 | MEDIUM | 5.4 | 0.3% | Feb 27, 2025 | The Card Elements for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Profi... |
| CVE-2024-5848 | MEDIUM | 6.1 | 0.2% | Feb 27, 2025 | A reflected cross-site scripting (XSS) vulnerability exists in multiple WSO2 products due to improper input validation. ... |
| CVE-2024-13907 | MEDIUM | 6.5 | 0.4% | Feb 27, 2025 | The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to Serv... |
| CVE-2024-0392 | MEDIUM | 5.4 | 0.1% | Feb 27, 2025 | A Cross-Site Request Forgery (CSRF) vulnerability exists in the management console of WSO2 Enterprise Integrator 6.6.0 d... |
| CVE-2024-6261 | MEDIUM | 5.4 | 0.3% | Feb 27, 2025 | The Image Photo Gallery Final Tiles Grid plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi... |
| CVE-2024-2297 | HIGH | 8.8 | 0.3% | Feb 27, 2025 | The Bricks theme for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.9.6.1. This... |
| CVE-2024-2321 | MEDIUM | 5.6 | 0.2% | Feb 27, 2025 | An incorrect authorization vulnerability exists in multiple WSO2 products, allowing protected APIs to be accessed direct... |
| CVE-2024-13905 | CRITICAL | 9.1 | 0.3% | Feb 27, 2025 | The OneStore Sites plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and includin... |
| CVE-2024-13647 | MEDIUM | 4.3 | 0.2% | Feb 27, 2025 | The School Management System – SakolaWP plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions... |
| CVE-2024-58021 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: HID: winwing: Add NULL check in winwing_init_led() ... |
| CVE-2024-58020 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: HID: multitouch: Add NULL check in mt_input_configu... |
| CVE-2024-58019 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: nvkm/gsp: correctly advance the read pointer of GSP... |
| CVE-2024-58018 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: nvkm: correctly calculate the available space of th... |
| CVE-2024-58017 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: printk: Fix signed integer overflow when defining L... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now