2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-51112 | MEDIUM | 6.1 | 0.3% | Jan 6, 2025 | Open Redirect vulnerability in Pnetlab 5.3.11 allows an attacker to manipulate URLs to redirect users to arbitrary exter... |
| CVE-2024-51111 | MEDIUM | 4.1 | 0.3% | Jan 6, 2025 | Cross-Site Scripting (XSS) vulnerability in Pnetlab 5.3.11 allows an attacker to inject malicious scripts into a web pag... |
| CVE-2024-31914 | MEDIUM | 6.4 | 0.2% | Jan 6, 2025 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2 is vulnerable to stored... |
| CVE-2024-31913 | MEDIUM | 5.4 | 0.2% | Jan 6, 2025 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2 is vulnerable to stored... |
| CVE-2024-45559 | MEDIUM | 5.5 | 0.1% | Jan 6, 2025 | Transient DOS can occur when GVM sends a specific message type to the Vdev-FastRPC backend. |
| CVE-2024-43064 | MEDIUM | 4.7 | 0.1% | Jan 6, 2025 | Uncontrolled resource consumption when a driver, an application or a SMMU client tries to access the global registers th... |
| CVE-2024-43063 | MEDIUM | 5.5 | 0.1% | Jan 6, 2025 | information disclosure while invoking the mailbox read API. |
| CVE-2024-33067 | MEDIUM | 5.5 | 0.1% | Jan 6, 2025 | Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received ... |
| CVE-2024-33061 | MEDIUM | 5.5 | 0.1% | Jan 6, 2025 | Information disclosure while processing IOCTL call made for releasing a trusted VM process release or opening a channel ... |
| CVE-2024-23366 | MEDIUM | 5.5 | 0.1% | Jan 6, 2025 | Information Disclosure while invoking the mailbox write API when message received from user is larger than mailbox size. |
| CVE-2024-12311 | MEDIUM | 6.5 | 0.6% | Jan 6, 2025 | The Email Subscribers by Icegram Express WordPress plugin before 5.7.44 does not sanitize and escape a parameter before... |
| CVE-2024-12302 | MEDIUM | 6.1 | 0.3% | Jan 6, 2025 | The Icegram Engage WordPress plugin before 3.1.32 does not sanitise and escape some of its Campaign settings, which cou... |
| CVE-2024-11849 | MEDIUM | 6.1 | 0.3% | Jan 6, 2025 | The Pods WordPress plugin before 3.2.8.1 does not sanitise and escape some of its settings, which could allow high priv... |
| CVE-2024-11356 | MEDIUM | 6.1 | 0.3% | Jan 6, 2025 | The tourmaster WordPress plugin before 5.3.4 does not sanitise and escape some parameters when outputting them in the pa... |
| CVE-2024-20152 | MEDIUM | 4.4 | 0.1% | Jan 6, 2025 | In wlan STA driver, there is a possible reachable assertion due to improper exception handling. This could lead to local... |
| CVE-2024-20151 | MEDIUM | 6.7 | 0.2% | Jan 6, 2025 | In Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation ... |
| CVE-2024-20145 | MEDIUM | 6.6 | 0.1% | Jan 6, 2025 | In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ... |
| CVE-2024-20144 | MEDIUM | 6.6 | 0.1% | Jan 6, 2025 | In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ... |
| CVE-2024-20143 | MEDIUM | 6.6 | 0.1% | Jan 6, 2025 | In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ... |
| CVE-2024-20140 | MEDIUM | 6.7 | 0.1% | Jan 6, 2025 | In power, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ... |
| CVE-2024-20105 | MEDIUM | 6.7 | 0.1% | Jan 6, 2025 | In m4u, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr... |
| CVE-2024-13143 | MEDIUM | 5.4 | 0.3% | Jan 6, 2025 | A vulnerability was found in ZeroWdd studentmanager 1.0. It has been rated as problematic. This issue affects the functi... |
| CVE-2024-13142 | MEDIUM | 4.8 | 0.4% | Jan 5, 2025 | A vulnerability was found in ZeroWdd studentmanager 1.0. It has been declared as problematic. This vulnerability affects... |
| CVE-2024-13141 | MEDIUM | 5.4 | 0.4% | Jan 5, 2025 | A vulnerability classified as problematic was found in osuuu LightPicture up to 1.2.2. This vulnerability affects unknow... |
| CVE-2024-13140 | MEDIUM | 5.4 | 0.3% | Jan 5, 2025 | A vulnerability classified as problematic has been found in Emlog Pro up to 2.4.3. Affected is an unknown function of th... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now