2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-3893 | MEDIUM | 4.3 | 0.4% | Apr 25, 2024 | The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to unauthorized l... |
| CVE-2024-4161 | HIGH | 7.5 | 0.5% | Apr 25, 2024 | In Brocade SANnav, before Brocade SANnav v2.3.0, syslog traffic received clear text. This could allow an unauthenticate... |
| CVE-2024-4159 | MEDIUM | 5.3 | 0.5% | Apr 25, 2024 | Brocade SANnav before v2.3.0a lacks protection mechanisms on port 2377/TCP and 7946/TCP, which could allow an unauthent... |
| CVE-2024-2907 | MEDIUM | 6.8 | 0.5% | Apr 25, 2024 | The AGCA WordPress plugin before 7.2.2 does not sanitise and escape some of its settings, which could allow high privil... |
| CVE-2024-29205 | HIGH | 7.5 | 1.6% | Apr 25, 2024 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the web component of Ivanti Connect Secure (9.x... |
| CVE-2024-26926 | MEDIUM | 5.5 | 0.4% | Apr 25, 2024 | In the Linux kernel, the following vulnerability has been resolved: binder: check offset alignment in binder_get_object... |
| CVE-2024-26925 | MEDIUM | 5.5 | 0.3% | Apr 25, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: release mutex after nft_gc_se... |
| CVE-2024-26924 | HIGH | 7.8 | 1.3% | Apr 25, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_pipapo: do not free live element... |
| CVE-2024-26923 | MEDIUM | 4.7 | 0.2% | Apr 25, 2024 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Fix garbage collector racing against conne... |
| CVE-2024-23527 | HIGH | 7.5 | 2.0% | Apr 25, 2024 | An out-of-bounds read vulnerability in WLAvalancheService component of Ivanti Avalanche before 6.4.3, in certain conditi... |
| CVE-2024-20313 | HIGH | 7.4 | 0.3% | Apr 24, 2024 | A vulnerability in the OSPF version 2 (OSPFv2) feature of Cisco IOS XE Software could allow an unauthenticated, adjacent... |
| CVE-2024-4127 | HIGH | 8.8 | 1.8% | Apr 24, 2024 | A vulnerability was found in Tenda W15E 15.11.0.14. It has been classified as critical. Affected is the function guestWi... |
| CVE-2024-4126 | HIGH | 8.8 | 1.8% | Apr 24, 2024 | A vulnerability was found in Tenda W15E 15.11.0.14 and classified as critical. This issue affects the function formSetSy... |
| CVE-2024-32879 | MEDIUM | 4.9 | 0.6% | Apr 24, 2024 | Python Social Auth is a social authentication/registration mechanism. Prior to version 5.4.1, due to default case-insens... |
| CVE-2024-20358 | MEDIUM | 6.7 | 0.7% | Apr 24, 2024 | A vulnerability in the Cisco Adaptive Security Appliance (ASA) restore functionality that is available in Cisco ASA Soft... |
| CVE-2024-20356 | HIGH | 8.7 | 32.5% | Apr 24, 2024 | A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an aut... |
| CVE-2024-20295 | HIGH | 8.8 | 1.2% | Apr 24, 2024 | A vulnerability in the CLI of the Cisco Integrated Management Controller (IMC) could allow an authenticated, local attac... |
| CVE-2024-4141 | MEDIUM | 5.5 | 0.2% | Apr 24, 2024 | Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by an invalid character code in a Type 1 font. The root pr... |
| CVE-2024-4125 | HIGH | 8.8 | 1.8% | Apr 24, 2024 | A vulnerability has been found in Tenda W15E 15.11.0.14 and classified as critical. This vulnerability affects the funct... |
| CVE-2024-4124 | HIGH | 8.8 | 1.7% | Apr 24, 2024 | A vulnerability, which was classified as critical, was found in Tenda W15E 15.11.0.14. This affects the function formSet... |
| CVE-2024-4123 | HIGH | 8.8 | 1.7% | Apr 24, 2024 | A vulnerability, which was classified as critical, has been found in Tenda W15E 15.11.0.14. Affected by this issue is th... |
| CVE-2024-32876 | HIGH | 8.5 | 0.3% | Apr 24, 2024 | NewPipe is an Android app for video streaming written in Java. It supports exporting and importing backups, as a way to ... |
| CVE-2024-20359 | MEDIUM | 6 | 19.4% | Apr 24, 2024 | A vulnerability in a legacy capability that allowed for the preloading of VPN clients and plug-ins and that has been ava... |
| CVE-2024-20353 | HIGH | 8.6 | 70.7% | Apr 24, 2024 | A vulnerability in the management and VPN web servers for Cisco Adaptive Security Appliance (ASA) Software and Cisco Fir... |
| CVE-2024-4122 | HIGH | 8.8 | 1.7% | Apr 24, 2024 | A vulnerability classified as critical was found in Tenda W15E 15.11.0.14. Affected by this vulnerability is the functio... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now