2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-0072 | LOW | 3.3 | 0.2% | Apr 5, 2024 | NVIDIA CUDA toolkit for all platforms contains a vulnerability in cuobjdump and nvdisasm where an attacker may cause a ... |
| CVE-2024-3349 | CRITICAL | 9.8 | 0.9% | Apr 5, 2024 | A vulnerability classified as critical was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. Af... |
| CVE-2024-3348 | CRITICAL | 9.8 | 0.9% | Apr 5, 2024 | A vulnerability classified as critical has been found in SourceCodester Aplaya Beach Resort Online Reservation System 1.... |
| CVE-2024-3347 | CRITICAL | 9.8 | 0.9% | Apr 5, 2024 | A vulnerability was found in SourceCodester Airline Ticket Reservation System 1.0. It has been rated as critical. This i... |
| CVE-2024-3346 | MEDIUM | 6.3 | 49.3% | Apr 5, 2024 | A vulnerability was found in Byzoro Smart S80 up to 20240328. It has been declared as critical. This vulnerability affec... |
| CVE-2024-31852 | MEDIUM | 5.9 | 1.0% | Apr 5, 2024 | LLVM before 18.1.3 generates code in which the LR register can be overwritten without data being saved to the stack, and... |
| CVE-2024-31220 | HIGH | 7.3 | 0.5% | Apr 5, 2024 | Sunshine is a self-hosted game stream host for Moonlight. Starting in version 0.16.0 and prior to version 0.18.0, an att... |
| CVE-2024-31218 | CRITICAL | 9.8 | 0.7% | Apr 5, 2024 | Webhood is a self-hosted URL scanner used analyzing phishing and malicious sites. Webhood's backend container images in ... |
| CVE-2024-31213 | MEDIUM | 5.4 | 0.4% | Apr 5, 2024 | InstantCMS is a free and open source content management system. An open redirect was found in the ICMS2 application vers... |
| CVE-2024-2499 | MEDIUM | 6.4 | 0.3% | Apr 5, 2024 | The Squelch Tabs and Accordions Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plu... |
| CVE-2024-2380 | MEDIUM | 5.4 | 0.3% | Apr 5, 2024 | Stored XSS in graph rendering in Checkmk <2.3.0b4. |
| CVE-2024-31083 | HIGH | 7.8 | 1.8% | Apr 5, 2024 | A use-after-free vulnerability was found in the ProcRenderAddGlyphs() function of Xorg servers. This issue occurs when A... |
| CVE-2024-2447 | MEDIUM | 6.5 | 0.2% | Apr 5, 2024 | Mattermost versions 8.1.x before 8.1.11, 9.3.x before 9.3.3, 9.4.x before 9.4.4, and 9.5.x before 9.5.2 fail to authenti... |
| CVE-2024-29221 | LOW | 3.8 | 0.3% | Apr 5, 2024 | Improper Access Control in Mattermost Server versions 9.5.x before 9.5.2, 9.4.x before 9.4.4, 9.3.x before 9.3.3, 8.1.x ... |
| CVE-2024-28949 | MEDIUM | 6.5 | 0.6% | Apr 5, 2024 | Mattermost Server versions 9.5.x before 9.5.2, 9.4.x before 9.4.4, 9.3.x before 9.3.3, 8.1.x before 8.1.11 don't limit t... |
| CVE-2024-27437 | MEDIUM | 5.5 | 0.2% | Apr 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: vfio/pci: Disable auto-enable of exclusive INTx IRQ... |
| CVE-2024-26814 | MEDIUM | 5.5 | 0.2% | Apr 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: vfio/fsl-mc: Block calling interrupt handler withou... |
| CVE-2024-26813 | MEDIUM | 5.5 | 0.2% | Apr 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: vfio/platform: Create persistent IRQ handlers The ... |
| CVE-2024-26812 | MEDIUM | 5.5 | 0.2% | Apr 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: vfio/pci: Create persistent INTx handler A vulnera... |
| CVE-2024-26810 | HIGH | 7.8 | 0.2% | Apr 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: vfio/pci: Lock external INTx masking ops Mask oper... |
| CVE-2024-21848 | LOW | 3.1 | 0.3% | Apr 5, 2024 | Improper Access Control in Mattermost Server versions 8.1.x before 8.1.11 allows an attacker that is in a channel with a... |
| CVE-2024-3217 | HIGH | 8.8 | 1.9% | Apr 5, 2024 | The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection via the 'attribute_value' and 'attribute_id' pa... |
| CVE-2024-30891 | HIGH | 8.8 | 1.9% | Apr 5, 2024 | A command injection vulnerability exists in /goform/exeCommand in Tenda AC18 v15.03.05.05, which allows attackers to con... |
| CVE-2024-30849 | CRITICAL | 9.8 | 1.1% | Apr 5, 2024 | Arbitrary file upload vulnerability in Sourcecodester Complete E-Commerce Site v1.0, allows remote attackers to execute ... |
| CVE-2024-2115 | HIGH | 8.8 | 0.3% | Apr 5, 2024 | The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions u... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now