2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-0072LOW3.3 NVIDIA CUDA toolkit for all platforms contains a vulnerability in cuobjdump and nvdisasm where an attacker may cause a ...
CVE-2024-3349CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. Af...
CVE-2024-3348CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Aplaya Beach Resort Online Reservation System 1....
CVE-2024-3347CRITICAL9.8A vulnerability was found in SourceCodester Airline Ticket Reservation System 1.0. It has been rated as critical. This i...
CVE-2024-3346MEDIUM6.3A vulnerability was found in Byzoro Smart S80 up to 20240328. It has been declared as critical. This vulnerability affec...
CVE-2024-31852MEDIUM5.9LLVM before 18.1.3 generates code in which the LR register can be overwritten without data being saved to the stack, and...
CVE-2024-31220HIGH7.3Sunshine is a self-hosted game stream host for Moonlight. Starting in version 0.16.0 and prior to version 0.18.0, an att...
CVE-2024-31218CRITICAL9.8Webhood is a self-hosted URL scanner used analyzing phishing and malicious sites. Webhood's backend container images in ...
CVE-2024-31213MEDIUM5.4InstantCMS is a free and open source content management system. An open redirect was found in the ICMS2 application vers...
CVE-2024-2499MEDIUM6.4The Squelch Tabs and Accordions Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plu...
CVE-2024-2380MEDIUM5.4Stored XSS in graph rendering in Checkmk <2.3.0b4.
CVE-2024-31083HIGH7.8A use-after-free vulnerability was found in the ProcRenderAddGlyphs() function of Xorg servers. This issue occurs when A...
CVE-2024-2447MEDIUM6.5Mattermost versions 8.1.x before 8.1.11, 9.3.x before 9.3.3, 9.4.x before 9.4.4, and 9.5.x before 9.5.2 fail to authenti...
CVE-2024-29221LOW3.8Improper Access Control in Mattermost Server versions 9.5.x before 9.5.2, 9.4.x before 9.4.4, 9.3.x before 9.3.3, 8.1.x ...
CVE-2024-28949MEDIUM6.5Mattermost Server versions 9.5.x before 9.5.2, 9.4.x before 9.4.4, 9.3.x before 9.3.3, 8.1.x before 8.1.11 don't limit t...
CVE-2024-27437MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: vfio/pci: Disable auto-enable of exclusive INTx IRQ...
CVE-2024-26814MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: vfio/fsl-mc: Block calling interrupt handler withou...
CVE-2024-26813MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: vfio/platform: Create persistent IRQ handlers The ...
CVE-2024-26812MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: vfio/pci: Create persistent INTx handler A vulnera...
CVE-2024-26810HIGH7.8In the Linux kernel, the following vulnerability has been resolved: vfio/pci: Lock external INTx masking ops Mask oper...
CVE-2024-21848LOW3.1Improper Access Control in Mattermost Server versions 8.1.x before 8.1.11 allows an attacker that is in a channel with a...
CVE-2024-3217HIGH8.8The WP Directory Kit plugin for WordPress is vulnerable to SQL Injection via the 'attribute_value' and 'attribute_id' pa...
CVE-2024-30891HIGH8.8A command injection vulnerability exists in /goform/exeCommand in Tenda AC18 v15.03.05.05, which allows attackers to con...
CVE-2024-30849CRITICAL9.8Arbitrary file upload vulnerability in Sourcecodester Complete E-Commerce Site v1.0, allows remote attackers to execute ...
CVE-2024-2115HIGH8.8The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions u...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now