2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-23320HIGH8.8Improper Input Validation vulnerability in Apache DolphinScheduler. An authenticated user can cause arbitrary, unsandbox...
CVE-2024-1826CRITICAL9.8A vulnerability has been found in code-projects Library System 1.0 and classified as critical. This vulnerability affect...
CVE-2024-1825MEDIUM6.1A vulnerability, which was classified as problematic, was found in CodeAstro House Rental Management System 1.0. This af...
CVE-2024-26150HIGH7.5`@backstage/backend-common` is a common functionality library for backends for Backstage, an open platform for building ...
CVE-2024-1824CRITICAL9.8A vulnerability, which was classified as critical, has been found in CodeAstro House Rental Management System 1.0. Affec...
CVE-2024-1823MEDIUM5.3A vulnerability classified as critical was found in CodeAstro Simple Voting System 1.0. Affected by this vulnerability i...
CVE-2024-1822MEDIUM6.1A vulnerability classified as problematic has been found in PHPGurukul Tourism Management System 1.0. Affected is an unk...
CVE-2024-1821HIGH8.8A vulnerability was found in code-projects Crime Reporting System 1.0. It has been rated as critical. This issue affects...
CVE-2024-1820CRITICAL9.8A vulnerability was found in code-projects Crime Reporting System 1.0. It has been declared as critical. This vulnerabil...
CVE-2024-26599HIGH7.8In the Linux kernel, the following vulnerability has been resolved: pwm: Fix out-of-bounds access in of_pwm_single_xlat...
CVE-2024-26598HIGH7.8In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: vgic-its: Avoid potential UAF in LPI tr...
CVE-2024-26597HIGH7.1In the Linux kernel, the following vulnerability has been resolved: net: qualcomm: rmnet: fix global oob in rmnet_polic...
CVE-2024-26596MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: dsa: fix netdev_priv() dereference before chec...
CVE-2024-26595MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix NULL pointer derefere...
CVE-2024-25629MEDIUM5.5c-ares is a C library for asynchronous DNS requests. `ares__read_line()` is used to parse local configuration files such...
CVE-2024-22776MEDIUM4.7Wallos 0.9 is vulnerable to Cross Site Scripting (XSS) in all text-based input fields without proper validation, excludi...
CVE-2024-1819HIGH7.2A vulnerability was found in CodeAstro Membership Management System 1.0. It has been classified as critical. This affect...
CVE-2024-1818HIGH7.2A vulnerability was found in CodeAstro Membership Management System 1.0 and classified as critical. Affected by this iss...
CVE-2024-26594HIGH7.1In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate mech token in session setup If cli...
CVE-2024-1817CRITICAL9.8A vulnerability has been found in Demososo DM Enterprise Website Building System up to 2022.8 and classified as critical...
CVE-2024-25928CRITICAL9.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sitepact.This issu...
CVE-2024-25915HIGH8.8Server-Side Request Forgery (SSRF) vulnerability in Raaj Trambadia Pexels: Free Stock Photos.This issue affects Pexels: ...
CVE-2024-1362MEDIUM4.3The Colibri Page Builder plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inc...
CVE-2024-1361MEDIUM4.3The Colibri Page Builder plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inc...
CVE-2024-1360MEDIUM4.3The Colibri WP theme for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now