2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-38412 | HIGH | 7.8 | 0.1% | Feb 3, 2025 | Memory corruption while invoking IOCTL calls from user-space to kernel-space to handle session errors. |
| CVE-2024-38411 | HIGH | 7.8 | 0.1% | Feb 3, 2025 | Memory corruption while registering a buffer from user-space to kernel-space using IOCTL calls. |
| CVE-2024-38404 | HIGH | 7.5 | 0.2% | Feb 3, 2025 | Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in modem. |
| CVE-2024-50500 | CRITICAL | 9.8 | 0.4% | Feb 3, 2025 | Missing Authorization vulnerability in averta Shortcodes and extra features for Phlox theme auxin-elements allows Exploi... |
| CVE-2024-43333 | HIGH | 7.5 | 0.5% | Feb 3, 2025 | Incorrect Privilege Assignment vulnerability in NotFound Admin and Site Enhancements (ASE) Pro allows Privilege Escalati... |
| CVE-2024-57522 | MEDIUM | 6.4 | 0.9% | Feb 3, 2025 | SourceCodester Packers and Movers Management System v1.0 is vulnerable to Cross Site Scripting (XSS) in Users.php. An at... |
| CVE-2024-6790 | MEDIUM | 6.1 | 0.1% | Feb 3, 2025 | Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valha... |
| CVE-2024-10395 | HIGH | 7.5 | 0.3% | Feb 3, 2025 | No proper validation of the length of user input in http_server_get_content_type_from_extension. |
| CVE-2024-13347 | MEDIUM | 6.8 | 0.5% | Feb 3, 2025 | The Essential WP Real Estate WordPress plugin through 1.1.3 does not escape generated URLs before outputting them in att... |
| CVE-2024-57966 | MEDIUM | 5 | 0.3% | Feb 3, 2025 | libarchiveplugin.cpp in KDE ark before 24.12.0 can extract to an absolute path from an archive. |
| CVE-2024-20147 | MEDIUM | 5.3 | 0.2% | Feb 3, 2025 | In Bluetooth FW, there is a possible reachable assertion due to improper exception handling. This could lead to remote d... |
| CVE-2024-20142 | MEDIUM | 6.6 | 0.1% | Feb 3, 2025 | In V5 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ... |
| CVE-2024-20141 | MEDIUM | 6.6 | 0.1% | Feb 3, 2025 | In V5 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ... |
| CVE-2024-0131 | MEDIUM | 4.4 | 0.2% | Feb 2, 2025 | NVIDIA GPU kernel driver for Windows and Linux contains a vulnerability where a potential user-mode attacker could read ... |
| CVE-2024-13775 | MEDIUM | 5.4 | 0.2% | Feb 1, 2025 | The WooCommerce Support Ticket System plugin for WordPress is vulnerable to unauthorized access and loss of data due to ... |
| CVE-2024-13612 | MEDIUM | 5.4 | 0.3% | Feb 1, 2025 | The Better Messages – Live Chat for WordPress, BuddyPress, PeepSo, Ultimate Member, BuddyBoss plugin for WordPress is vu... |
| CVE-2024-13429 | MEDIUM | 4.3 | 0.3% | Feb 1, 2025 | The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to... |
| CVE-2024-13428 | MEDIUM | 5.3 | 0.4% | Feb 1, 2025 | The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to... |
| CVE-2024-13425 | MEDIUM | 4.3 | 0.3% | Feb 1, 2025 | The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to... |
| CVE-2024-13372 | MEDIUM | 5.3 | 0.4% | Feb 1, 2025 | The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to... |
| CVE-2024-13371 | MEDIUM | 5.3 | 0.5% | Feb 1, 2025 | The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to... |
| CVE-2024-12825 | MEDIUM | 5.4 | 0.2% | Feb 1, 2025 | The Custom Related Posts plugin for WordPress is vulnerable to unauthorized access & modification of data due to a missi... |
| CVE-2024-13341 | MEDIUM | 6.5 | 0.4% | Feb 1, 2025 | The MultiLoca - WooCommerce Multi Locations Inventory Management plugin for WordPress is vulnerable to SQL Injection via... |
| CVE-2024-11829 | MEDIUM | 5.4 | 0.4% | Feb 1, 2025 | The The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce plugin for WordPre... |
| CVE-2024-13099 | MEDIUM | 5.4 | 0.7% | Feb 1, 2025 | The Widget4Call WordPress plugin through 1.0.7 does not sanitise and escape a parameter before outputting it back in the... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now