2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-38412HIGH7.8Memory corruption while invoking IOCTL calls from user-space to kernel-space to handle session errors.
CVE-2024-38411HIGH7.8Memory corruption while registering a buffer from user-space to kernel-space using IOCTL calls.
CVE-2024-38404HIGH7.5Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in modem.
CVE-2024-50500CRITICAL9.8Missing Authorization vulnerability in averta Shortcodes and extra features for Phlox theme auxin-elements allows Exploi...
CVE-2024-43333HIGH7.5Incorrect Privilege Assignment vulnerability in NotFound Admin and Site Enhancements (ASE) Pro allows Privilege Escalati...
CVE-2024-57522MEDIUM6.4SourceCodester Packers and Movers Management System v1.0 is vulnerable to Cross Site Scripting (XSS) in Users.php. An at...
CVE-2024-6790MEDIUM6.1Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in Arm Ltd Bifrost GPU Kernel Driver, Arm Ltd Valha...
CVE-2024-10395HIGH7.5No proper validation of the length of user input in http_server_get_content_type_from_extension.
CVE-2024-13347MEDIUM6.8The Essential WP Real Estate WordPress plugin through 1.1.3 does not escape generated URLs before outputting them in att...
CVE-2024-57966MEDIUM5libarchiveplugin.cpp in KDE ark before 24.12.0 can extract to an absolute path from an archive.
CVE-2024-20147MEDIUM5.3In Bluetooth FW, there is a possible reachable assertion due to improper exception handling. This could lead to remote d...
CVE-2024-20142MEDIUM6.6In V5 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ...
CVE-2024-20141MEDIUM6.6In V5 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ...
CVE-2024-0131MEDIUM4.4NVIDIA GPU kernel driver for Windows and Linux contains a vulnerability where a potential user-mode attacker could read ...
CVE-2024-13775MEDIUM5.4The WooCommerce Support Ticket System plugin for WordPress is vulnerable to unauthorized access and loss of data due to ...
CVE-2024-13612MEDIUM5.4The Better Messages – Live Chat for WordPress, BuddyPress, PeepSo, Ultimate Member, BuddyBoss plugin for WordPress is vu...
CVE-2024-13429MEDIUM4.3The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to...
CVE-2024-13428MEDIUM5.3The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to...
CVE-2024-13425MEDIUM4.3The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to...
CVE-2024-13372MEDIUM5.3The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to...
CVE-2024-13371MEDIUM5.3The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to...
CVE-2024-12825MEDIUM5.4The Custom Related Posts plugin for WordPress is vulnerable to unauthorized access & modification of data due to a missi...
CVE-2024-13341MEDIUM6.5The MultiLoca - WooCommerce Multi Locations Inventory Management plugin for WordPress is vulnerable to SQL Injection via...
CVE-2024-11829MEDIUM5.4The The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce plugin for WordPre...
CVE-2024-13099MEDIUM5.4The Widget4Call WordPress plugin through 1.0.7 does not sanitise and escape a parameter before outputting it back in the...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now