2024 CVE Vulnerabilities
39,221 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-12275 | MEDIUM | 6.1 | 0.3% | Jan 31, 2025 | The Canvasflow for WordPress plugin through 1.5.5 does not sanitise and escape a parameter before outputting it back in ... |
| CVE-2024-11886 | MEDIUM | 6.4 | 0.3% | Jan 31, 2025 | The Contact Form and Calls To Action by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ... |
| CVE-2024-10867 | MEDIUM | 5.4 | 0.3% | Jan 31, 2025 | The Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg plugin for WordPress is vulnerable t... |
| CVE-2024-47900 | HIGH | 7.8 | 0.2% | Jan 31, 2025 | Software installed and run as a non-privileged user may conduct improper GPU system calls to access OOB kernel memory. |
| CVE-2024-47899 | HIGH | 7.8 | 0.2% | Jan 31, 2025 | Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kern... |
| CVE-2024-47898 | HIGH | 7.8 | 0.2% | Jan 31, 2025 | Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kern... |
| CVE-2024-47891 | HIGH | 7.8 | 0.2% | Jan 31, 2025 | Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kern... |
| CVE-2024-13463 | MEDIUM | 6.4 | 0.2% | Jan 31, 2025 | The SeatReg plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'seatreg' shortcode in al... |
| CVE-2024-46974 | HIGH | 7.8 | 0.1% | Jan 31, 2025 | Software installed and run as a non-privileged user may conduct improper read/write operations on imported/exported DMA ... |
| CVE-2024-13817 | — | — | — | Jan 31, 2025 | Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All r... |
| CVE-2024-13767 | HIGH | 8.1 | 0.9% | Jan 31, 2025 | The Live2DWebCanvas plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validati... |
| CVE-2024-13399 | MEDIUM | 6.4 | 0.3% | Jan 31, 2025 | The Gosign – Posts Slider Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'posts-slider-... |
| CVE-2024-13397 | MEDIUM | 6.4 | 0.4% | Jan 31, 2025 | The WPRadio – WordPress Radio Streaming Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the... |
| CVE-2024-13396 | MEDIUM | 6.4 | 0.4% | Jan 31, 2025 | The Frictionless plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'frictionless_form' ... |
| CVE-2024-23929 | HIGH | 7.3 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to create arbitrary files on affected installations of Pioneer DMH-... |
| CVE-2024-23921 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint ... |
| CVE-2024-23920 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint ... |
| CVE-2024-24731 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Silicon Labs... |
| CVE-2024-23973 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Silicon Labs... |
| CVE-2024-23971 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint ... |
| CVE-2024-23970 | MEDIUM | 6.5 | 0.2% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to compromise transport security on affected installations of Charg... |
| CVE-2024-23969 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint ... |
| CVE-2024-23968 | HIGH | 8.8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of ChargePoint ... |
| CVE-2024-23963 | HIGH | 8 | 0.5% | Jan 31, 2025 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Alpine Halo9... |
| CVE-2024-23962 | MEDIUM | 5.3 | 0.7% | Jan 31, 2025 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Alpine Halo9 d... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now