2024 CVE Vulnerabilities
39,221 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-31903 | HIGH | 8.8 | 1.0% | Jan 22, 2025 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2 allow an attacker on th... |
| CVE-2024-24429 | HIGH | 8.6 | 0.5% | Jan 22, 2025 | A reachable assertion in the nas_eps_send_emm_to_esm function of Open5GS <= 2.6.4 allows attackers to cause a Denial of ... |
| CVE-2024-10929 | MEDIUM | 5.1 | 0.2% | Jan 22, 2025 | In certain circumstances, an issue in Arm Cortex-A57, Cortex-A72 (revisions before r1p0), Cortex-A73 and Cortex-A75 may ... |
| CVE-2024-34235 | HIGH | 8.6 | 0.8% | Jan 22, 2025 | Open5GS MME versions <= 2.6.4 contains an assertion that can be remotely triggered via a malformed ASN.1 packet over the... |
| CVE-2024-24432 | MEDIUM | 5.3 | 0.3% | Jan 22, 2025 | A reachable assertion in the ogs_kdf_hash_mme function of Open5GS <= 2.6.4 allows attackers to cause a Denial of Service... |
| CVE-2024-24430 | HIGH | 7.5 | 0.8% | Jan 22, 2025 | A reachable assertion in the mme_ue_find_by_imsi function of Open5GS <= 2.6.4 allows attackers to cause a Denial of Serv... |
| CVE-2024-13499 | HIGH | 7.3 | 0.6% | Jan 22, 2025 | The The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress... |
| CVE-2024-13496 | HIGH | 7.5 | 2.2% | Jan 22, 2025 | The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is ... |
| CVE-2024-13495 | HIGH | 7.3 | 0.5% | Jan 22, 2025 | The The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress... |
| CVE-2024-13447 | MEDIUM | 4.3 | 0.3% | Jan 22, 2025 | The WP Hotel Booking plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check... |
| CVE-2024-13361 | HIGH | 8.8 | 0.3% | Jan 22, 2025 | The AI Power: Complete AI Pack plugin for WordPress is vulnerable to unauthorized access due to a missing capability che... |
| CVE-2024-13360 | MEDIUM | 5.4 | 0.2% | Jan 22, 2025 | The AI Power: Complete AI Pack plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, ... |
| CVE-2024-13319 | MEDIUM | 6.1 | 0.3% | Jan 22, 2025 | The Themify Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg... |
| CVE-2024-13406 | MEDIUM | 6.1 | 0.3% | Jan 22, 2025 | The XML for Google Merchant Center plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'feed_id... |
| CVE-2024-12857 | CRITICAL | 9.8 | 0.7% | Jan 22, 2025 | The AdForest theme for WordPress is vulnerable to authentication bypass in all versions up to, and including, 5.1.8. Thi... |
| CVE-2024-12117 | MEDIUM | 5.4 | 0.3% | Jan 22, 2025 | The Stackable – Page Builder Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ... |
| CVE-2024-12879 | MEDIUM | 4.3 | 0.3% | Jan 22, 2025 | The WPBot Pro Wordpress Chatbot plugin for WordPress is vulnerable to unauthorized modification of data due to a missing... |
| CVE-2024-11218 | HIGH | 8.6 | 0.4% | Jan 22, 2025 | A vulnerability was found in `podman build` and `buildah.` This issue occurs in a container breakout by using --jobs=2 a... |
| CVE-2024-13590 | MEDIUM | 5.4 | 0.2% | Jan 22, 2025 | The Ketchup Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'spacer' short... |
| CVE-2024-13584 | MEDIUM | 5.4 | 0.3% | Jan 22, 2025 | The Picture Gallery – Frontend Image Uploads, AJAX Photo List plugin for WordPress is vulnerable to Stored Cross-Site Sc... |
| CVE-2024-13426 | MEDIUM | 5.3 | 0.5% | Jan 22, 2025 | The WP-Polls plugin for WordPress is vulnerable to SQL Injection via COOKIE in all versions up to, and including, 2.77.2... |
| CVE-2024-13091 | CRITICAL | 9.8 | 0.8% | Jan 22, 2025 | The WPBot Pro Wordpress Chatbot plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type va... |
| CVE-2024-49749 | HIGH | 8.8 | 0.2% | Jan 21, 2025 | In DGifSlurp of dgif_lib.c, there is a possible out of bounds write due to an integer overflow. This could lead to remot... |
| CVE-2024-49748 | CRITICAL | 9.8 | 0.4% | Jan 21, 2025 | In gatts_process_primary_service_req of gatt_sr.cc, there is a possible out of bounds write due to a heap buffer overflo... |
| CVE-2024-49747 | CRITICAL | 9.8 | 0.5% | Jan 21, 2025 | In gatts_process_read_by_type_req of gatt_sr.cc, there is a possible out of bounds write due to a logic error in the cod... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now