2024 CVE Vulnerabilities

39,221 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-49300HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Hero Mega...
CVE-2024-32555CRITICAL9.8Incorrect Privilege Assignment vulnerability in InspiryThemes Easy Real Estate easy-real-estate allows Privilege Escalat...
CVE-2024-57946MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: virtio-blk: don't keep queue frozen during system s...
CVE-2024-57945HIGH7.1In the Linux kernel, the following vulnerability has been resolved: riscv: mm: Fix the out of bound issue of vmemmap ad...
CVE-2024-57944MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: iio: adc: ti-ads1298: Add NULL check in ads1298_ini...
CVE-2024-57943HIGH7.8In the Linux kernel, the following vulnerability has been resolved: exfat: fix the new buffer was not zeroed before wri...
CVE-2024-57942MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netfs: Fix ceph copy to cache on write-begin At th...
CVE-2024-57941MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netfs: Fix the (non-)cancellation of copy when cach...
CVE-2024-57940MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: exfat: fix the infinite loop in exfat_readdir() If...
CVE-2024-57939MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: riscv: Fix sleeping in invalid context in die() di...
CVE-2024-57938MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net/sctp: Prevent autoclose integer overflow in sct...
CVE-2024-57937Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-57936MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Fix max SGEs for the Work Request Ge...
CVE-2024-57935MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix accessing invalid dip_ctx during dest...
CVE-2024-57934MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: fgraph: Add READ_ONCE() when accessing fgraph_array...
CVE-2024-57933MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: gve: guard XSK operations on the existence of queue...
CVE-2024-57932MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: gve: guard XDP xmit NDO on existence of xdp queues ...
CVE-2024-57931MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: selinux: ignore unknown extended permissions When ...
CVE-2024-57930MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: tracing: Have process_string() also allow arrays I...
CVE-2024-52973MEDIUM6.5An allocation of resources without limits or throttling in Kibana can lead to a crash caused by a specially crafted requ...
CVE-2024-43709HIGH7.5An allocation of resources without limits or throttling in Elasticsearch can lead to an OutOfMemoryError exception resul...
CVE-2024-37284MEDIUM5.5Improper handling of alternate encoding occurs when Elastic Defend on Windows systems attempts to scan a file or process...
CVE-2024-13444MEDIUM6.1The wp-greet plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 6.2....
CVE-2024-13230MEDIUM5.3The Social Share, Social Login and Social Comments Plugin – Super Socializer plugin for WordPress is vulnerable to Limit...
CVE-2024-11226MEDIUM6.4The FireCask Like & Share Button plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'width' param...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now