2024 CVE Vulnerabilities

39,221 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-47698HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drivers: media: dvb-frontends/rtl2832: fix an out-o...
CVE-2024-47697HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drivers: media: dvb-frontends/rtl2830: fix an out-o...
CVE-2024-47696HIGH7.8In the Linux kernel, the following vulnerability has been resolved: RDMA/iwcm: Fix WARNING:at_kernel/workqueue.c:#check...
CVE-2024-47695HIGH7.8In the Linux kernel, the following vulnerability has been resolved: RDMA/rtrs-clt: Reset cid to con_num - 1 to stay in ...
CVE-2024-47691HIGH7.8In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid use-after-free in f2fs_stop_gc_t...
CVE-2024-47686HIGH7.1In the Linux kernel, the following vulnerability has been resolved: ep93xx: clock: Fix off by one in ep93xx_div_recalc_...
CVE-2024-47682HIGH7.8In the Linux kernel, the following vulnerability has been resolved: scsi: sd: Fix off-by-one error in sd_read_block_cha...
CVE-2024-47676HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb.c: fix UAF of vma in hugetlb fault pathw...
CVE-2024-47675HIGH7.8In the Linux kernel, the following vulnerability has been resolved: bpf: Fix use-after-free in bpf_uprobe_multi_link_at...
CVE-2024-47328HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Aman FunnelKit Aut...
CVE-2024-43945HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Latepoint LatePoint allows Cross Site Request Forgery.This issue affe...
CVE-2024-8625HIGH7.2The TS Poll WordPress plugin before 2.4.0 does not sanitize and escape a parameter before using it in a SQL statement, ...
CVE-2024-10202HIGH8.8Administrative Management System from Wellchoose has an OS Command Injection vulnerability, allowing remote attackers wi...
CVE-2024-10201HIGH8.8Administrative Management System from Wellchoose does not properly validate uploaded file types, allowing remote attacke...
CVE-2024-10200HIGH7.5Administrative Management System from Wellchoose has a Path Traversal vulnerability, allowing unauthenticated remote att...
CVE-2024-49628HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in whiletrue Most And Least Read Posts Widget most-and-least-read-posts-...
CVE-2024-49627HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Noor Alam WordPress Image SEO allows Cross Site Request Forgery.This ...
CVE-2024-49325HIGH8.8Missing Authorization vulnerability in wpdiscover Photo Gallery Builder photo-gallery-builder allows Accessing Functiona...
CVE-2024-49306HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in wp-buy WP Content Copy Protection & No Right Click wp-content-copy-pr...
CVE-2024-49290HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Gora Tech LLC Cooked Pro allows Cross Site Request Forgery.This issue...
CVE-2024-49275HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Northern Beaches Websites IdeaPush ideapush allows Cross Site Request...
CVE-2024-49274HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Infomaniak Network VOD Infomaniak vod-infomaniak allows Cross Site Re...
CVE-2024-49272HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in wpweb Social Auto Poster social-auto-poster allows Cross Site Request...
CVE-2024-49250HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Syed Balkhi Table of Contents Plus table-of-contents-plus allows Cros...
CVE-2024-49620HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in mrcheck116 FERMA.r...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now