2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-52582 | MEDIUM | 4.7 | 0.2% | Nov 19, 2024 | Cachi2 is a command-line interface tool that pre-fetches a project's dependencies to aid in making the project's build p... |
| CVE-2024-50803 | MEDIUM | 5.4 | 0.5% | Nov 19, 2024 | The mediapool feature of the Redaxo Core CMS application v 5.17.1 is vulnerable to Cross Site Scripting(XSS) which allow... |
| CVE-2024-10524 | MEDIUM | 6.5 | 1.1% | Nov 19, 2024 | Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the U... |
| CVE-2024-52711 | MEDIUM | 5.7 | 0.6% | Nov 19, 2024 | DI-8100 v16.07.26A1 is vulnerable to Buffer Overflow In the ip_position_asp function via the ip parameter. |
| CVE-2024-9830 | MEDIUM | 6.1 | 0.4% | Nov 19, 2024 | The Bard theme for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without app... |
| CVE-2024-9777 | MEDIUM | 6.1 | 0.4% | Nov 19, 2024 | The Ashe theme for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without app... |
| CVE-2024-11224 | MEDIUM | 6.4 | 0.4% | Nov 19, 2024 | The Parallax Image plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘position’ parameter in all... |
| CVE-2024-11198 | MEDIUM | 6.4 | 0.4% | Nov 19, 2024 | The GD Rating System plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘extra_class’ parameter i... |
| CVE-2024-11195 | MEDIUM | 6.4 | 0.4% | Nov 19, 2024 | The Email Subscription Popup plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's print_em... |
| CVE-2024-31141 | MEDIUM | 6.5 | 1.1% | Nov 19, 2024 | Files or Directories Accessible to External Parties, Improper Privilege Management vulnerability in Apache Kafka Clients... |
| CVE-2024-11098 | MEDIUM | 5.5 | 0.4% | Nov 19, 2024 | The SVG Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File uploads in all ver... |
| CVE-2024-10388 | MEDIUM | 6.1 | 0.3% | Nov 19, 2024 | The WordPress GDPR plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'gdpr_firstname' and 'gdpr_... |
| CVE-2024-10268 | MEDIUM | 5.4 | 0.3% | Nov 19, 2024 | The MP3 Audio Player – Music Player, Podcast Player & Radio by Sonaar plugin for WordPress is vulnerable to Stored Cross... |
| CVE-2024-10103 | MEDIUM | 6.1 | 0.3% | Nov 19, 2024 | In the process of testing the MailPoet WordPress plugin before 5.3.2, a vulnerability was found that allows you to impl... |
| CVE-2024-50302 | MEDIUM | 5.5 | 0.8% | Nov 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: HID: core: zero-initialize the report buffer Since... |
| CVE-2024-50300 | MEDIUM | 5.5 | 0.2% | Nov 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: regulator: rtq2208: Fix uninitialized use of regula... |
| CVE-2024-50299 | MEDIUM | 5.5 | 0.3% | Nov 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: sctp: properly validate chunk size in sctp_sf_ootb(... |
| CVE-2024-50298 | MEDIUM | 5.5 | 0.2% | Nov 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: enetc: allocate vf_state during PF probes In ... |
| CVE-2024-50297 | MEDIUM | 4.7 | 0.1% | Nov 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: xilinx: axienet: Enqueue Tx packets in dql bef... |
| CVE-2024-50296 | MEDIUM | 5.5 | 0.3% | Nov 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: hns3: fix kernel crash when uninstalling drive... |
| CVE-2024-50295 | MEDIUM | 5.5 | 0.2% | Nov 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: arc: fix the device for dma_map_single/dma_unm... |
| CVE-2024-50294 | MEDIUM | 4.7 | 0.2% | Nov 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix missing locking causing hanging calls I... |
| CVE-2024-50292 | MEDIUM | 5.5 | 0.2% | Nov 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: ASoC: stm32: spdifrx: fix dma channel release in st... |
| CVE-2024-50291 | MEDIUM | 5.5 | 0.2% | Nov 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: media: dvb-core: add missing buffer index check dv... |
| CVE-2024-50290 | MEDIUM | 5.5 | 0.3% | Nov 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: media: cx24116: prevent overflows on SNR calculus ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now