2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-52582MEDIUM4.7Cachi2 is a command-line interface tool that pre-fetches a project's dependencies to aid in making the project's build p...
CVE-2024-50803MEDIUM5.4The mediapool feature of the Redaxo Core CMS application v 5.17.1 is vulnerable to Cross Site Scripting(XSS) which allow...
CVE-2024-10524MEDIUM6.5Applications that use Wget to access a remote resource using shorthand URLs and pass arbitrary user credentials in the U...
CVE-2024-52711MEDIUM5.7DI-8100 v16.07.26A1 is vulnerable to Buffer Overflow In the ip_position_asp function via the ip parameter.
CVE-2024-9830MEDIUM6.1The Bard theme for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without app...
CVE-2024-9777MEDIUM6.1The Ashe theme for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without app...
CVE-2024-11224MEDIUM6.4The Parallax Image plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘position’ parameter in all...
CVE-2024-11198MEDIUM6.4The GD Rating System plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘extra_class’ parameter i...
CVE-2024-11195MEDIUM6.4The Email Subscription Popup plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's print_em...
CVE-2024-31141MEDIUM6.5Files or Directories Accessible to External Parties, Improper Privilege Management vulnerability in Apache Kafka Clients...
CVE-2024-11098MEDIUM5.5The SVG Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File uploads in all ver...
CVE-2024-10388MEDIUM6.1The WordPress GDPR plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'gdpr_firstname' and 'gdpr_...
CVE-2024-10268MEDIUM5.4The MP3 Audio Player – Music Player, Podcast Player & Radio by Sonaar plugin for WordPress is vulnerable to Stored Cross...
CVE-2024-10103MEDIUM6.1In the process of testing the MailPoet WordPress plugin before 5.3.2, a vulnerability was found that allows you to impl...
CVE-2024-50302MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: HID: core: zero-initialize the report buffer Since...
CVE-2024-50300MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: regulator: rtq2208: Fix uninitialized use of regula...
CVE-2024-50299MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: sctp: properly validate chunk size in sctp_sf_ootb(...
CVE-2024-50298MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: enetc: allocate vf_state during PF probes In ...
CVE-2024-50297MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: net: xilinx: axienet: Enqueue Tx packets in dql bef...
CVE-2024-50296MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: hns3: fix kernel crash when uninstalling drive...
CVE-2024-50295MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: arc: fix the device for dma_map_single/dma_unm...
CVE-2024-50294MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix missing locking causing hanging calls I...
CVE-2024-50292MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ASoC: stm32: spdifrx: fix dma channel release in st...
CVE-2024-50291MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: dvb-core: add missing buffer index check dv...
CVE-2024-50290MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: cx24116: prevent overflows on SNR calculus ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now