2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-50175MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: qcom: camss: Remove use_count guard in stop_...
CVE-2024-50174MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Fix race when converting group handle ...
CVE-2024-50173MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Fix access to uninitialized variable i...
CVE-2024-10621MEDIUM6.4The Simple Shortcode for Google Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ...
CVE-2024-10989MEDIUM6.5A vulnerability classified as critical has been found in code-projects E-Health Care System 1.0. This affects an unknown...
CVE-2024-10987MEDIUM6.5A vulnerability was found in code-projects E-Health Care System 1.0. It has been declared as critical. Affected by this ...
CVE-2024-48011MEDIUM6.5Dell PowerProtect DD, versions prior to 7.7.5.50, contains an Exposure of Sensitive Information to an Unauthorized Actor...
CVE-2024-51987MEDIUM5.4Duende.AccessTokenManagement.OpenIdConnect is a set of .NET libraries that manage OAuth and OpenId Connect access tokens...
CVE-2024-8810MEDIUM6.5A GitHub App installed in organizations could upgrade some permissions from read to write access without approval from a...
CVE-2024-51434MEDIUM6.1Inconsistent <plaintext> tag parsing allows for XSS in Froala WYSIWYG editor 4.3.0 and earlier.
CVE-2024-49524MEDIUM5.4Adobe Experience Manager versions 6.5.20 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerabilit...
CVE-2024-49523MEDIUM5.4Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-36064MEDIUM6.2The NLL com.nll.cb (aka ACR Phone) application through 0.330-playStore-NoAccessibility-arm8 for Android allows any insta...
CVE-2024-36062MEDIUM4The com.callassistant.android (aka AI Call Assistant & Screener) application 1.174 for Android enables any installed app...
CVE-2024-10824MEDIUM6.5An authorization bypass vulnerability was identified in GitHub Enterprise Server that allowed unauthorized internal user...
CVE-2024-50599MEDIUM6.1A reflected Cross-Site Scripting (XSS) vulnerability has been identified in Zimbra Collaboration Suite (ZCS) 8.8.15, aff...
CVE-2024-51994MEDIUM5.4Combodo iTop is a web based IT Service Management tool. In affected versions uploading a text file containing some java ...
CVE-2024-48290MEDIUM4.3An issue in the Bluetooth Low Energy implementation of Realtek RTL8762E BLE SDK v1.4.0 allows attackers to cause a Denia...
CVE-2024-48954MEDIUM6.4An issue was discovered in Logpoint before 7.5.0. Unvalidated input during the EventHub Collector setup by an authentica...
CVE-2024-48952MEDIUM6.4An issue was discovered in Logpoint before 7.5.0. SOAR uses a static JWT secret key to generate tokens that allow access...
CVE-2024-10965MEDIUM6.5A vulnerability classified as problematic was found in emqx neuron up to 2.10.0. Affected by this vulnerability is an un...
CVE-2024-8378MEDIUM4.8The Safe SVG WordPress plugin before 2.2.6 has its sanitisation code is only running for paths that call wp_handle_uploa...
CVE-2024-9926MEDIUM4.3The Jetpack WordPress plugin does not have proper authorisation in one of its REST endpoint, allowing any authenticated ...
CVE-2024-8442MEDIUM5.4The Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Ecommerce Slider) plugin for WordPress is ...
CVE-2024-50172MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Fix a possible memory leak In bnxt_r...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now