2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-47483MEDIUM5.5Dell Data Lakehouse, version(s) 1.0.0.0 and 1.1.0.0, contain(s) an Improper Neutralization of Special Elements used in a...
CVE-2024-47481MEDIUM6.5Dell Data Lakehouse, version(s) 1.0.0.0, 1.1.0., contain(s) an Improper Access Control vulnerability. An unauthenticated...
CVE-2024-47034MEDIUM5.5there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure wi...
CVE-2024-47030MEDIUM5.1Android before 2024-10-05 on Google Pixel devices allows information disclosure in the ACPM component, A-315191818.
CVE-2024-47029MEDIUM5.5In TrustySharedMemoryManager::GetSharedMemory of ondevice/trusty/trusty_shared_memory_manager.cc, there is a possible ou...
CVE-2024-47028MEDIUM4.4In ffu_flash_pack of ffu.c, there is a possible out of bounds read due to an integer overflow. This could lead to local ...
CVE-2024-47026MEDIUM5.5In gsc_gsa_rescue of gsc_gsa.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead...
CVE-2024-47025MEDIUM5.5In ppmp_protect_buf of drm_fw.c, there is a possible information disclosure due to a logic error in the code. This could...
CVE-2024-47019MEDIUM5.5In ProtocolEmbmsSaiListAdapter::Init() of protocolembmsadapter.cpp, there is a possible out of bounds read due to a miss...
CVE-2024-47018MEDIUM5.5In pmucal_rae_handle_seq_int of flexpmu_cal_rae.c, there is a possible out of bounds read due to a buffer overflow. This...
CVE-2024-47015MEDIUM5.5In ProtocolMiscHwConfigChangeAdapter::GetData() of protocolmiscadapter.cpp, there is a possible out-of-bounds read due t...
CVE-2024-44099MEDIUM5.5There is a possible Local bypass of user interaction due to an insecure default value. This could lead to local informat...
CVE-2024-8666MEDIUM6.4The Shoutcast Icecast HTML5 Radio Player plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi...
CVE-2024-10343MEDIUM6.4The Beek Widget Extention plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions u...
CVE-2024-10112MEDIUM6.4The Simple News plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'news' shortcode in a...
CVE-2024-10016MEDIUM6.4The File Upload Types by WPForms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads ...
CVE-2024-9630MEDIUM5.3The WPS Telegram Chat plugin for WordPress is vulnerable to authorization bypass due to a missing capability check when ...
CVE-2024-9628MEDIUM6.5The WPS Telegram Chat plugin for WordPress is vulnerable to unauthorized modification of data and loss of data due to a ...
CVE-2024-47158MEDIUM5.4N-LINE 2.0.6 and prior versions contain a code injection vulnerability. If this vulnerability is exploited, arbitrary co...
CVE-2024-10342MEDIUM5.4The League of Legends Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in ver...
CVE-2024-10341MEDIUM6.5The League of Legends Shortcodes plugin for WordPress is vulnerable to SQL Injection via the plugin's shortcode in versi...
CVE-2024-10150MEDIUM5.4The Bamazoo – Button Generator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's dgs sh...
CVE-2024-9607MEDIUM6.1The 10Web Social Post Feed plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_qu...
CVE-2024-50583MEDIUM6.3Whale browser Installer before 3.1.0.0 allows an attacker to execute a malicious DLL in the user environment due to impr...
CVE-2024-48870MEDIUM4.8Sharp and Toshiba Tec MFPs improperly validate input data in URI data registration, resulting in a stored cross-site scr...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now