2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-53164MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: sched: fix ordering of qlen adjustment Change...
CVE-2024-3393HIGH7.5A Denial of Service vulnerability in the DNS Security feature of Palo Alto Networks PAN-OS software allows an unauthenti...
CVE-2024-12983MEDIUM5.2A vulnerability classified as problematic has been found in code-projects Hospital Management System 1.0. This affects a...
CVE-2024-56527HIGH7.5An issue was discovered in TCPDF before 6.8.0. The Error function lacks an htmlspecialchars call for the error message.
CVE-2024-12982MEDIUM4.8A vulnerability was found in PHPGurukul Blood Bank & Donor Management System 2.4. It has been rated as problematic. Affe...
CVE-2024-12981CRITICAL9.8A vulnerability was found in CodeAstro Car Rental System 1.0. It has been declared as critical. Affected by this vulnera...
CVE-2024-11921MEDIUM4.8The GiveWP WordPress plugin before 3.19.0 does not sanitise and escape a parameter before outputting it back in the pag...
CVE-2024-11842MEDIUM4.3The DN Shipping by Weight for WooCommerce WordPress plugin before 1.2 does not have CSRF check in place when updating it...
CVE-2024-11645MEDIUM4.8The float block WordPress plugin through 1.7 does not sanitise and escape some of its settings, which could allow high p...
CVE-2024-11644MEDIUM5.9The WP-SVG WordPress plugin through 0.9 does not validate and escape some of its shortcode attributes before outputting ...
CVE-2024-11605MEDIUM4.8The wp-publications WordPress plugin through 1.2 does not escape filenames before outputting them back in the page, whic...
CVE-2024-56522HIGH7.5An issue was discovered in TCPDF before 6.8.0. unserializeTCPDFtag uses != (aka loose comparison) and does not use a con...
CVE-2024-56521CRITICAL9.8An issue was discovered in TCPDF before 6.8.0. If libcurl is used, CURLOPT_SSL_VERIFYHOST and CURLOPT_SSL_VERIFYPEER are...
CVE-2024-56520HIGH7.3An issue was discovered in tc-lib-pdf-font before 2.6.4, as used in TCPDF before 6.8.0 and other products. Fonts are mis...
CVE-2024-56519HIGH7.5An issue was discovered in TCPDF before 6.8.0. setSVGStyles does not sanitize the SVG font-family attribute.
CVE-2024-12980MEDIUM6.1A vulnerability was found in code-projects Job Recruitment 1.0. It has been classified as problematic. Affected is the f...
CVE-2024-12979MEDIUM6.1A vulnerability was found in code-projects Job Recruitment 1.0 and classified as problematic. This issue affects the fun...
CVE-2024-12978HIGH7.5A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as critical. This vulnerability affec...
CVE-2024-9774MEDIUM6.5A vulnerability was found in python-sql where unary operators do not escape non-Expression.
CVE-2024-12977CRITICAL9.8A vulnerability, which was classified as critical, was found in PHPGurukul Complaint Management System 1.0. This affects...
CVE-2024-12976CRITICAL9.8A vulnerability, which was classified as critical, has been found in CodeZips Hospital Management System 1.0. Affected b...
CVE-2024-12969CRITICAL9.8A vulnerability, which was classified as critical, has been found in code-projects Hospital Management System 1.0. Affec...
CVE-2024-56361MEDIUM5.3LGSL (Live Game Server List) provides online status for games. Before 7.0.0, a stored cross-site scripting (XSS) vulnera...
CVE-2024-55950HIGH8.6Tabby (formerly Terminus) is a highly configurable terminal emulator. Prior to 1.0.216, Tabby terminal emulator contains...
CVE-2024-53850HIGH8.2The Addressing GLPI plugin enables you to create IP reports for visualize IP addresses used and free on a given network....

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now