2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-53147HIGH7.1In the Linux kernel, the following vulnerability has been resolved: exfat: fix out-of-bounds access of directory entrie...
CVE-2024-53146MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: NFSD: Prevent a potential integer overflow If the ...
CVE-2024-53145MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: um: Fix potential integer overflow during physmem s...
CVE-2024-43441CRITICAL9.8Authentication Bypass by Assumed-Immutable Data vulnerability in Apache HugeGraph-Server. This issue affects Apache Hug...
CVE-2024-12268MEDIUM5.4The Responsive Blocks – WordPress Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
CVE-2024-11726MEDIUM6.5The Appointment Booking Calendar Plugin and Scheduling Plugin – BookingPress plugin for WordPress is vulnerable to SQL I...
CVE-2024-10856MEDIUM6.5The Booking Calendar WpDevArt plugin is vulnerable to time-based, blind SQL injection via the `id` parameter in the “wpd...
CVE-2024-10584MEDIUM5.4The DirectoryPress – Business Directory And Classified Ad Listing plugin for WordPress is vulnerable to Stored Cross-Sit...
CVE-2024-8721MEDIUM6.4The Tracking Code Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the tracking code field ...
CVE-2024-53241MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: x86/xen: don't do PV iret hypercall through hyperca...
CVE-2024-53240MEDIUM5.7In the Linux kernel, the following vulnerability has been resolved: xen/netfront: fix crash when removing device When ...
CVE-2024-12881HIGH8.8The PlugVersions – Easily rollback to previous versions of your plugins plugin for WordPress is vulnerable to arbitrary ...
CVE-2024-12850MEDIUM4.9The Database Backup and check Tables Automated With Scheduler 2024 plugin for WordPress is vulnerable to Directory Trave...
CVE-2024-12103MEDIUM5.3The Content No Cache: prevent specific content from being cached plugin for WordPress is vulnerable to Information Expos...
CVE-2024-12031MEDIUM6.5The Advanced Floating Content plugin for WordPress is vulnerable to SQL Injection via the 'floating_content_duplicate_po...
CVE-2024-12468MEDIUM6.1The WP Datepicker plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'wpdp_get_selected_datepi...
CVE-2024-11896MEDIUM6.4The Text Prompter – Unlimited chatgpt text prompts for openai tasks plugin for WordPress is vulnerable to Stored Cross-S...
CVE-2024-12814MEDIUM6.4The Loan Comparison plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'loancomparison' ...
CVE-2024-41887MEDIUM5.1Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the NVR. An attacker can...
CVE-2024-41886MEDIUM6.9Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the NVR. An attacker cou...
CVE-2024-41885MEDIUM5.6Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the NVR. The seed string...
CVE-2024-41884MEDIUM6.9Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the NVR. If an attacker ...
CVE-2024-41883MEDIUM6.9Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the NVR . An attacker...
CVE-2024-41882MEDIUM6.9Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the NVR. An attacker can...
CVE-2024-12622MEDIUM6.4The WordPress Simple Shopping Cart plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'w...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now