2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-0107 | HIGH | 7.8 | 0.5% | Aug 8, 2024 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular use... |
| CVE-2024-0101 | HIGH | 7.5 | 0.5% | Aug 8, 2024 | NVIDIA Mellanox OS, ONYX, Skyway, MetroX-2 and MetroX-3 XC contain a vulnerability in ipfilter, where improper ipfilter ... |
| CVE-2024-42356 | HIGH | 7.2 | 0.6% | Aug 8, 2024 | Shopware is an open commerce platform. Prior to versions 6.6.5.1 and 6.5.8.13, the `context` variable is injected into a... |
| CVE-2024-41942 | HIGH | 7.2 | 0.6% | Aug 8, 2024 | JupyterHub is software that allows one to create a multi-user server for Jupyter notebooks. Prior to versions 4.1.6 and ... |
| CVE-2024-7348 | HIGH | 7.5 | 1.6% | Aug 8, 2024 | Time-of-check Time-of-use (TOCTOU) race condition in pg_dump in PostgreSQL allows an object creator to execute arbitrary... |
| CVE-2024-3659 | HIGH | 7.2 | 1.6% | Aug 8, 2024 | Firmware in KAON AR2140 routers, prior to versions 3.2.50 and 4.2.16, is vulnerable to a shell command injection via sen... |
| CVE-2024-3035 | HIGH | 8.1 | 0.4% | Aug 8, 2024 | A permission check vulnerability in GitLab CE/EE affecting all versions starting from 8.12 prior to 17.0.6, 17.1 prior t... |
| CVE-2024-2800 | HIGH | 7.5 | 0.7% | Aug 8, 2024 | ReDoS flaw in RefMatcher when matching branch names using wildcards in GitLab EE/CE affecting all versions from 11.3 pri... |
| CVE-2024-6329 | HIGH | 7.5 | 0.4% | Aug 8, 2024 | An issue was discovered in GitLab CE/EE affecting all versions starting from 8.16 prior to 17.0.6, starting from 17.1 pr... |
| CVE-2024-42038 | HIGH | 7.8 | 0.1% | Aug 8, 2024 | Vulnerability of PIN enhancement failures in the screen lock module Impact: Successful exploitation of this vulnerabilit... |
| CVE-2024-42036 | HIGH | 7.5 | 0.1% | Aug 8, 2024 | Access permission verification vulnerability in the Notepad module Impact: Successful exploitation of this vulnerability... |
| CVE-2024-42035 | HIGH | 7.8 | 0.1% | Aug 8, 2024 | Permission control vulnerability in the App Multiplier module Impact:Successful exploitation of this vulnerability may a... |
| CVE-2024-42033 | HIGH | 7.1 | 0.1% | Aug 8, 2024 | Access control vulnerability in the security verification module mpact: Successful exploitation of this vulnerability wi... |
| CVE-2024-42257 | HIGH | 7.8 | 0.2% | Aug 8, 2024 | In the Linux kernel, the following vulnerability has been resolved: ext4: use memtostr_pad() for s_volume_name As with... |
| CVE-2024-42031 | HIGH | 7.5 | 0.3% | Aug 8, 2024 | Access permission verification vulnerability in the Settings module. Impact: Successful exploitation of this vulnerabili... |
| CVE-2024-22069 | HIGH | 8.8 | 0.2% | Aug 8, 2024 | There is a permission and access control vulnerability of ZTE's ZXV10 XT802/ET301 product.Attackers with common permissi... |
| CVE-2024-7150 | HIGH | 8.8 | 0.6% | Aug 8, 2024 | The Slider by 10Web – Responsive Image Slider plugin for WordPress is vulnerable to time-based SQL Injection via the 'id... |
| CVE-2024-6869 | HIGH | 7.1 | 0.3% | Aug 8, 2024 | The Falang multilanguage for WordPress plugin for WordPress is vulnerable to unauthorized modification of data due to a ... |
| CVE-2024-7492 | HIGH | 8.8 | 0.3% | Aug 8, 2024 | The MainWP Child Reports plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inc... |
| CVE-2024-7561 | HIGH | 8.8 | 0.7% | Aug 8, 2024 | The The Next theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.1.0 via d... |
| CVE-2024-7560 | HIGH | 7.2 | 0.6% | Aug 8, 2024 | The News Flash theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.1.0 via... |
| CVE-2024-7486 | HIGH | 8.8 | 0.6% | Aug 8, 2024 | The MultiPurpose theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.2.0 v... |
| CVE-2024-38202 | HIGH | 7.3 | 1.7% | Aug 8, 2024 | Summary Microsoft was notified that an elevation of privilege vulnerability exists in Windows Update, potentially enabli... |
| CVE-2024-6893 | HIGH | 7.5 | 32.9% | Aug 8, 2024 | The "soap_cgi.pyc" API handler allows the XML body of SOAP requests to contain references to external entities. This all... |
| CVE-2024-6891 | HIGH | 8.8 | 1.0% | Aug 8, 2024 | Attackers with a valid username and password can exploit a python code injection vulnerability during the natural login ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now