2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-8663 | MEDIUM | 6.1 | 0.4% | Sep 13, 2024 | The WP Simple Booking Calendar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of ad... |
| CVE-2024-7888 | MEDIUM | 4.3 | 0.3% | Sep 13, 2024 | The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to unauthorized a... |
| CVE-2024-5567 | MEDIUM | 5.4 | 0.3% | Sep 13, 2024 | The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to,... |
| CVE-2024-46712 | MEDIUM | 5.5 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Disable coherent dumb buffers without 3... |
| CVE-2024-46711 | MEDIUM | 4.7 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: fix ID 0 endp usage after multiple re-cr... |
| CVE-2024-46710 | MEDIUM | 4.7 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Prevent unmapping active read buffers ... |
| CVE-2024-46709 | MEDIUM | 5.5 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Fix prime with external buffers Make s... |
| CVE-2024-46708 | MEDIUM | 5.5 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: pinctrl: qcom: x1e80100: Fix special pin offsets R... |
| CVE-2024-46707 | MEDIUM | 5.5 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Make ICC_*SGI*_EL1 undef in the absence... |
| CVE-2024-46706 | MEDIUM | 5.5 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: tty: serial: fsl_lpuart: mark last busy before uart... |
| CVE-2024-46705 | MEDIUM | 5.5 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/xe: reset mmio mappings with devm Set our vari... |
| CVE-2024-46704 | MEDIUM | 4.7 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: workqueue: Fix spruious data race in __flush_work()... |
| CVE-2024-46703 | MEDIUM | 5.5 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: Revert "serial: 8250_omap: Set the console genpd al... |
| CVE-2024-46702 | MEDIUM | 5.5 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Mark XDomain as unplugged when router ... |
| CVE-2024-46701 | MEDIUM | 5.5 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: libfs: fix infinite directory reads for offset dir ... |
| CVE-2024-41873 | MEDIUM | 5.5 | 0.3% | Sep 13, 2024 | Media Encoder versions 24.5, 23.6.8 and earlier are affected by an out-of-bounds read vulnerability that could lead to d... |
| CVE-2024-41872 | MEDIUM | 5.5 | 0.3% | Sep 13, 2024 | Media Encoder versions 24.5, 23.6.8 and earlier are affected by an out-of-bounds read vulnerability that could lead to d... |
| CVE-2024-41871 | MEDIUM | 5.5 | 0.3% | Sep 13, 2024 | Media Encoder versions 24.5, 23.6.8 and earlier are affected by an out-of-bounds read vulnerability that could lead to d... |
| CVE-2024-41870 | MEDIUM | 5.5 | 0.3% | Sep 13, 2024 | Media Encoder versions 24.5, 23.6.8 and earlier are affected by an out-of-bounds read vulnerability that could lead to d... |
| CVE-2024-7864 | MEDIUM | 6.5 | 0.2% | Sep 13, 2024 | The Favicon Generator (CLOSED) WordPress plugin before 2.1 does not have CSRF and path validation in the output_sub_admi... |
| CVE-2024-7863 | MEDIUM | 6.8 | 0.3% | Sep 13, 2024 | The Favicon Generator (CLOSED) WordPress plugin before 2.1 does not validate files to be uploaded and does not have CSRF... |
| CVE-2024-7133 | MEDIUM | 4.8 | 0.4% | Sep 13, 2024 | The Floating Notification Bar, Sticky Menu on Scroll, Announcement Banner, and Sticky Header for Any WordPress plugin ... |
| CVE-2024-6850 | MEDIUM | 4.8 | 0.3% | Sep 13, 2024 | The Carousel Slider WordPress plugin before 2.2.4 does not sanitise and escape some of its settings, which could allow h... |
| CVE-2024-6723 | MEDIUM | 4.7 | 0.4% | Sep 13, 2024 | The AI Engine WordPress plugin before 2.4.8 does not properly sanitise and escape a parameter before using it in a SQL s... |
| CVE-2024-6617 | MEDIUM | 4.8 | 0.3% | Sep 13, 2024 | The NinjaTeam Header Footer Custom Code WordPress plugin before 1.2 does not sanitise and escape some of its settings, w... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now