2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-38630 | HIGH | 7.8 | 0.3% | Jun 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: watchdog: cpu5wdt.c: Fix use-after-free bug caused ... |
| CVE-2024-38629 | HIGH | 7.8 | 0.2% | Jun 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Avoid unnecessary destruction of f... |
| CVE-2024-38628 | HIGH | 7.8 | 0.2% | Jun 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: u_audio: Fix race condition use of con... |
| CVE-2024-38627 | HIGH | 7.8 | 0.3% | Jun 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: stm class: Fix a double free in stm_register_device... |
| CVE-2024-38623 | HIGH | 7.8 | 0.8% | Jun 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Use variable length array instead of fixe... |
| CVE-2024-38621 | HIGH | 7.1 | 0.3% | Jun 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: media: stk1160: fix bounds checking in stk1160_copy... |
| CVE-2024-38388 | HIGH | 7.8 | 0.2% | Jun 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: ALSA: hda/cs_dsp_ctl: Use private_free for control ... |
| CVE-2024-38381 | HIGH | 7.1 | 0.3% | Jun 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: nfc: nci: Fix uninit-value in nci_rx_work syzbot r... |
| CVE-2024-6027 | HIGH | 7.5 | 0.8% | Jun 21, 2024 | The Themify – WooCommerce Product Filter plugin for WordPress is vulnerable to time-based SQL Injection via the ‘conditi... |
| CVE-2024-31890 | HIGH | 7.8 | 0.2% | Jun 21, 2024 | IBM i 7.3, 7.4, and 7.5 product IBM TCP/IP Connectivity Utilities for i contains a local privilege escalation vulnerabil... |
| CVE-2024-2003 | HIGH | 7.3 | 0.3% | Jun 21, 2024 | Local privilege escalation vulnerability allowed an attacker to misuse ESET's file operations during a restore operation... |
| CVE-2024-5455 | HIGH | 8.8 | 0.6% | Jun 21, 2024 | The Plus Addons for Elementor Page Builder plugin for WordPress is vulnerable to Local File Inclusion in all versions up... |
| CVE-2024-6217 | HIGH | 8.8 | 0.5% | Jun 21, 2024 | A vulnerability classified as critical was found in SourceCodester Food Ordering Management System 1.0. Affected by this... |
| CVE-2024-6216 | HIGH | 8.8 | 0.5% | Jun 21, 2024 | A vulnerability classified as critical has been found in SourceCodester Food Ordering Management System 1.0. Affected is... |
| CVE-2024-6215 | HIGH | 8.8 | 0.5% | Jun 21, 2024 | A vulnerability was found in SourceCodester Food Ordering Management System up to 1.0. It has been rated as critical. Th... |
| CVE-2024-5503 | HIGH | 8.8 | 0.8% | Jun 21, 2024 | The WP Blog Post Layouts plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including... |
| CVE-2024-6214 | HIGH | 8.8 | 0.5% | Jun 21, 2024 | A vulnerability was found in SourceCodester Food Ordering Management System 1.0. It has been declared as critical. This ... |
| CVE-2024-37899 | HIGH | 8 | 0.7% | Jun 20, 2024 | XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. When an admin d... |
| CVE-2024-35246 | HIGH | 8.7 | 0.5% | Jun 20, 2024 | An attacker may be able to cause a denial-of-service condition by sending many packets repeatedly. |
| CVE-2024-32943 | HIGH | 8.7 | 0.5% | Jun 20, 2024 | An attacker may be able to cause a denial-of-service condition by sending many SSH packets repeatedly. |
| CVE-2024-5746 | HIGH | 7.2 | 0.9% | Jun 20, 2024 | A Server-Side Request Forgery vulnerability was identified in GitHub Enterprise Server that allowed an attacker with the... |
| CVE-2024-37183 | HIGH | 7.5 | 0.2% | Jun 20, 2024 | Plain text credentials and session ID can be captured with a network sniffer. |
| CVE-2024-29390 | HIGH | 7.3 | 0.4% | Jun 20, 2024 | Daily Expenses Management System version 1.0, developed by PHP Gurukul, contains a time-based blind SQL injection vulner... |
| CVE-2024-6153 | HIGH | 7.8 | 0.3% | Jun 20, 2024 | Parallels Desktop Updater Protection Mechanism Failure Software Downgrade Vulnerability. This vulnerability allows local... |
| CVE-2024-6147 | HIGH | 7.8 | 0.4% | Jun 20, 2024 | Poly Plantronics Hub Link Following Local Privilege Escalation Vulnerability. This vulnerability allows local attackers ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now