2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-12036HIGH7.5The CS Framework plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to, and including, 6.9 via...
CVE-2024-12035HIGH8.8The CS Framework plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation ...
CVE-2024-10804HIGH7.5The Ultimate Video Player WordPress & WooCommerce Plugin plugin for WordPress is vulnerable to Directory Traversal in al...
CVE-2024-13906HIGH7.2The Gallery by BestWebSoft – Customizable Image and Photo Galleries for WordPress plugin for WordPress is vulnerable to ...
CVE-2024-12837HIGH7.8Software installed and run as a non-privileged user may conduct improper GPU system calls to corrupt kernel heap memory.
CVE-2024-13655HIGH8.1The Flex Mag - Responsive WordPress News Theme theme for WordPress is vulnerable to unauthorized modification of data th...
CVE-2024-13320HIGH7.5The CURCY - WooCommerce Multi Currency - Currency Switcher plugin for WordPress is vulnerable to SQL Injection via the '...
CVE-2024-50600HIGH7.5An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480...
CVE-2024-52924HIGH7.5An issue was discovered in NRMM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 9820, 9825, 980, 990, ...
CVE-2024-52923HIGH7.5An issue was discovered in NRMM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 9820, 9825, 980, 990, ...
CVE-2024-58083HIGH7.8In the Linux kernel, the following vulnerability has been resolved: KVM: Explicitly verify target vCPU is online in kvm...
CVE-2024-51476HIGH7.5IBM Concert Software 1.0.5 uses an inadequate account lockout setting that could allow a remote attacker to brute force ...
CVE-2024-12742HIGH8.4A deserialization of untrusted data vulnerability exists in NI G Web Development Software that may result in arbitrary c...
CVE-2024-58072HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: rtlwifi: remove unused check_buddy_priv Comm...
CVE-2024-58069HIGH7.8In the Linux kernel, the following vulnerability has been resolved: rtc: pcf85063: fix potential OOB write in PCF85063 ...
CVE-2024-58060HIGH7.8In the Linux kernel, the following vulnerability has been resolved: bpf: Reject struct_ops registration that uses modul...
CVE-2024-58055HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_tcm: Don't free command immediately ...
CVE-2024-58054HIGH7.1In the Linux kernel, the following vulnerability has been resolved: staging: media: max96712: fix kernel oops when remo...
CVE-2024-42844HIGH8.1A SQL Injection vulnerability has been identified in EPICOR Prophet 21 (P21) up to 23.2.5232. This vulnerability allows ...
CVE-2024-12146HIGH7.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Finder Fire Safety...
CVE-2024-13893HIGH7.5Smartwares cameras CIP-37210AT and C724IP, as well as others which share the same firmware in versions up to 3.3.0, migh...
CVE-2024-13892HIGH7.7Smartwares cameras CIP-37210AT and C724IP, as well as others which share the same firmware in versions up to 3.3.0, are ...
CVE-2024-7872HIGH7.6Insertion of Sensitive Information Into Sent Data vulnerability in ExtremePACS Extreme XDS allows Retrieve Embedded Sens...
CVE-2024-57174HIGH8.1A misconfiguration in Alphion ASEE-1443 Firmware v0.4.H.00.02.15 defines a previously unregistered domain name as the de...
CVE-2024-51144HIGH8.8Cross Site Request Forgery (CSRF) vulnerability exists in the 'pvmsg.php?action=add_message', pvmsg.php?action=confirm_d...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now