2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-12036 | HIGH | 7.5 | 0.3% | Mar 7, 2025 | The CS Framework plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to, and including, 6.9 via... |
| CVE-2024-12035 | HIGH | 8.8 | 0.8% | Mar 7, 2025 | The CS Framework plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation ... |
| CVE-2024-10804 | HIGH | 7.5 | 0.8% | Mar 7, 2025 | The Ultimate Video Player WordPress & WooCommerce Plugin plugin for WordPress is vulnerable to Directory Traversal in al... |
| CVE-2024-13906 | HIGH | 7.2 | 0.7% | Mar 7, 2025 | The Gallery by BestWebSoft – Customizable Image and Photo Galleries for WordPress plugin for WordPress is vulnerable to ... |
| CVE-2024-12837 | HIGH | 7.8 | 0.2% | Mar 7, 2025 | Software installed and run as a non-privileged user may conduct improper GPU system calls to corrupt kernel heap memory. |
| CVE-2024-13655 | HIGH | 8.1 | 0.3% | Mar 7, 2025 | The Flex Mag - Responsive WordPress News Theme theme for WordPress is vulnerable to unauthorized modification of data th... |
| CVE-2024-13320 | HIGH | 7.5 | 0.4% | Mar 7, 2025 | The CURCY - WooCommerce Multi Currency - Currency Switcher plugin for WordPress is vulnerable to SQL Injection via the '... |
| CVE-2024-50600 | HIGH | 7.5 | 0.4% | Mar 6, 2025 | An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 980, 850, 1080, 1280, 1330, 1380, 1480... |
| CVE-2024-52924 | HIGH | 7.5 | 0.4% | Mar 6, 2025 | An issue was discovered in NRMM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 9820, 9825, 980, 990, ... |
| CVE-2024-52923 | HIGH | 7.5 | 0.4% | Mar 6, 2025 | An issue was discovered in NRMM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 9820, 9825, 980, 990, ... |
| CVE-2024-58083 | HIGH | 7.8 | 0.2% | Mar 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: KVM: Explicitly verify target vCPU is online in kvm... |
| CVE-2024-51476 | HIGH | 7.5 | 0.4% | Mar 6, 2025 | IBM Concert Software 1.0.5 uses an inadequate account lockout setting that could allow a remote attacker to brute force ... |
| CVE-2024-12742 | HIGH | 8.4 | 5.4% | Mar 6, 2025 | A deserialization of untrusted data vulnerability exists in NI G Web Development Software that may result in arbitrary c... |
| CVE-2024-58072 | HIGH | 7.8 | 0.2% | Mar 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtlwifi: remove unused check_buddy_priv Comm... |
| CVE-2024-58069 | HIGH | 7.8 | 0.2% | Mar 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: rtc: pcf85063: fix potential OOB write in PCF85063 ... |
| CVE-2024-58060 | HIGH | 7.8 | 0.2% | Mar 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: bpf: Reject struct_ops registration that uses modul... |
| CVE-2024-58055 | HIGH | 7.8 | 0.2% | Mar 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_tcm: Don't free command immediately ... |
| CVE-2024-58054 | HIGH | 7.1 | 0.2% | Mar 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: staging: media: max96712: fix kernel oops when remo... |
| CVE-2024-42844 | HIGH | 8.1 | 0.4% | Mar 6, 2025 | A SQL Injection vulnerability has been identified in EPICOR Prophet 21 (P21) up to 23.2.5232. This vulnerability allows ... |
| CVE-2024-12146 | HIGH | 7.5 | 0.3% | Mar 6, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Finder Fire Safety... |
| CVE-2024-13893 | HIGH | 7.5 | 0.2% | Mar 6, 2025 | Smartwares cameras CIP-37210AT and C724IP, as well as others which share the same firmware in versions up to 3.3.0, migh... |
| CVE-2024-13892 | HIGH | 7.7 | 0.7% | Mar 6, 2025 | Smartwares cameras CIP-37210AT and C724IP, as well as others which share the same firmware in versions up to 3.3.0, are ... |
| CVE-2024-7872 | HIGH | 7.6 | 0.2% | Mar 6, 2025 | Insertion of Sensitive Information Into Sent Data vulnerability in ExtremePACS Extreme XDS allows Retrieve Embedded Sens... |
| CVE-2024-57174 | HIGH | 8.1 | 0.3% | Mar 5, 2025 | A misconfiguration in Alphion ASEE-1443 Firmware v0.4.H.00.02.15 defines a previously unregistered domain name as the de... |
| CVE-2024-51144 | HIGH | 8.8 | 0.4% | Mar 5, 2025 | Cross Site Request Forgery (CSRF) vulnerability exists in the 'pvmsg.php?action=add_message', pvmsg.php?action=confirm_d... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now