2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-38545 | HIGH | 7.8 | 0.3% | Jun 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix UAF for cq async event The refcount ... |
| CVE-2024-38542 | HIGH | 7.8 | 0.2% | Jun 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: RDMA/mana_ib: boundary check before installing cq c... |
| CVE-2024-38541 | HIGH | 7.8 | 1.5% | Jun 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: of: module: add buffer overflow check in of_modalia... |
| CVE-2024-38538 | HIGH | 7.1 | 0.3% | Jun 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: bridge: xmit: make sure we have at least eth h... |
| CVE-2024-38329 | HIGH | 7.7 | 0.5% | Jun 19, 2024 | IBM Storage Protect for Virtual Environments: Data Protection for VMware 8.1.0.0 through 8.1.22.0 could allow a remote a... |
| CVE-2024-36979 | HIGH | 7.8 | 0.3% | Jun 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: bridge: mst: fix vlan use-after-free syzbot r... |
| CVE-2024-35780 | HIGH | 8.5 | 0.4% | Jun 19, 2024 | Deserialization of Untrusted Data vulnerability in Live Composer Team Page Builder: Live Composer.This issue affects Pag... |
| CVE-2024-36978 | HIGH | 7.8 | 0.3% | Jun 19, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: sched: sch_multiq: fix possible OOB write in m... |
| CVE-2024-6132 | HIGH | 8.8 | 1.4% | Jun 19, 2024 | The Pexels: Free Stock Photos plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type vali... |
| CVE-2024-5853 | HIGH | 8.8 | 0.8% | Jun 19, 2024 | The Image Optimizer, Resizer and CDN – Sirv plugin for WordPress is vulnerable to arbitrary file uploads due to missing ... |
| CVE-2024-5574 | HIGH | 7.5 | 0.8% | Jun 19, 2024 | The WP Magazine Modules Lite plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and inclu... |
| CVE-2024-5343 | HIGH | 8.8 | 0.3% | Jun 19, 2024 | The Photo Gallery, Images, Slider in Rbs Image Gallery plugin for WordPress is vulnerable to Cross-Site Request Forgery ... |
| CVE-2024-5724 | HIGH | 8.8 | 0.6% | Jun 19, 2024 | The Photo Video Gallery Master plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and inc... |
| CVE-2024-5649 | HIGH | 8.8 | 0.4% | Jun 19, 2024 | The Universal Slider plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.... |
| CVE-2024-2381 | HIGH | 8.8 | 0.9% | Jun 19, 2024 | The AliExpress Dropshipping with AliNext Lite plugin for WordPress is vulnerable to arbitrary file uploads due to missin... |
| CVE-2024-6125 | HIGH | 8.1 | 0.5% | Jun 19, 2024 | The Login with phone number plugin for WordPress is vulnerable to unauthorized password resets in versions up to, and in... |
| CVE-2024-6146 | HIGH | 8.8 | 1.1% | Jun 19, 2024 | Actiontec WCB6200Q uh_get_postdata_withupload Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vuln... |
| CVE-2024-6145 | HIGH | 8.8 | 1.2% | Jun 19, 2024 | Actiontec WCB6200Q Cookie Format String Remote Code Execution Vulnerability. This vulnerability allows network-adjacent ... |
| CVE-2024-6144 | HIGH | 8.8 | 1.1% | Jun 19, 2024 | Actiontec WCB6200Q Multipart Boundary Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerabilit... |
| CVE-2024-6143 | HIGH | 8.8 | 1.1% | Jun 19, 2024 | Actiontec WCB6200Q uh_tcp_recv_header Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows net... |
| CVE-2024-6142 | HIGH | 8.8 | 1.1% | Jun 19, 2024 | Actiontec WCB6200Q uh_tcp_recv_content Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows ne... |
| CVE-2024-38276 | HIGH | 8.8 | 0.5% | Jun 18, 2024 | Incorrect CSRF token checks resulted in multiple CSRF risks. |
| CVE-2024-38275 | HIGH | 7.5 | 0.4% | Jun 18, 2024 | The cURL wrapper in Moodle retained the original request headers when following redirects, so HTTP authorization header ... |
| CVE-2024-37821 | HIGH | 8.8 | 0.8% | Jun 18, 2024 | An arbitrary file upload vulnerability in the Upload Template function of Dolibarr ERP CRM up to v19.0.1 allows attacker... |
| CVE-2024-36974 | HIGH | 7.8 | 0.3% | Jun 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: net/sched: taprio: always validate TCA_TAPRIO_ATTR_... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now