2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-42354 | MEDIUM | 5.9 | 0.4% | Aug 8, 2024 | Shopware is an open commerce platform. The store-API works with regular entities and not expose all fields for the publi... |
| CVE-2024-7610 | MEDIUM | 6.5 | 0.4% | Aug 8, 2024 | A Denial of Service (DoS) condition has been discovered in GitLab CE/EE affecting all versions starting with 15.9 before... |
| CVE-2024-7554 | MEDIUM | 6.5 | 0.4% | Aug 8, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.9 before 17.0.6, all versions start... |
| CVE-2024-5423 | MEDIUM | 6.5 | 0.5% | Aug 8, 2024 | Multiple Denial of Service (DoS) conditions has been discovered in GitLab CE/EE affecting all versions starting from 1.0... |
| CVE-2024-4207 | MEDIUM | 5.4 | 0.3% | Aug 8, 2024 | A cross-site scripting issue has been discovered in GitLab affecting all versions starting from 5.1 prior 17.0.6, starti... |
| CVE-2024-3958 | MEDIUM | 6.5 | 0.3% | Aug 8, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions before 17.0.6, 17.1 prior to 17.1.4, and 17.2 prior ... |
| CVE-2024-3114 | MEDIUM | 6.5 | 0.5% | Aug 8, 2024 | An issue was discovered in GitLab CE/EE affecting all versions starting from 11.10 prior to 17.0.6, 17.1 prior to 17.1.4... |
| CVE-2024-4784 | MEDIUM | 5.4 | 0.3% | Aug 8, 2024 | An issue was discovered in GitLab EE starting from version 16.7 before 17.0.6, version 17.1 before 17.1.4 and 17.2 befor... |
| CVE-2024-4210 | MEDIUM | 6.5 | 0.5% | Aug 8, 2024 | A Denial of Service (DoS) condition has been discovered in GitLab CE/EE affecting all versions starting with 12.6 before... |
| CVE-2024-42037 | MEDIUM | 6.2 | 0.1% | Aug 8, 2024 | Vulnerability of uncaught exceptions in the Graphics module Impact: Successful exploitation of this vulnerability may af... |
| CVE-2024-42034 | MEDIUM | 5.5 | 0.1% | Aug 8, 2024 | LaunchAnywhere vulnerability in the account module. Impact: Successful exploitation of this vulnerability may affect ser... |
| CVE-2024-42255 | MEDIUM | 5.5 | 0.2% | Aug 8, 2024 | In the Linux kernel, the following vulnerability has been resolved: tpm: Use auth only after NULL check in tpm_buf_chec... |
| CVE-2024-42254 | MEDIUM | 5.5 | 0.2% | Aug 8, 2024 | In the Linux kernel, the following vulnerability has been resolved: io_uring: fix error pbuf checking Syz reports a pr... |
| CVE-2024-42253 | MEDIUM | 4.7 | 0.2% | Aug 8, 2024 | In the Linux kernel, the following vulnerability has been resolved: gpio: pca953x: fix pca953x_irq_bus_sync_unlock race... |
| CVE-2024-42252 | MEDIUM | 5.5 | 0.2% | Aug 8, 2024 | In the Linux kernel, the following vulnerability has been resolved: closures: Change BUG_ON() to WARN_ON() If a BUG_ON... |
| CVE-2024-42251 | MEDIUM | 5.5 | 0.2% | Aug 8, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm: page_ref: remove folio_try_get_rcu() The below... |
| CVE-2024-42032 | MEDIUM | 5.5 | 0.1% | Aug 8, 2024 | Access permission verification vulnerability in the Contacts module Impact: Successful exploitation of this vulnerabilit... |
| CVE-2024-42030 | MEDIUM | 6.2 | 0.1% | Aug 8, 2024 | Access permission verification vulnerability in the content sharing pop-up module Impact: Successful exploitation of thi... |
| CVE-2024-7548 | MEDIUM | 6.5 | 0.6% | Aug 8, 2024 | The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to time-based SQL Injection via the 'order' par... |
| CVE-2024-6884 | MEDIUM | 5.4 | 0.4% | Aug 8, 2024 | The Gutenberg Blocks with AI by Kadence WP WordPress plugin before 3.2.39 does not validate and escape some of its bloc... |
| CVE-2024-6824 | MEDIUM | 4.3 | 0.4% | Aug 8, 2024 | The Premium Addons for Elementor plugin for WordPress is vulnerable to unauthorized modification and loss of data due to... |
| CVE-2024-6481 | MEDIUM | 4.8 | 0.3% | Aug 8, 2024 | The Search & Filter Pro WordPress plugin before 2.5.18 does not sanitise and escape some of its settings, which could al... |
| CVE-2024-5226 | MEDIUM | 5.4 | 0.3% | Aug 8, 2024 | The Fuse Social Floating Sidebar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the file upload f... |
| CVE-2024-6987 | MEDIUM | 4.3 | 0.3% | Aug 8, 2024 | The Orchid Store theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability chec... |
| CVE-2024-5668 | MEDIUM | 5.4 | 0.3% | Aug 8, 2024 | The Lightbox & Modal Popup WordPress Plugin – FooBox plugin for WordPress is vulnerable to DOM-based Stored Cross-Site S... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now