2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-42354MEDIUM5.9Shopware is an open commerce platform. The store-API works with regular entities and not expose all fields for the publi...
CVE-2024-7610MEDIUM6.5A Denial of Service (DoS) condition has been discovered in GitLab CE/EE affecting all versions starting with 15.9 before...
CVE-2024-7554MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.9 before 17.0.6, all versions start...
CVE-2024-5423MEDIUM6.5Multiple Denial of Service (DoS) conditions has been discovered in GitLab CE/EE affecting all versions starting from 1.0...
CVE-2024-4207MEDIUM5.4A cross-site scripting issue has been discovered in GitLab affecting all versions starting from 5.1 prior 17.0.6, starti...
CVE-2024-3958MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions before 17.0.6, 17.1 prior to 17.1.4, and 17.2 prior ...
CVE-2024-3114MEDIUM6.5An issue was discovered in GitLab CE/EE affecting all versions starting from 11.10 prior to 17.0.6, 17.1 prior to 17.1.4...
CVE-2024-4784MEDIUM5.4An issue was discovered in GitLab EE starting from version 16.7 before 17.0.6, version 17.1 before 17.1.4 and 17.2 befor...
CVE-2024-4210MEDIUM6.5A Denial of Service (DoS) condition has been discovered in GitLab CE/EE affecting all versions starting with 12.6 before...
CVE-2024-42037MEDIUM6.2Vulnerability of uncaught exceptions in the Graphics module Impact: Successful exploitation of this vulnerability may af...
CVE-2024-42034MEDIUM5.5LaunchAnywhere vulnerability in the account module. Impact: Successful exploitation of this vulnerability may affect ser...
CVE-2024-42255MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: tpm: Use auth only after NULL check in tpm_buf_chec...
CVE-2024-42254MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: io_uring: fix error pbuf checking Syz reports a pr...
CVE-2024-42253MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: gpio: pca953x: fix pca953x_irq_bus_sync_unlock race...
CVE-2024-42252MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: closures: Change BUG_ON() to WARN_ON() If a BUG_ON...
CVE-2024-42251MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm: page_ref: remove folio_try_get_rcu() The below...
CVE-2024-42032MEDIUM5.5Access permission verification vulnerability in the Contacts module Impact: Successful exploitation of this vulnerabilit...
CVE-2024-42030MEDIUM6.2Access permission verification vulnerability in the content sharing pop-up module Impact: Successful exploitation of thi...
CVE-2024-7548MEDIUM6.5The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to time-based SQL Injection via the 'order' par...
CVE-2024-6884MEDIUM5.4The Gutenberg Blocks with AI by Kadence WP WordPress plugin before 3.2.39 does not validate and escape some of its bloc...
CVE-2024-6824MEDIUM4.3The Premium Addons for Elementor plugin for WordPress is vulnerable to unauthorized modification and loss of data due to...
CVE-2024-6481MEDIUM4.8The Search & Filter Pro WordPress plugin before 2.5.18 does not sanitise and escape some of its settings, which could al...
CVE-2024-5226MEDIUM5.4The Fuse Social Floating Sidebar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the file upload f...
CVE-2024-6987MEDIUM4.3The Orchid Store theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability chec...
CVE-2024-5668MEDIUM5.4The Lightbox & Modal Popup WordPress Plugin – FooBox plugin for WordPress is vulnerable to DOM-based Stored Cross-Site S...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now