2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-3812HIGH7.5The Salient Core plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.0.7 ...
CVE-2024-3810HIGH8.8The Salient Shortcodes plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, ...
CVE-2024-23556HIGH7.5SSL/TLS Renegotiation functionality potentially leading to DoS attack vulnerability.
CVE-2024-23554HIGH8.8Cross-Site Request Forgery (CSRF) on Session Token vulnerability that could potentially lead to Remote Code Execution (R...
CVE-2024-35313HIGH7.3In Tor Arti before 1.2.3, circuits sometimes incorrectly have a length of 3 (with full vanguards), aka TROVE-2024-004.
CVE-2024-5066HIGH8.8A vulnerability classified as critical was found in PHPGurukul Online Course Registration System 3.1. Affected by this v...
CVE-2024-34997HIGH7.5joblib v1.4.2 was discovered to contain a deserialization vulnerability via the component joblib.numpy_pickle::NumpyArra...
CVE-2024-3292HIGH8.2A race condition vulnerability exists where an authenticated, local attacker on a Windows Nessus Agent host could modify...
CVE-2024-3291HIGH7.8When installing Nessus Agent to a directory outside of the default location on a Windows host, Nessus Agent versions pri...
CVE-2024-3290HIGH8.2A race condition vulnerability exists where an authenticated, local attacker on a Windows Nessus host could modify insta...
CVE-2024-3289HIGH7.8When installing Nessus to a directory outside of the default location on a Windows host, Nessus versions prior to 10.7.3...
CVE-2024-34058HIGH8.8The WebTop package for NethServer 7 and 8 allows stored XSS (for example, via the Subject field if an e-mail message).
CVE-2024-5051HIGH8.8A vulnerability has been found in SourceCodester Gas Agency Management System 1.0 and classified as critical. This vulne...
CVE-2024-35857HIGH7.5In the Linux kernel, the following vulnerability has been resolved: icmp: prevent possible NULL dereferences from icmp_...
CVE-2024-35856HIGH7.8In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: mediatek: Fix double free of skb ...
CVE-2024-35855HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix possible use-after-fr...
CVE-2024-35854HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix possible use-after-fr...
CVE-2024-35849HIGH7.1In the Linux kernel, the following vulnerability has been resolved: btrfs: fix information leak in btrfs_ioctl_logical_...
CVE-2024-35847HIGH7.8In the Linux kernel, the following vulnerability has been resolved: irqchip/gic-v3-its: Prevent double free on error T...
CVE-2024-35843HIGH8.8In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Use device rbtree in iopf reporting pat...
CVE-2024-5049HIGH8.8A vulnerability, which was classified as critical, has been found in Codezips E-Commerce Site 1.0. Affected by this issu...
CVE-2024-35835HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: fix a double-free in arfs_create_groups ...
CVE-2024-35814HIGH8.8In the Linux kernel, the following vulnerability has been resolved: swiotlb: Fix double-allocation of slots due to brok...
CVE-2024-5045HIGH7.5A vulnerability was found in SourceCodester Online Birth Certificate Management System 1.0. It has been declared as prob...
CVE-2024-35792HIGH7.8In the Linux kernel, the following vulnerability has been resolved: crypto: rk3288 - Fix use after free in unprepare T...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now