2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-3812 | HIGH | 7.5 | 0.6% | May 18, 2024 | The Salient Core plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.0.7 ... |
| CVE-2024-3810 | HIGH | 8.8 | 0.6% | May 18, 2024 | The Salient Shortcodes plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, ... |
| CVE-2024-23556 | HIGH | 7.5 | 0.4% | May 18, 2024 | SSL/TLS Renegotiation functionality potentially leading to DoS attack vulnerability. |
| CVE-2024-23554 | HIGH | 8.8 | 0.3% | May 18, 2024 | Cross-Site Request Forgery (CSRF) on Session Token vulnerability that could potentially lead to Remote Code Execution (R... |
| CVE-2024-35313 | HIGH | 7.3 | 0.3% | May 17, 2024 | In Tor Arti before 1.2.3, circuits sometimes incorrectly have a length of 3 (with full vanguards), aka TROVE-2024-004. |
| CVE-2024-5066 | HIGH | 8.8 | 0.6% | May 17, 2024 | A vulnerability classified as critical was found in PHPGurukul Online Course Registration System 3.1. Affected by this v... |
| CVE-2024-34997 | HIGH | 7.5 | 0.7% | May 17, 2024 | joblib v1.4.2 was discovered to contain a deserialization vulnerability via the component joblib.numpy_pickle::NumpyArra... |
| CVE-2024-3292 | HIGH | 8.2 | 0.2% | May 17, 2024 | A race condition vulnerability exists where an authenticated, local attacker on a Windows Nessus Agent host could modify... |
| CVE-2024-3291 | HIGH | 7.8 | 0.2% | May 17, 2024 | When installing Nessus Agent to a directory outside of the default location on a Windows host, Nessus Agent versions pri... |
| CVE-2024-3290 | HIGH | 8.2 | 0.2% | May 17, 2024 | A race condition vulnerability exists where an authenticated, local attacker on a Windows Nessus host could modify insta... |
| CVE-2024-3289 | HIGH | 7.8 | 0.2% | May 17, 2024 | When installing Nessus to a directory outside of the default location on a Windows host, Nessus versions prior to 10.7.3... |
| CVE-2024-34058 | HIGH | 8.8 | 1.2% | May 17, 2024 | The WebTop package for NethServer 7 and 8 allows stored XSS (for example, via the Subject field if an e-mail message). |
| CVE-2024-5051 | HIGH | 8.8 | 0.6% | May 17, 2024 | A vulnerability has been found in SourceCodester Gas Agency Management System 1.0 and classified as critical. This vulne... |
| CVE-2024-35857 | HIGH | 7.5 | 0.9% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: icmp: prevent possible NULL dereferences from icmp_... |
| CVE-2024-35856 | HIGH | 7.8 | 0.2% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: mediatek: Fix double free of skb ... |
| CVE-2024-35855 | HIGH | 7.8 | 0.2% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix possible use-after-fr... |
| CVE-2024-35854 | HIGH | 7.8 | 0.9% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: mlxsw: spectrum_acl_tcam: Fix possible use-after-fr... |
| CVE-2024-35849 | HIGH | 7.1 | 0.3% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix information leak in btrfs_ioctl_logical_... |
| CVE-2024-35847 | HIGH | 7.8 | 0.2% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: irqchip/gic-v3-its: Prevent double free on error T... |
| CVE-2024-35843 | HIGH | 8.8 | 0.2% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Use device rbtree in iopf reporting pat... |
| CVE-2024-5049 | HIGH | 8.8 | 0.7% | May 17, 2024 | A vulnerability, which was classified as critical, has been found in Codezips E-Commerce Site 1.0. Affected by this issu... |
| CVE-2024-35835 | HIGH | 7.8 | 0.9% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: fix a double-free in arfs_create_groups ... |
| CVE-2024-35814 | HIGH | 8.8 | 0.2% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: swiotlb: Fix double-allocation of slots due to brok... |
| CVE-2024-5045 | HIGH | 7.5 | 0.5% | May 17, 2024 | A vulnerability was found in SourceCodester Online Birth Certificate Management System 1.0. It has been declared as prob... |
| CVE-2024-35792 | HIGH | 7.8 | 0.2% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: crypto: rk3288 - Fix use after free in unprepare T... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now