2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-31237 | HIGH | 7.5 | 0.4% | May 17, 2024 | Improper Privilege Management vulnerability in WP Sharks s2Member Pro allows Privilege Escalation.This issue affects s2M... |
| CVE-2024-31232 | HIGH | 8 | 0.6% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Sizam Design Rehub allow... |
| CVE-2024-30527 | HIGH | 7.5 | 0.5% | May 17, 2024 | Improper Validation of Specified Quantity in Input vulnerability in Tips and Tricks HQ WP Express Checkout (Accept PayPa... |
| CVE-2024-27971 | HIGH | 8.3 | 1.5% | May 17, 2024 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2024-27955 | HIGH | 8.8 | 0.3% | May 17, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WP Automatic Automatic allows Privilege Escalation.This issue affects... |
| CVE-2024-24934 | HIGH | 8.1 | 0.7% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Elementor Elementor Webs... |
| CVE-2024-24869 | HIGH | 7.5 | 0.7% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in BoldGrid Total Upkeep al... |
| CVE-2024-22145 | HIGH | 8.8 | 1.1% | May 17, 2024 | Incorrect Privilege Assignment vulnerability in InstaWP InstaWP Connect instawp-connect.This issue affects InstaWP Conne... |
| CVE-2024-21746 | HIGH | 7.5 | 0.5% | May 17, 2024 | Authentication Bypass by Spoofing vulnerability in Roxnor Wp Ultimate Review wp-ultimate-review allows Identity Spoofing... |
| CVE-2024-34752 | HIGH | 7.1 | 0.3% | May 17, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in PluginOps L... |
| CVE-2024-30060 | HIGH | 7.8 | 0.5% | May 16, 2024 | Azure Monitor Agent Elevation of Privilege Vulnerability |
| CVE-2024-24981 | HIGH | 7.5 | 0.2% | May 16, 2024 | Improper input validation in PfrSmiUpdateFw driver in UEFI firmware for some Intel(R) Server M50FCP Family products may ... |
| CVE-2024-23980 | HIGH | 7.5 | 0.2% | May 16, 2024 | Improper buffer restrictions in PlatformPfrDxe driver in UEFI firmware for some Intel(R) Server D50FCP Family products m... |
| CVE-2024-23487 | HIGH | 7.5 | 0.2% | May 16, 2024 | Improper input validation in UserAuthenticationSmm driver in UEFI firmware for some Intel(R) Server D50DNP Family produc... |
| CVE-2024-22382 | HIGH | 7.5 | 0.2% | May 16, 2024 | Improper input validation in PprRequestLog module in UEFI firmware for some Intel(R) Server D50DNP Family products may a... |
| CVE-2024-22095 | HIGH | 7.2 | 0.2% | May 16, 2024 | Improper input validation in PlatformVariableInitDxe driver in UEFI firmware for some Intel(R) Server D50DNP Family prod... |
| CVE-2024-21864 | HIGH | 7.8 | 0.3% | May 16, 2024 | Improper neutralization in some Intel(R) Arc(TM) & Iris(R) Xe Graphics software before version 31.0.101.5081 may allow a... |
| CVE-2024-21862 | HIGH | 7.3 | 0.2% | May 16, 2024 | Uncontrolled search path in some Intel(R) Quartus(R) Prime Standard Edition Design software before version 23.1 may allo... |
| CVE-2024-21861 | HIGH | 7.8 | 0.2% | May 16, 2024 | Uncontrolled search path in some Intel(R) GPA Framework software before version 2023.4 may allow an authenticated user t... |
| CVE-2024-21837 | HIGH | 7.3 | 0.2% | May 16, 2024 | Uncontrolled search path in some Intel(R) Quartus(R) Prime Lite Edition Design software before version 23.1 may allow an... |
| CVE-2024-21835 | HIGH | 7.8 | 0.2% | May 16, 2024 | Insecure inherited permissions in some Intel(R) XTU software before version 7.14.0.15 may allow an authenticated user to... |
| CVE-2024-21831 | HIGH | 7.8 | 0.2% | May 16, 2024 | Uncontrolled search path in some Intel(R) Processor Diagnostic Tool software before version 4.1.9.41 may allow an authen... |
| CVE-2024-21823 | HIGH | 7.5 | 0.2% | May 16, 2024 | Hardware logic with insecure de-synchronization in Intel(R) DSA and Intel(R) IAA for some Intel(R) 4th or 5th generation... |
| CVE-2024-21814 | HIGH | 7.3 | 0.2% | May 16, 2024 | Uncontrolled search path for some Intel(R) Chipset Device Software before version 10.1.19444.8378 may allow an authentic... |
| CVE-2024-21813 | HIGH | 7.9 | 0.2% | May 16, 2024 | Exposure of resource to wrong sphere in some Intel(R) DTT software installers may allow an authenticated user to potenti... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now