2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-41025 | MEDIUM | 5.5 | 0.3% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: Fix memory leak in audio daemon atta... |
| CVE-2024-41023 | MEDIUM | 5.5 | 0.3% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: sched/deadline: Fix task_struct reference leak Dur... |
| CVE-2024-41022 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix signedness bug in sdma_v4_0_process... |
| CVE-2024-41021 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: s390/mm: Fix VM_FAULT_HWPOISON handling in do_excep... |
| CVE-2024-41020 | MEDIUM | 4.7 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: filelock: Fix fcntl/close race recovery compat path... |
| CVE-2024-40576 | MEDIUM | 4.7 | 0.8% | Jul 29, 2024 | Cross Site Scripting vulnerability in Best House Rental Management System 1.0 allows a remote attacker to execute arbitr... |
| CVE-2024-7200 | MEDIUM | 5.4 | 0.4% | Jul 29, 2024 | A vulnerability, which was classified as problematic, has been found in SourceCodester Complaints Report Management Syst... |
| CVE-2024-6881 | MEDIUM | 5.4 | 0.3% | Jul 29, 2024 | Stored XSS in M-Files Hubshare versions before 5.0.6.0 allows an authenticated attacker to execute arbitrary JavaScript ... |
| CVE-2024-6124 | MEDIUM | 5.4 | 0.3% | Jul 29, 2024 | Reflected XSS in M-Files Hubshare before version 5.0.6.0 allows an attacker to execute arbitrary JavaScript code in the ... |
| CVE-2024-41019 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Validate ff offset This adds sanity chec... |
| CVE-2024-41018 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Add a check for attr_names and oatbl Add... |
| CVE-2024-41017 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: jfs: don't walk off the end of ealist Add a check ... |
| CVE-2024-41016 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: strict bound check before memcmp in ocfs2_xa... |
| CVE-2024-41015 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: add bounds checking to ocfs2_check_dir_entry... |
| CVE-2024-6487 | MEDIUM | 5.9 | 0.4% | Jul 29, 2024 | The Inline Related Posts WordPress plugin before 3.8.0 does not sanitise and escape some of its settings, which could al... |
| CVE-2024-6362 | MEDIUM | 4.6 | 0.3% | Jul 29, 2024 | The Ultimate Blocks WordPress plugin before 3.2.0 does not validate and escape some of its post-grid block attributes b... |
| CVE-2024-5883 | MEDIUM | 4.7 | 0.4% | Jul 29, 2024 | The Ultimate Classified Listings WordPress plugin before 1.3 does not sanitise and escape a parameter before outputting ... |
| CVE-2024-5285 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | The wp-affiliate-platform WordPress plugin before 6.5.2 does not have CSRF check in place when deleting affiliates, whic... |
| CVE-2024-4483 | MEDIUM | 5.4 | 0.4% | Jul 29, 2024 | The Email Encoder WordPress plugin before 2.2.2 does not escape the WP_Email_Encoder_Bundle_options[protection_text] pa... |
| CVE-2024-7163 | MEDIUM | 6.1 | 0.4% | Jul 28, 2024 | A vulnerability, which was classified as problematic, was found in SeaCMS 12.9. This affects an unknown part of the file... |
| CVE-2024-7162 | MEDIUM | 5.4 | 0.4% | Jul 28, 2024 | A vulnerability, which was classified as problematic, has been found in SeaCMS 12.9/13.0. Affected by this issue is some... |
| CVE-2024-7161 | MEDIUM | 6.5 | 0.3% | Jul 28, 2024 | A vulnerability classified as problematic was found in SeaCMS 13.0. Affected by this vulnerability is an unknown functio... |
| CVE-2024-7155 | MEDIUM | 4.7 | 0.3% | Jul 28, 2024 | A vulnerability has been found in TOTOLINK A3300R 17.0.0cu.557_B20221024 and classified as problematic. Affected by this... |
| CVE-2024-42055 | MEDIUM | 5.4 | 0.4% | Jul 28, 2024 | Cervantes through 0.5-alpha allows stored XSS. |
| CVE-2024-42054 | MEDIUM | 5.4 | 0.4% | Jul 28, 2024 | Cervantes through 0.5-alpha accepts insecure file uploads. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now