2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-22103 | MEDIUM | 5.5 | 0.2% | Jul 2, 2024 | Out-of-Bounds Write vulnerability in Jungo WinDriver before 12.6.0 allows local attackers to cause a Windows blue screen... |
| CVE-2024-22102 | MEDIUM | 5.5 | 0.2% | Jul 2, 2024 | Denial of Service (DoS) vulnerability in Jungo WinDriver before 12.6.0 allows local attackers to cause a Windows blue sc... |
| CVE-2024-39143 | MEDIUM | 5.4 | 0.9% | Jul 2, 2024 | A stored cross-site scripting (XSS) vulnerability exists in ResidenceCMS 2.10.1 that allows a low-privilege user to crea... |
| CVE-2024-32757 | MEDIUM | 6.8 | 0.4% | Jul 2, 2024 | Under certain circumstances unnecessary user details are provided within system logs |
| CVE-2024-32756 | MEDIUM | 6.8 | 0.4% | Jul 2, 2024 | Under certain circumstances the Linux users credentials may be recovered by an authenticated user. |
| CVE-2024-39119 | MEDIUM | 5.4 | 0.2% | Jul 2, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via admin/info_deal.php?mudi=rev&nohrefStr=cl... |
| CVE-2024-6441 | MEDIUM | 6.3 | 0.4% | Jul 2, 2024 | A vulnerability was found in ORIPA up to 1.72. It has been declared as critical. Affected by this vulnerability is an un... |
| CVE-2024-6438 | MEDIUM | 6.5 | 0.4% | Jul 2, 2024 | A vulnerability has been found in Hitout Carsale 1.0 and classified as critical. This vulnerability affects unknown code... |
| CVE-2024-6264 | MEDIUM | 5.4 | 0.3% | Jul 2, 2024 | The Post Meta Data Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘$meta_key’ paramet... |
| CVE-2024-6099 | MEDIUM | 5.3 | 0.4% | Jul 2, 2024 | The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to unauthenticated bypass to user registration ... |
| CVE-2024-6088 | MEDIUM | 5.3 | 0.6% | Jul 2, 2024 | The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to unauthorized user registration due to a miss... |
| CVE-2024-4268 | MEDIUM | 5.4 | 0.5% | Jul 2, 2024 | The Ultimate Blocks – WordPress Blocks Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ... |
| CVE-2024-6012 | MEDIUM | 4.3 | 0.4% | Jul 2, 2024 | The Cost Calculator Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing cap... |
| CVE-2024-6011 | MEDIUM | 4.8 | 0.4% | Jul 2, 2024 | The Cost Calculator Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘textarea.descript... |
| CVE-2024-34601 | MEDIUM | 5.3 | 0.1% | Jul 2, 2024 | Improper verification of intent by broadcast receiver vulnerability in GalaxyStore prior to version 4.5.81.0 allows loca... |
| CVE-2024-34594 | MEDIUM | 5.5 | 0.2% | Jul 2, 2024 | Exposure of sensitive information in proc file system prior to SMR Jul-2024 Release 1 allows local attackers to read ker... |
| CVE-2024-34592 | MEDIUM | 4.3 | 0.4% | Jul 2, 2024 | Improper input validation in parsing RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attacke... |
| CVE-2024-34591 | MEDIUM | 4.3 | 0.4% | Jul 2, 2024 | Improper input validation in parsing an item data from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 all... |
| CVE-2024-34590 | MEDIUM | 4.3 | 0.4% | Jul 2, 2024 | Improper input validation혻in parsing an item type from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 all... |
| CVE-2024-34589 | MEDIUM | 6.5 | 0.4% | Jul 2, 2024 | Improper input validation in parsing RTCP RR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers... |
| CVE-2024-34588 | MEDIUM | 6.5 | 0.4% | Jul 2, 2024 | Improper input validation혻in parsing RTCP SR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers... |
| CVE-2024-34587 | MEDIUM | 6.8 | 0.5% | Jul 2, 2024 | Improper input validation in parsing application information from RTCP packet in librtp.so prior to SMR Jul-2024 Release... |
| CVE-2024-20899 | MEDIUM | 5.5 | 0.1% | Jul 2, 2024 | Use of implicit intent for sensitive communication in RCS function in IMS service prior to SMR Jul-2024 Release 1 allows... |
| CVE-2024-20898 | MEDIUM | 5.5 | 0.1% | Jul 2, 2024 | Use of implicit intent for sensitive communication in SoftphoneClient in IMS service prior to SMR Jul-2024 Release 1 all... |
| CVE-2024-20897 | MEDIUM | 5.5 | 0.1% | Jul 2, 2024 | Use of implicit intent for sensitive communication in FCM function in IMS service prior to SMR Jul-2024 Release 1 allows... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now