2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-36025MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix off by one in qla_edif_app_getst...
CVE-2024-36024MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Disable idle reallow as part of co...
CVE-2024-36023MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Julia Lawall reported this null pointer dereference...
CVE-2024-36021MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: hns3: fix kernel crash when devlink reload dur...
CVE-2024-36020MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: i40e: fix vf may be used uninitialized in this func...
CVE-2024-36018MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: nouveau/uvmm: fix addr/range calcs for remap operat...
CVE-2024-35504MEDIUM5.4A cross-site scripting (XSS) vulnerability in the login page of FineSoft v8.0 allows attackers to execute arbitrary web ...
CVE-2024-36017MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: rtnetlink: Correct nested IFLA_VF_VLAN_LIST attribu...
CVE-2024-5521MEDIUM6.4Two Cross-Site Scripting vulnerabilities have been discovered in Alkacon's OpenCMS affecting version 16, which could all...
CVE-2024-5520MEDIUM5.4Two Cross-Site Scripting vulnerabilities have been discovered in Alkacon's OpenCMS affecting version 16, which could all...
CVE-2024-3583MEDIUM6.4The Simple Like Page Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode...
CVE-2024-4668MEDIUM6.4The Gum Elementor Addon plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Price Table and Post S...
CVE-2024-4427MEDIUM4.3The Comparison Slider plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit...
CVE-2024-4426MEDIUM4.3The Comparison Slider plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includ...
CVE-2024-4422MEDIUM5.4The Comparison Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the slider title parameter i...
CVE-2024-4355MEDIUM4.3The Block Bad Bots and Stop Bad Bots Crawlers and Spiders and Anti Spam Protection plugin for WordPress is vulnerable to...
CVE-2024-2657MEDIUM4.4The Font Farsi plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up t...
CVE-2024-2089MEDIUM5.4The Remote Content Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'remote_content' ...
CVE-2024-5327MEDIUM5.4The PowerPack Addons for Elementor (Free Widgets, Extensions and Templates) plugin for WordPress is vulnerable to DOM-Ba...
CVE-2024-5073MEDIUM5.4The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress...
CVE-2024-5341MEDIUM5.4The The Plus Addons for Elementor Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
CVE-2024-4356MEDIUM6.4The List categories plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'categories' shor...
CVE-2024-4218MEDIUM6.5The AffiEasy plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1....
CVE-2024-3947MEDIUM4.3The WP To Do plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.3....
CVE-2024-3946MEDIUM4.8The WP To Do plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to,...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now