2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-57986 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: HID: core: Fix assumption that Resolution Multiplie... |
| CVE-2024-57985 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: firmware: qcom: scm: Cleanup global '__scm' on prob... |
| CVE-2024-57981 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: usb: xhci: Fix NULL pointer dereference on certain ... |
| CVE-2024-57978 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: media: imx-jpeg: Fix potential error pointer derefe... |
| CVE-2024-57977 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: memcg: fix soft lockup in the OOM process A soft l... |
| CVE-2024-57976 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: btrfs: do proper folio cleanup when cow_file_range(... |
| CVE-2024-57975 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: btrfs: do proper folio cleanup when run_delalloc_no... |
| CVE-2024-57974 | MEDIUM | 4.7 | 0.1% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: udp: Deal with race between UDP socket address chan... |
| CVE-2024-57973 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: rdma/cxgb4: Prevent potential integer overflow on 3... |
| CVE-2024-57953 | MEDIUM | 5.5 | 0.2% | Feb 27, 2025 | In the Linux kernel, the following vulnerability has been resolved: rtc: tps6594: Fix integer overflow on 32bit systems... |
| CVE-2024-57423 | MEDIUM | 6.1 | 0.5% | Feb 26, 2025 | A Cross Site Scripting vulnerability in CloudClassroom-PHP Project v1.0 allows a remote attacker to execute arbitrary co... |
| CVE-2024-50684 | MEDIUM | 6.5 | 0.3% | Feb 26, 2025 | SunGrow iSolarCloud Android app V2.1.6.20241017 and prior uses an insecure AES key to encrypt client data (insufficient ... |
| CVE-2024-46226 | MEDIUM | 4.8 | 0.2% | Feb 26, 2025 | A stored cross site scripting (XSS) vulnerability in HelpDeskZ < v2.0.2 allows remote attackers to execute arbitrary Jav... |
| CVE-2024-52925 | MEDIUM | 6.8 | 0.3% | Feb 26, 2025 | In OPSWAT MetaDefender Kiosk before 4.7.0, arbitrary code execution can be performed by an attacker via the MD Kiosk Unl... |
| CVE-2024-6810 | MEDIUM | 4.4 | 0.5% | Feb 26, 2025 | The Quiz Organizer plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and includin... |
| CVE-2024-13803 | MEDIUM | 5.4 | 0.4% | Feb 26, 2025 | The Essential Blocks – Page Builder Gutenberg Blocks, Patterns & Templates plugin for WordPress is vulnerable to Stored ... |
| CVE-2024-13678 | MEDIUM | 6.1 | 0.4% | Feb 26, 2025 | The R3W InstaFeed WordPress plugin through 1.0 does not sanitise and escape a parameter before outputting it back in the... |
| CVE-2024-13669 | MEDIUM | 6.1 | 0.4% | Feb 26, 2025 | The CalendApp WordPress plugin through 1.1 does not sanitise and escape a parameter before outputting it back in the pag... |
| CVE-2024-13634 | MEDIUM | 6.1 | 0.6% | Feb 26, 2025 | The Post Sync WordPress plugin through 1.1 does not sanitise and escape a parameter before outputting it back in the pag... |
| CVE-2024-13630 | MEDIUM | 6.1 | 0.6% | Feb 26, 2025 | The NewsTicker WordPress plugin through 1.0 does not sanitise and escape a parameter before outputting it back in the pa... |
| CVE-2024-13629 | MEDIUM | 6.1 | 0.4% | Feb 26, 2025 | The pushBIZ WordPress plugin through 1.0 does not sanitise and escape a parameter before outputting it back in the page... |
| CVE-2024-13628 | MEDIUM | 6.1 | 0.6% | Feb 26, 2025 | The WP Pricing Table WordPress plugin through 1.1 does not sanitise and escape a parameter before outputting it back in ... |
| CVE-2024-13560 | MEDIUM | 4.3 | 0.3% | Feb 26, 2025 | The Subscriptions & Memberships for PayPal plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versi... |
| CVE-2024-13113 | MEDIUM | 5.9 | 0.3% | Feb 26, 2025 | The Countdown Timer for Elementor WordPress plugin before 1.3.7 does not sanitise and escape some parameters when output... |
| CVE-2024-12737 | MEDIUM | 6.1 | 0.6% | Feb 26, 2025 | The WP BASE Booking of Appointments, Services and Events WordPress plugin before 5.0.0 does not sanitise and escape a pa... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now