2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-0126HIGH8.2NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability which could allow a privileged attacker to esca...
CVE-2024-0121HIGH7.8NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular use...
CVE-2024-0120HIGH7.8NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular use...
CVE-2024-0119HIGH7.8NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular use...
CVE-2024-0118HIGH7.8NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular use...
CVE-2024-0117HIGH7.8NVIDIA GPU Display Driver for Windows contains a vulnerability in the user mode layer, where an unprivileged regular use...
CVE-2024-9456MEDIUM6.4The WP Awesome Login plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versi...
CVE-2024-8870MEDIUM6.1The Forms for Mailchimp by Optin Cat – Grow Your MailChimp List plugin for WordPress is vulnerable to Reflected Cross-Si...
CVE-2024-9933CRITICAL9.8The WatchTowerHQ plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.10.1. T...
CVE-2024-9932CRITICAL9.8The Wux Blog Editor plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validatio...
CVE-2024-9931CRITICAL9.8The Wux Blog Editor plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.0.0....
CVE-2024-9930CRITICAL9.8The Extensions by HocWP Team plugin for WordPress is vulnerable to authentication bypass in versions up to, and includin...
CVE-2024-9890HIGH8.8The User Toolkit plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.2.3. Th...
CVE-2024-9626MEDIUM4.3The Editorial Assistant by Sovrn plugin for WordPress is vulnerable to unauthorized modification of data due to a missin...
CVE-2024-9613MEDIUM6.1The FormFacade – WordPress plugin for Google Forms plugin for WordPress is vulnerable to Reflected Cross-Site Scripting ...
CVE-2024-9475HIGH7.2The Poll Maker – Versus Polls, Anonymous Polls, Image Polls plugin for WordPress is vulnerable to generic SQL Injection ...
CVE-2024-9462MEDIUM4.8The Poll Maker – Versus Polls, Anonymous Polls, Image Polls plugin for WordPress is vulnerable to Stored Cross-Site Scri...
CVE-2024-9454MEDIUM6.4The PriPre plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to,...
CVE-2024-10091MEDIUM5.4The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Compari...
CVE-2024-47821LOW2.3pyLoad is a free and open-source Download Manager. The folder `/.pyload/scripts` has scripts which are run when certain ...
CVE-2024-48239MEDIUM4.8An issue was discovered in WTCMS 1.0. In the plupload method in \AssetController.class.php, the app parameters aren't pr...
CVE-2024-48238MEDIUM4.7WTCMS 1.0 is vulnerable to SQL Injection in the edit_post method of /Admin\Controller\NavControl.class.php via the paren...
CVE-2024-48237CRITICAL9.8WTCMS 1.0 is vulnerable to Incorrect Access Control in \Common\Controller\HomebaseController.class.php.
CVE-2024-48236MEDIUM6.5An issue in ofcms 1.1.2 allows a remote attacker to execute arbitrary code via the FileOutputStream function in the writ...
CVE-2024-48235MEDIUM6.5An issue in ofcms 1.1.2 allows a remote attacker to execute arbitrary code via the save method of the TemplateController...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now