2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-27410 | MEDIUM | 5.5 | 0.2% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: wifi: nl80211: reject iftype change with mesh ID ch... |
| CVE-2024-27409 | MEDIUM | 5.5 | 0.2% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma: HDMA: Add sync read before star... |
| CVE-2024-27408 | MEDIUM | 4.7 | 0.2% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma: eDMA: Add sync read before star... |
| CVE-2024-27406 | MEDIUM | 5.5 | 0.2% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: lib/Kconfig.debug: TEST_IOV_ITER depends on MMU Tr... |
| CVE-2024-27404 | MEDIUM | 4.7 | 0.2% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: mptcp: fix data races on remote_id Similar to the ... |
| CVE-2024-27403 | MEDIUM | 5.5 | 0.2% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_flow_offload: reset dst in route obj... |
| CVE-2024-27402 | MEDIUM | 5.8 | 0.2% | May 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: phonet/pep: fix racy skb_queue_empty() use The rec... |
| CVE-2024-35174 | MEDIUM | 5.3 | 0.3% | May 17, 2024 | Missing Authorization vulnerability in Flothemes Flo Forms.This issue affects Flo Forms: from n/a through 1.0.42. |
| CVE-2024-34809 | MEDIUM | 4.3 | 0.2% | May 17, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Extend Themes EmpowerWP.This issue affects EmpowerWP: from n/a throug... |
| CVE-2024-34807 | MEDIUM | 4.3 | 0.2% | May 17, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in CodeBard Fast Custom Social Share by CodeBard fast-custom-social-shar... |
| CVE-2024-34806 | MEDIUM | 4.3 | 0.2% | May 17, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Creative Motion Clearfy Cache.This issue affects Clearfy Cache: from ... |
| CVE-2024-34756 | MEDIUM | 4.3 | 0.2% | May 17, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in CRM Perks Integration for Contact Form 7 HubSpot.This issue affects I... |
| CVE-2024-34755 | MEDIUM | 4.3 | 0.2% | May 17, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in CRM Perks Integration for Contact Form 7 and Salesforce.This issue af... |
| CVE-2024-32827 | MEDIUM | 5.3 | 0.4% | May 17, 2024 | Authentication Bypass by Spoofing vulnerability in RafflePress Giveaways and Contests allows Functionality Bypass.This i... |
| CVE-2024-32802 | MEDIUM | 5.3 | 0.3% | May 17, 2024 | Missing Authorization vulnerability in WordPlus BP Better Messages allows Accessing Functionality Not Properly Constrain... |
| CVE-2024-32720 | MEDIUM | 5.3 | 0.4% | May 17, 2024 | Improper Restriction of Excessive Authentication Attempts vulnerability in CodePeople Appointment Hour Booking allows Re... |
| CVE-2024-4789 | MEDIUM | 6.4 | 0.3% | May 17, 2024 | Cost Calculator Builder Pro plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to 3.1.... |
| CVE-2024-34434 | MEDIUM | 6.5 | 0.3% | May 17, 2024 | Incorrect Authorization vulnerability in realmag777 WordPress Meta Data and Taxonomies Filter (MDTF) allows Code Inclusi... |
| CVE-2024-33917 | MEDIUM | 5.3 | 0.4% | May 17, 2024 | Authentication Bypass by Spoofing vulnerability in webtechideas WTI Like Post allows Functionality Bypass.This issue aff... |
| CVE-2024-32790 | MEDIUM | 4.3 | 0.3% | May 17, 2024 | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Supsystic Pricing Table b... |
| CVE-2024-32685 | MEDIUM | 5.3 | 0.4% | May 17, 2024 | Client-Side Enforcement of Server-Side Security vulnerability in Wpmet Wp Ultimate Review allows Functionality Bypass.Th... |
| CVE-2024-32521 | MEDIUM | 5.3 | 0.4% | May 17, 2024 | Client-Side Enforcement of Server-Side Security vulnerability in Highfivery LLC Zero Spam allows Removing Important Clie... |
| CVE-2024-32512 | MEDIUM | 5.3 | 0.3% | May 17, 2024 | Client-Side Enforcement of Server-Side Security vulnerability in weForms allows Removing Important Client Functionality.... |
| CVE-2024-31341 | MEDIUM | 5.3 | 0.2% | May 17, 2024 | Insufficient Verification of Data Authenticity vulnerability in Cozmoslabs Profile Builder allows Functionality Bypass.T... |
| CVE-2024-31295 | MEDIUM | 5.3 | 0.4% | May 17, 2024 | Guessable CAPTCHA vulnerability in BestWebSoft Captcha by BestWebSoft allows Functionality Bypass.This issue affects Cap... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now