2024 CVE Vulnerabilities
39,228 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-26923 | MEDIUM | 4.7 | 0.2% | Apr 25, 2024 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Fix garbage collector racing against conne... |
| CVE-2024-32879 | MEDIUM | 4.9 | 0.6% | Apr 24, 2024 | Python Social Auth is a social authentication/registration mechanism. Prior to version 5.4.1, due to default case-insens... |
| CVE-2024-20358 | MEDIUM | 6.7 | 0.7% | Apr 24, 2024 | A vulnerability in the Cisco Adaptive Security Appliance (ASA) restore functionality that is available in Cisco ASA Soft... |
| CVE-2024-4141 | MEDIUM | 5.5 | 0.2% | Apr 24, 2024 | Out-of-bounds array write in Xpdf 4.05 and earlier, triggered by an invalid character code in a Type 1 font. The root pr... |
| CVE-2024-20359 | MEDIUM | 6 | 19.4% | Apr 24, 2024 | A vulnerability in a legacy capability that allowed for the preloading of VPN clients and plug-ins and that has been ava... |
| CVE-2024-0151 | MEDIUM | 6.5 | 0.4% | Apr 24, 2024 | Insufficient argument checking in Secure state Entry functions in software using Cortex-M Security Extensions (CMSE), th... |
| CVE-2024-3371 | MEDIUM | 6.8 | 0.2% | Apr 24, 2024 | MongoDB Compass may accept and use insufficiently validated input from an untrusted external source. This may cause unin... |
| CVE-2024-23271 | MEDIUM | 6.5 | 0.8% | Apr 24, 2024 | A logic issue was addressed with improved checks. This issue is fixed in Safari 17.3, iOS 17.3 and iPadOS 17.3, macOS So... |
| CVE-2024-32678 | MEDIUM | 5.3 | 0.4% | Apr 24, 2024 | Missing Authorization vulnerability in TrackShip TrackShip for WooCommerce.This issue affects TrackShip for WooCommerce:... |
| CVE-2024-32677 | MEDIUM | 5.3 | 0.5% | Apr 24, 2024 | Missing Authorization vulnerability in LoginPress LoginPress Pro.This issue affects LoginPress Pro: from n/a before 3.0.... |
| CVE-2024-32675 | MEDIUM | 6.5 | 0.4% | Apr 24, 2024 | Missing Authorization vulnerability in Xfinity Soft Order Limit for WooCommerce.This issue affects Order Limit for WooCo... |
| CVE-2024-32432 | MEDIUM | 4.3 | 0.5% | Apr 24, 2024 | Missing Authorization vulnerability in Ovic Team Ovic Addon Toolkit.This issue affects Ovic Addon Toolkit: from n/a thro... |
| CVE-2024-32078 | MEDIUM | 4.1 | 0.3% | Apr 24, 2024 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Foliovision FV Flowplayer Video Player.This issue a... |
| CVE-2024-32947 | MEDIUM | 4.3 | 0.2% | Apr 24, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in AlumniOnline Web Services LLC WP ADA Compliance Check Basic.This issu... |
| CVE-2024-32872 | MEDIUM | 5.5 | 0.4% | Apr 24, 2024 | Umbraco workflow provides workflows for the Umbraco content management system. Prior to versions 10.3.9, 12.2.6, and 13.... |
| CVE-2024-32806 | MEDIUM | 4.3 | 0.2% | Apr 24, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in CoSchedule Headline Analyzer.This issue affects Headline Analyzer: fr... |
| CVE-2024-32795 | MEDIUM | 4.3 | 0.2% | Apr 24, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Revmakx WPCal.Io – Easy Meeting Scheduler.This issue affects WPCal.Io... |
| CVE-2024-32773 | MEDIUM | 4.3 | 0.2% | Apr 24, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WP Royal Royal Elementor Kit.This issue affects Royal Elementor Kit: ... |
| CVE-2024-32728 | MEDIUM | 4.3 | 0.2% | Apr 24, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Paid Member Subscriptions.This issue affects Paid Member S... |
| CVE-2024-32699 | MEDIUM | 4.3 | 0.2% | Apr 24, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in YITHEMES YITH WooCommerce Compare yith-woocommerce-compare.This issue... |
| CVE-2024-32823 | MEDIUM | 5.3 | 0.4% | Apr 24, 2024 | Authorization Bypass Through User-Controlled Key vulnerability in FeedbackWP Rate my Post – WP Rating System.This issue ... |
| CVE-2024-32785 | MEDIUM | 6.1 | 0.3% | Apr 24, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Webangon The Pack Elementor addons allows Cross-Site Scripting (XSS).... |
| CVE-2024-32711 | MEDIUM | 6.5 | 0.3% | Apr 24, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Saad Iqbal myCred ... |
| CVE-2024-32707 | MEDIUM | 5.9 | 0.3% | Apr 24, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GhozyLab Image Sli... |
| CVE-2024-32702 | MEDIUM | 6.1 | 0.4% | Apr 24, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in reputeinfosystems ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now