2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-26795MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: riscv: Sparse-Memory/vmemmap out-of-bounds fix Off...
CVE-2024-26790MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: fsl-qdma: fix SoC may hang on 16 byte un...
CVE-2024-26788MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: fsl-qdma: init irq after reg initializat...
CVE-2024-26787MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mmc: mmci: stm32: fix DMA API overlapping mappings ...
CVE-2024-26785MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix protection fault in iommufd_test_syz_c...
CVE-2024-26784MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: pmdomain: arm: Fix NULL dereference on scmi_perf_do...
CVE-2024-26783MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mm/vmscan: fix a bug calling wakeup_kswapd() with a...
CVE-2024-26781MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mptcp: fix possible deadlock in subflow diag Syzbo...
CVE-2024-26780MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: af_unix: Fix task hung while purging oob_skb in GC....
CVE-2024-26750MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: af_unix: Drop oob_skb ref before purging queue in G...
CVE-2024-26746MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Ensure safe user copy of completio...
CVE-2024-26745MEDIUM4.4In the Linux kernel, the following vulnerability has been resolved: powerpc/pseries/iommu: IOMMU table is not initializ...
CVE-2024-20800MEDIUM5.4Adobe Experience Manager versions 6.5.19 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerabilit...
CVE-2024-29008MEDIUM6.4A problem has been identified in the CloudStack additional VM configuration (extraconfig) feature which can be misused b...
CVE-2024-25503MEDIUM4.7Cross Site Scripting (XSS) vulnerability in Advanced REST Client v.17.0.9 allows a remote attacker to execute arbitrary ...
CVE-2024-28520MEDIUM6.5File Upload vulnerability in Byzoro Networks Smart multi-service security gateway intelligent management platform versio...
CVE-2024-1418MEDIUM5.3The CGC Maintenance Mode plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and...
CVE-2024-2919MEDIUM5.4The Gutenberg Blocks by Kadence Blocks – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Site S...
CVE-2024-2830MEDIUM6.4The WordPress Tag and Category Manager – AI Autotagger plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
CVE-2024-3274MEDIUM5.3** UNSUPPORTED WHEN ASSIGNED ** A vulnerability has been found in D-Link DNS-320L, DNS-320LW and DNS-327L up to 20240403...
CVE-2024-3030MEDIUM4.4The Announce from the Dashboard plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in ...
CVE-2024-2868MEDIUM6.4The ShopLentor – WooCommerce Builder for Elementor & Gutenberg +12 Modules – All in One Solution (formerly WooLentor) pl...
CVE-2024-2803MEDIUM5.4The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the countdown wid...
CVE-2024-29225MEDIUM4.3ELECOM wireless LAN routers allow a network-adjacent unauthenticated attacker to obtain the configuration file containin...
CVE-2024-3270MEDIUM6.5A vulnerability classified as problematic was found in ThingsBoard up to 3.6.2. This vulnerability affects unknown code ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now