2024 CVE Vulnerabilities
39,235 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-30806 | MEDIUM | 6.5 | 0.5% | Apr 2, 2024 | An issue was discovered in Bento4 v1.6.0-641-2-g1529b83. There is a heap overflow in AP4_Dec3Atom::AP4_Dec3Atom at Ap4De... |
| CVE-2024-3151 | MEDIUM | 4.3 | 0.4% | Apr 2, 2024 | A vulnerability, which was classified as problematic, was found in Bdtask Multi-Store Inventory Management System up to ... |
| CVE-2024-2435 | MEDIUM | 4.3 | 0.4% | Apr 2, 2024 | For an attacker with pre-existing access to send a signal to a workflow, the attacker can make the signal name a script ... |
| CVE-2024-22247 | MEDIUM | 4.8 | 0.2% | Apr 2, 2024 | VMware SD-WAN Edge contains a missing authentication and protection mechanism vulnerability. A malicious actor with phy... |
| CVE-2024-22780 | MEDIUM | 6.1 | 0.7% | Apr 2, 2024 | Cross Site Scripting vulnerability in CA17 TeamsACS v.1.0.1 allows a remote attacker to execute arbitrary code via a cra... |
| CVE-2024-30946 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /src/dede/co_do.php. |
| CVE-2024-1946 | MEDIUM | 6.4 | 0.3% | Apr 2, 2024 | The Genesis Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the block content in all versio... |
| CVE-2024-1807 | MEDIUM | 6.5 | 0.6% | Apr 2, 2024 | The Product Sort and Display for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due... |
| CVE-2024-1732 | MEDIUM | 5.3 | 0.4% | Apr 2, 2024 | The Sharkdropship for AliExpress Dropshipping and Affiliate plugin for WordPress is vulnerable to unauthorized loss of d... |
| CVE-2024-2931 | MEDIUM | 4.3 | 0.5% | Apr 2, 2024 | The WPFront User Role Editor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to,... |
| CVE-2024-20799 | MEDIUM | 5.4 | 0.4% | Apr 2, 2024 | Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2024-1300 | MEDIUM | 5.4 | 1.1% | Apr 2, 2024 | A vulnerability in the Eclipse Vert.x toolkit causes a memory leak in TCP servers configured with TLS and SNI support. W... |
| CVE-2024-2925 | MEDIUM | 5.4 | 0.4% | Apr 2, 2024 | The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl... |
| CVE-2024-2839 | MEDIUM | 5.4 | 0.3% | Apr 2, 2024 | The Colibri Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'colibri_pos... |
| CVE-2024-29086 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | in OpenHarmony v3.2.4 and prior versions allow a local attacker cause DOS through stack overflow. |
| CVE-2024-26684 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: stmmac: xgmac: fix handling of DPP safety erro... |
| CVE-2024-26683 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: detect stuck ECSA element in probe ... |
| CVE-2024-26682 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: improve CSA/ECSA connection refusal... |
| CVE-2024-26681 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: netdevsim: avoid potential loop in nsim_dev_trap_re... |
| CVE-2024-26680 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: atlantic: Fix DMA mapping for PTP hwts ring F... |
| CVE-2024-26679 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: inet: read sk->sk_family once in inet_recv_error() ... |
| CVE-2024-26678 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: x86/efistub: Use 1:1 file:memory mapping for PE/COF... |
| CVE-2024-26677 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix delayed ACKs to not set the reference se... |
| CVE-2024-26676 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Call kfree_skb() for dead unix_(sk)->oob_s... |
| CVE-2024-26675 | MEDIUM | 5.5 | 0.3% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: ppp_async: limit MRU to 64K syzbot triggered a war... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now