2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-30806MEDIUM6.5An issue was discovered in Bento4 v1.6.0-641-2-g1529b83. There is a heap overflow in AP4_Dec3Atom::AP4_Dec3Atom at Ap4De...
CVE-2024-3151MEDIUM4.3A vulnerability, which was classified as problematic, was found in Bdtask Multi-Store Inventory Management System up to ...
CVE-2024-2435MEDIUM4.3For an attacker with pre-existing access to send a signal to a workflow, the attacker can make the signal name a script ...
CVE-2024-22247MEDIUM4.8VMware SD-WAN Edge contains a missing authentication and protection mechanism vulnerability. A malicious actor with phy...
CVE-2024-22780MEDIUM6.1Cross Site Scripting vulnerability in CA17 TeamsACS v.1.0.1 allows a remote attacker to execute arbitrary code via a cra...
CVE-2024-30946MEDIUM5.5DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /src/dede/co_do.php.
CVE-2024-1946MEDIUM6.4The Genesis Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the block content in all versio...
CVE-2024-1807MEDIUM6.5The Product Sort and Display for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due...
CVE-2024-1732MEDIUM5.3The Sharkdropship for AliExpress Dropshipping and Affiliate plugin for WordPress is vulnerable to unauthorized loss of d...
CVE-2024-2931MEDIUM4.3The WPFront User Role Editor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to,...
CVE-2024-20799MEDIUM5.4Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-1300MEDIUM5.4A vulnerability in the Eclipse Vert.x toolkit causes a memory leak in TCP servers configured with TLS and SNI support. W...
CVE-2024-2925MEDIUM5.4The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl...
CVE-2024-2839MEDIUM5.4The Colibri Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'colibri_pos...
CVE-2024-29086MEDIUM5.5in OpenHarmony v3.2.4 and prior versions allow a local attacker cause DOS through stack overflow.
CVE-2024-26684MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: stmmac: xgmac: fix handling of DPP safety erro...
CVE-2024-26683MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: cfg80211: detect stuck ECSA element in probe ...
CVE-2024-26682MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: improve CSA/ECSA connection refusal...
CVE-2024-26681MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netdevsim: avoid potential loop in nsim_dev_trap_re...
CVE-2024-26680MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: atlantic: Fix DMA mapping for PTP hwts ring F...
CVE-2024-26679MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: inet: read sk->sk_family once in inet_recv_error() ...
CVE-2024-26678MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: x86/efistub: Use 1:1 file:memory mapping for PE/COF...
CVE-2024-26677MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix delayed ACKs to not set the reference se...
CVE-2024-26676MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: af_unix: Call kfree_skb() for dead unix_(sk)->oob_s...
CVE-2024-26675MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ppp_async: limit MRU to 64K syzbot triggered a war...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now