2024 CVE Vulnerabilities
39,235 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-27104 | MEDIUM | 4.8 | 0.7% | Mar 18, 2024 | GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an... |
| CVE-2024-27096 | MEDIUM | 6.5 | 62.7% | Mar 18, 2024 | GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an... |
| CVE-2024-27937 | MEDIUM | 4.3 | 26.8% | Mar 18, 2024 | GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an... |
| CVE-2024-27930 | MEDIUM | 6.5 | 1.1% | Mar 18, 2024 | GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an... |
| CVE-2024-20757 | MEDIUM | 5.5 | 0.4% | Mar 18, 2024 | Bridge versions 13.0.5, 14.0.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclo... |
| CVE-2024-1658 | MEDIUM | 5.4 | 0.4% | Mar 18, 2024 | The Grid Shortcodes WordPress plugin before 1.1.1 does not validate and escape some of its shortcode attributes before o... |
| CVE-2024-1333 | MEDIUM | 5.4 | 0.4% | Mar 18, 2024 | The Responsive Pricing Table WordPress plugin before 5.1.11 does not validate and escape some of its Pricing Table optio... |
| CVE-2024-1331 | MEDIUM | 6.1 | 0.4% | Mar 18, 2024 | The Team Members WordPress plugin before 5.3.2 does not validate and escape some of its shortcode attributes before outp... |
| CVE-2024-2598 | MEDIUM | 6.1 | 0.4% | Mar 18, 2024 | Vulnerability in AMSS++ version 4.31, which does not sufficiently encode user-controlled input, resulting in a Cross-Sit... |
| CVE-2024-2597 | MEDIUM | 6.1 | 0.4% | Mar 18, 2024 | Vulnerability in AMSS++ version 4.31, which does not sufficiently encode user-controlled input, resulting in a Cross-Sit... |
| CVE-2024-2596 | MEDIUM | 6.1 | 0.4% | Mar 18, 2024 | Vulnerability in AMSS++ version 4.31, which does not sufficiently encode user-controlled input, resulting in a Cross-Sit... |
| CVE-2024-2595 | MEDIUM | 6.1 | 0.4% | Mar 18, 2024 | Vulnerability in AMSS++ version 4.31, which does not sufficiently encode user-controlled input, resulting in a Cross-Sit... |
| CVE-2024-2594 | MEDIUM | 6.1 | 0.4% | Mar 18, 2024 | Vulnerability in AMSS++ version 4.31, which does not sufficiently encode user-controlled input, resulting in a Cross-Sit... |
| CVE-2024-2593 | MEDIUM | 6.1 | 0.4% | Mar 18, 2024 | Vulnerability in AMSS++ version 4.31, which does not sufficiently encode user-controlled input, resulting in a Cross-Sit... |
| CVE-2024-28547 | MEDIUM | 6.5 | 0.5% | Mar 18, 2024 | Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the firewallEn parameter of formSetFirewallCfg function. |
| CVE-2024-27774 | MEDIUM | 6.5 | 0.4% | Mar 18, 2024 | Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-259: Use of Hard-coded Password may allow disclosing ... |
| CVE-2024-2496 | MEDIUM | 5.5 | 0.3% | Mar 18, 2024 | A NULL pointer dereference flaw was found in the udevConnectListAllInterfaces() function in libvirt. This issue can occu... |
| CVE-2024-28550 | MEDIUM | 4.3 | 0.4% | Mar 18, 2024 | Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the filePath parameter of formExpandDlnaFile function. |
| CVE-2024-26641 | MEDIUM | 5.5 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: make sure to pull inner header in __ip6... |
| CVE-2024-26640 | MEDIUM | 5.5 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: tcp: add sanity checks to rx zerocopy TCP rx zeroc... |
| CVE-2024-26638 | MEDIUM | 4.4 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: nbd: always initialize struct msghdr completely sy... |
| CVE-2024-26637 | MEDIUM | 5.5 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: rely on mac80211 debugfs handling for... |
| CVE-2024-26636 | MEDIUM | 5.5 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: llc: make llc_ui_sendmsg() more robust against bond... |
| CVE-2024-26635 | MEDIUM | 5.5 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: llc: Drop support for ETH_P_TR_802_2. syzbot repor... |
| CVE-2024-26634 | MEDIUM | 5.5 | 0.2% | Mar 18, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: fix removing a namespace with conflicting altn... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now