2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-27104MEDIUM4.8GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an...
CVE-2024-27096MEDIUM6.5GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an...
CVE-2024-27937MEDIUM4.3GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an...
CVE-2024-27930MEDIUM6.5GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an...
CVE-2024-20757MEDIUM5.5Bridge versions 13.0.5, 14.0.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclo...
CVE-2024-1658MEDIUM5.4The Grid Shortcodes WordPress plugin before 1.1.1 does not validate and escape some of its shortcode attributes before o...
CVE-2024-1333MEDIUM5.4The Responsive Pricing Table WordPress plugin before 5.1.11 does not validate and escape some of its Pricing Table optio...
CVE-2024-1331MEDIUM6.1The Team Members WordPress plugin before 5.3.2 does not validate and escape some of its shortcode attributes before outp...
CVE-2024-2598MEDIUM6.1Vulnerability in AMSS++ version 4.31, which does not sufficiently encode user-controlled input, resulting in a Cross-Sit...
CVE-2024-2597MEDIUM6.1Vulnerability in AMSS++ version 4.31, which does not sufficiently encode user-controlled input, resulting in a Cross-Sit...
CVE-2024-2596MEDIUM6.1Vulnerability in AMSS++ version 4.31, which does not sufficiently encode user-controlled input, resulting in a Cross-Sit...
CVE-2024-2595MEDIUM6.1Vulnerability in AMSS++ version 4.31, which does not sufficiently encode user-controlled input, resulting in a Cross-Sit...
CVE-2024-2594MEDIUM6.1Vulnerability in AMSS++ version 4.31, which does not sufficiently encode user-controlled input, resulting in a Cross-Sit...
CVE-2024-2593MEDIUM6.1Vulnerability in AMSS++ version 4.31, which does not sufficiently encode user-controlled input, resulting in a Cross-Sit...
CVE-2024-28547MEDIUM6.5Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the firewallEn parameter of formSetFirewallCfg function.
CVE-2024-27774MEDIUM6.5 Unitronics Unistream Unilogic – Versions prior to 1.35.227 - CWE-259: Use of Hard-coded Password may allow disclosing ...
CVE-2024-2496MEDIUM5.5A NULL pointer dereference flaw was found in the udevConnectListAllInterfaces() function in libvirt. This issue can occu...
CVE-2024-28550MEDIUM4.3Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the filePath parameter of formExpandDlnaFile function.
CVE-2024-26641MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ip6_tunnel: make sure to pull inner header in __ip6...
CVE-2024-26640MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: tcp: add sanity checks to rx zerocopy TCP rx zeroc...
CVE-2024-26638MEDIUM4.4In the Linux kernel, the following vulnerability has been resolved: nbd: always initialize struct msghdr completely sy...
CVE-2024-26637MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: rely on mac80211 debugfs handling for...
CVE-2024-26636MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: llc: make llc_ui_sendmsg() more robust against bond...
CVE-2024-26635MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: llc: Drop support for ETH_P_TR_802_2. syzbot repor...
CVE-2024-26634MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: fix removing a namespace with conflicting altn...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now