2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-8742MEDIUM5.4The Essential Addons for Elementor – Best Elementor Addon, Templates, Widgets, Kits & WooCommerce Builders plugin for Wo...
CVE-2024-8665MEDIUM6.1The YITH Custom Login plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_a...
CVE-2024-8664MEDIUM6.1The WP Test Email plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg w...
CVE-2024-8663MEDIUM6.1The WP Simple Booking Calendar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of ad...
CVE-2024-7888MEDIUM4.3The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to unauthorized a...
CVE-2024-5567MEDIUM5.4The Betheme theme for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to,...
CVE-2024-46712MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Disable coherent dumb buffers without 3...
CVE-2024-46711MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: mptcp: pm: fix ID 0 endp usage after multiple re-cr...
CVE-2024-46710MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Prevent unmapping active read buffers ...
CVE-2024-46709MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Fix prime with external buffers Make s...
CVE-2024-46708MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: pinctrl: qcom: x1e80100: Fix special pin offsets R...
CVE-2024-46707MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Make ICC_*SGI*_EL1 undef in the absence...
CVE-2024-46706MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: tty: serial: fsl_lpuart: mark last busy before uart...
CVE-2024-46705MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/xe: reset mmio mappings with devm Set our vari...
CVE-2024-46704MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: workqueue: Fix spruious data race in __flush_work()...
CVE-2024-46703MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Revert "serial: 8250_omap: Set the console genpd al...
CVE-2024-46702MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: thunderbolt: Mark XDomain as unplugged when router ...
CVE-2024-46701MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: libfs: fix infinite directory reads for offset dir ...
CVE-2024-41873MEDIUM5.5Media Encoder versions 24.5, 23.6.8 and earlier are affected by an out-of-bounds read vulnerability that could lead to d...
CVE-2024-41872MEDIUM5.5Media Encoder versions 24.5, 23.6.8 and earlier are affected by an out-of-bounds read vulnerability that could lead to d...
CVE-2024-41871MEDIUM5.5Media Encoder versions 24.5, 23.6.8 and earlier are affected by an out-of-bounds read vulnerability that could lead to d...
CVE-2024-41870MEDIUM5.5Media Encoder versions 24.5, 23.6.8 and earlier are affected by an out-of-bounds read vulnerability that could lead to d...
CVE-2024-39377HIGH7.8Media Encoder versions 24.5, 23.6.8 and earlier are affected by an out-of-bounds write vulnerability that could result i...
CVE-2024-7864MEDIUM6.5The Favicon Generator (CLOSED) WordPress plugin before 2.1 does not have CSRF and path validation in the output_sub_admi...
CVE-2024-7863MEDIUM6.8The Favicon Generator (CLOSED) WordPress plugin before 2.1 does not validate files to be uploaded and does not have CSRF...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now