2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-42109 | MEDIUM | 5.5 | 0.2% | Jul 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: unconditionally flush pending... |
| CVE-2024-42108 | MEDIUM | 5.5 | 0.2% | Jul 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: rswitch: Avoid use-after-free in rswitch_poll(... |
| CVE-2024-42107 | MEDIUM | 4.7 | 0.2% | Jul 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: ice: Don't process extts if PTP is disabled The ic... |
| CVE-2024-42106 | MEDIUM | 5.5 | 0.3% | Jul 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: inet_diag: Initialize pad field in struct inet_diag... |
| CVE-2024-42105 | HIGH | 7.8 | 0.3% | Jul 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix inode number range checks Patch series... |
| CVE-2024-42104 | HIGH | 7.8 | 0.3% | Jul 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: nilfs2: add missing check for inode numbers on dire... |
| CVE-2024-42103 | MEDIUM | 5.5 | 0.2% | Jul 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix adding block group to a reclaim list and... |
| CVE-2024-42102 | MEDIUM | 4.7 | 0.3% | Jul 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: Revert "mm/writeback: fix possible divide-by-zero i... |
| CVE-2024-42101 | MEDIUM | 5.5 | 0.3% | Jul 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: fix null pointer dereference in nouvea... |
| CVE-2024-42100 | MEDIUM | 5.5 | 0.2% | Jul 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: clk: sunxi-ng: common: Don't call hw_to_ccu_common ... |
| CVE-2024-42099 | MEDIUM | 5.5 | 0.2% | Jul 30, 2024 | In the Linux kernel, the following vulnerability has been resolved: s390/dasd: Fix invalid dereferencing of indirect CC... |
| CVE-2024-7222 | CRITICAL | 9.8 | 0.6% | Jul 30, 2024 | A vulnerability, which was classified as critical, was found in SourceCodester Lot Reservation Management System 1.0. Af... |
| CVE-2024-7221 | CRITICAL | 9.8 | 0.6% | Jul 30, 2024 | A vulnerability was determined in SourceCodester/Campcodes School Log Management System 1.0. This affects an unknown par... |
| CVE-2024-7100 | MEDIUM | 5.4 | 0.4% | Jul 30, 2024 | The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's bt_bb_button sh... |
| CVE-2024-40094 | MEDIUM | 5.3 | 0.9% | Jul 30, 2024 | GraphQL Java (aka graphql-java) before 21.5 does not properly consider ExecutableNormalizedFields (ENFs) as part of prev... |
| CVE-2024-7220 | CRITICAL | 9.8 | 0.6% | Jul 30, 2024 | A vulnerability was found in SourceCodester/Campcodes School Log Management System 1.0. Affected by this issue is some u... |
| CVE-2024-7219 | CRITICAL | 9.8 | 0.8% | Jul 30, 2024 | A vulnerability has been found in SourceCodester/Campcodes School Log Management System 1.0. Affected by this vulnerabil... |
| CVE-2024-6536 | MEDIUM | 5.4 | 0.7% | Jul 30, 2024 | The Zephyr Project Manager WordPress plugin before 3.3.99 does not sanitise and escape some of its settings, which could... |
| CVE-2024-6230 | MEDIUM | 6.5 | 0.2% | Jul 30, 2024 | The پلاگین پرداخت دلخواه WordPress plugin through 2.9.8 does not have CSRF check in place when resetting its form fields... |
| CVE-2024-6226 | MEDIUM | 6.1 | 0.3% | Jul 30, 2024 | The WpStickyBar WordPress plugin through 2.1.0 does not sanitise and escape a parameter before outputting it back in th... |
| CVE-2024-6224 | MEDIUM | 5.9 | 0.2% | Jul 30, 2024 | The Send email only on Reply to My Comment WordPress plugin through 1.0.6 does not have CSRF check in some places, and i... |
| CVE-2024-6223 | MEDIUM | 6.1 | 0.4% | Jul 30, 2024 | The Send email only on Reply to My Comment WordPress plugin through 1.0.6 does not sanitise and escape a parameter befor... |
| CVE-2024-6021 | MEDIUM | 6.8 | 0.4% | Jul 30, 2024 | The Donation Block For PayPal WordPress plugin through 2.1.0 does not sanitise and escape form submissions, leading to a... |
| CVE-2024-5975 | CRITICAL | 9.1 | 2.0% | Jul 30, 2024 | The CZ Loan Management WordPress plugin through 1.1 does not properly sanitise and escape a parameter before using it in... |
| CVE-2024-5809 | MEDIUM | 6.1 | 0.3% | Jul 30, 2024 | The WP Ajax Contact Form WordPress plugin through 2.2.2 does not sanitise and escape a parameter before outputting it ba... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now