2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-42109MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: unconditionally flush pending...
CVE-2024-42108MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: rswitch: Avoid use-after-free in rswitch_poll(...
CVE-2024-42107MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: ice: Don't process extts if PTP is disabled The ic...
CVE-2024-42106MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: inet_diag: Initialize pad field in struct inet_diag...
CVE-2024-42105HIGH7.8In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix inode number range checks Patch series...
CVE-2024-42104HIGH7.8In the Linux kernel, the following vulnerability has been resolved: nilfs2: add missing check for inode numbers on dire...
CVE-2024-42103MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: btrfs: fix adding block group to a reclaim list and...
CVE-2024-42102MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: Revert "mm/writeback: fix possible divide-by-zero i...
CVE-2024-42101MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: fix null pointer dereference in nouvea...
CVE-2024-42100MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: clk: sunxi-ng: common: Don't call hw_to_ccu_common ...
CVE-2024-42099MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: s390/dasd: Fix invalid dereferencing of indirect CC...
CVE-2024-7222CRITICAL9.8A vulnerability, which was classified as critical, was found in SourceCodester Lot Reservation Management System 1.0. Af...
CVE-2024-7221CRITICAL9.8A vulnerability was determined in SourceCodester/Campcodes School Log Management System 1.0. This affects an unknown par...
CVE-2024-7100MEDIUM5.4The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's bt_bb_button sh...
CVE-2024-40094MEDIUM5.3GraphQL Java (aka graphql-java) before 21.5 does not properly consider ExecutableNormalizedFields (ENFs) as part of prev...
CVE-2024-7220CRITICAL9.8A vulnerability was found in SourceCodester/Campcodes School Log Management System 1.0. Affected by this issue is some u...
CVE-2024-7219CRITICAL9.8A vulnerability has been found in SourceCodester/Campcodes School Log Management System 1.0. Affected by this vulnerabil...
CVE-2024-6536MEDIUM5.4The Zephyr Project Manager WordPress plugin before 3.3.99 does not sanitise and escape some of its settings, which could...
CVE-2024-6230MEDIUM6.5The پلاگین پرداخت دلخواه WordPress plugin through 2.9.8 does not have CSRF check in place when resetting its form fields...
CVE-2024-6226MEDIUM6.1The WpStickyBar WordPress plugin through 2.1.0 does not sanitise and escape a parameter before outputting it back in th...
CVE-2024-6224MEDIUM5.9The Send email only on Reply to My Comment WordPress plugin through 1.0.6 does not have CSRF check in some places, and i...
CVE-2024-6223MEDIUM6.1The Send email only on Reply to My Comment WordPress plugin through 1.0.6 does not sanitise and escape a parameter befor...
CVE-2024-6021MEDIUM6.8The Donation Block For PayPal WordPress plugin through 2.1.0 does not sanitise and escape form submissions, leading to a...
CVE-2024-5975CRITICAL9.1The CZ Loan Management WordPress plugin through 1.1 does not properly sanitise and escape a parameter before using it in...
CVE-2024-5809MEDIUM6.1The WP Ajax Contact Form WordPress plugin through 2.2.2 does not sanitise and escape a parameter before outputting it ba...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now