2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-57924MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: fs: relax assertions on failure to encode file hand...
CVE-2024-57923MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: btrfs: zlib: fix avail_in bytes for s390 zlib HW co...
CVE-2024-57922MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Add check for granularity in dml c...
CVE-2024-57921MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Add a lock when accessing the buddy tri...
CVE-2024-57919MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fix divide error in DM plane scale...
CVE-2024-57918MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fix page fault due to max surface ...
CVE-2024-57916MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: misc: microchip: pci1xxxx: Resolve kernel panic dur...
CVE-2024-57914MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpci: fix NULL pointer issue on shared...
CVE-2024-57913MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Remove WARN_ON in functionfs_bin...
CVE-2024-8722MEDIUM5.5The Import any XML or CSV File to WordPress PRO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SV...
CVE-2024-45654MEDIUM4.3IBM Security ReaQta 3.12 could allow an authenticated user to perform unauthorized actions due to reliance on untrusted ...
CVE-2024-45653MEDIUM4.3IBM Sterling Connect:Direct Web Services 6.0, 6.1, 6.2, and 6.3 could disclose sensitive IP address information to authe...
CVE-2024-49824MEDIUM6.5IBM Robotic Process Automation 21.0.0 through 21.0.7.18 and 23.0.0 through 23.0.18 and IBM Robotic Process Automation ...
CVE-2024-51448MEDIUM6.7IBM Robotic Process Automation 21.0.0 through 21.0.7.17 and 23.0.0 through 23.0.18 could allow a local user to escalate ...
CVE-2024-49338MEDIUM4.9IBM App Connect Enterprise 12.0.1.0 through 12.0.7.0and 13.0.1.0 under certain configurations could allow a privileged u...
CVE-2024-13392MEDIUM6.4The Rate Star Review Vote – AJAX Reviews, Votes, Star Ratings plugin for WordPress is vulnerable to Stored Cross-Site Sc...
CVE-2024-13519MEDIUM4.4The MarketKing — Ultimate WooCommerce Multivendor Marketplace Solution plugin for WordPress is vulnerable to Stored Cros...
CVE-2024-13517MEDIUM4The Easy Digital Downloads – eCommerce Payments and Subscriptions made easy plugin for WordPress is vulnerable to Stored...
CVE-2024-13433MEDIUM6.4The Utilities for MTG plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'mtglink' short...
CVE-2024-13432MEDIUM6.1The Webcamconsult plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including,...
CVE-2024-13393MEDIUM6.4The Video Share VOD – Turnkey Video Site Builder Script plugin for WordPress is vulnerable to Stored Cross-Site Scriptin...
CVE-2024-13391MEDIUM6.4The MicroPayments – Fans Paysite: Paid Creator Subscriptions, Digital Assets, Tokens Wallet plugin for WordPress is vuln...
CVE-2024-13385MEDIUM6.4The JSM Screenshot Machine Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ...
CVE-2024-13317MEDIUM4.3The ShipWorks Connector for Woocommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions...
CVE-2024-12696MEDIUM6.4The Picture Gallery – Frontend Image Uploads, AJAX Photo List plugin for WordPress is vulnerable to Stored Cross-Site Sc...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now