2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-7190CRITICAL9.8A vulnerability classified as critical was found in itsourcecode Society Management System 1.0. Affected by this vulnera...
CVE-2024-7189CRITICAL9.8A vulnerability classified as critical has been found in itsourcecode Online Food Ordering System 1.0. Affected is an un...
CVE-2024-7188CRITICAL9.8A vulnerability was found in Bylancer Quicklancer 2.4. It has been rated as critical. This issue affects some unknown pr...
CVE-2024-7187HIGH8.8A vulnerability was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102. It has been declared as critical. This vulnerabilit...
CVE-2024-41091HIGH7.1In the Linux kernel, the following vulnerability has been resolved: tun: add missing verification for short frame The ...
CVE-2024-41090HIGH7.1In the Linux kernel, the following vulnerability has been resolved: tap: add missing verification for short frame The ...
CVE-2024-41019MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Validate ff offset This adds sanity chec...
CVE-2024-41018MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Add a check for attr_names and oatbl Add...
CVE-2024-41017MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: jfs: don't walk off the end of ealist Add a check ...
CVE-2024-41016MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ocfs2: strict bound check before memcmp in ocfs2_xa...
CVE-2024-41015MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ocfs2: add bounds checking to ocfs2_check_dir_entry...
CVE-2024-41014HIGH7.1In the Linux kernel, the following vulnerability has been resolved: xfs: add bounds checking to xlog_recover_process_da...
CVE-2024-41013HIGH7.1In the Linux kernel, the following vulnerability has been resolved: xfs: don't walk off the end of a directory data blo...
CVE-2024-7186HIGH8.8A vulnerability was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102. It has been classified as critical. This affects th...
CVE-2024-7185HIGH8.8A vulnerability was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102 and classified as critical. Affected by this issue i...
CVE-2024-6487MEDIUM5.9The Inline Related Posts WordPress plugin before 3.8.0 does not sanitise and escape some of its settings, which could al...
CVE-2024-6366CRITICAL9.1The User Profile Builder WordPress plugin before 3.11.8 does not have proper authorisation, allowing unauthenticated us...
CVE-2024-6362MEDIUM4.6The Ultimate Blocks WordPress plugin before 3.2.0 does not validate and escape some of its post-grid block attributes b...
CVE-2024-5883MEDIUM4.7The Ultimate Classified Listings WordPress plugin before 1.3 does not sanitise and escape a parameter before outputting ...
CVE-2024-5882HIGH7.5The Ultimate Classified Listings WordPress plugin before 1.3 does not validate the `ucl_page` and `layout` parameters al...
CVE-2024-5285MEDIUM5.5The wp-affiliate-platform WordPress plugin before 6.5.2 does not have CSRF check in place when deleting affiliates, whic...
CVE-2024-4483MEDIUM5.4The Email Encoder WordPress plugin before 2.2.2 does not escape the WP_Email_Encoder_Bundle_options[protection_text] pa...
CVE-2024-41637HIGH8.3RaspAP before 3.1.5 allows an attacker to escalate privileges: the www-data user has write access to the restapi.service...
CVE-2024-37381HIGH8An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2024 flat allows an authenticated attacker withi...
CVE-2024-7184HIGH8.8A vulnerability has been found in TOTOLINK A3600R 4.1.2cu.5182_B20201102 and classified as critical. Affected by this vu...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now