2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-7190 | CRITICAL | 9.8 | 0.5% | Jul 29, 2024 | A vulnerability classified as critical was found in itsourcecode Society Management System 1.0. Affected by this vulnera... |
| CVE-2024-7189 | CRITICAL | 9.8 | 0.6% | Jul 29, 2024 | A vulnerability classified as critical has been found in itsourcecode Online Food Ordering System 1.0. Affected is an un... |
| CVE-2024-7188 | CRITICAL | 9.8 | 7.0% | Jul 29, 2024 | A vulnerability was found in Bylancer Quicklancer 2.4. It has been rated as critical. This issue affects some unknown pr... |
| CVE-2024-7187 | HIGH | 8.8 | 1.2% | Jul 29, 2024 | A vulnerability was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102. It has been declared as critical. This vulnerabilit... |
| CVE-2024-41091 | HIGH | 7.1 | 0.3% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: tun: add missing verification for short frame The ... |
| CVE-2024-41090 | HIGH | 7.1 | 0.3% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: tap: add missing verification for short frame The ... |
| CVE-2024-41019 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Validate ff offset This adds sanity chec... |
| CVE-2024-41018 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Add a check for attr_names and oatbl Add... |
| CVE-2024-41017 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: jfs: don't walk off the end of ealist Add a check ... |
| CVE-2024-41016 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: strict bound check before memcmp in ocfs2_xa... |
| CVE-2024-41015 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: add bounds checking to ocfs2_check_dir_entry... |
| CVE-2024-41014 | HIGH | 7.1 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: xfs: add bounds checking to xlog_recover_process_da... |
| CVE-2024-41013 | HIGH | 7.1 | 0.2% | Jul 29, 2024 | In the Linux kernel, the following vulnerability has been resolved: xfs: don't walk off the end of a directory data blo... |
| CVE-2024-7186 | HIGH | 8.8 | 1.1% | Jul 29, 2024 | A vulnerability was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102. It has been classified as critical. This affects th... |
| CVE-2024-7185 | HIGH | 8.8 | 1.1% | Jul 29, 2024 | A vulnerability was found in TOTOLINK A3600R 4.1.2cu.5182_B20201102 and classified as critical. Affected by this issue i... |
| CVE-2024-6487 | MEDIUM | 5.9 | 0.4% | Jul 29, 2024 | The Inline Related Posts WordPress plugin before 3.8.0 does not sanitise and escape some of its settings, which could al... |
| CVE-2024-6366 | CRITICAL | 9.1 | 29.0% | Jul 29, 2024 | The User Profile Builder WordPress plugin before 3.11.8 does not have proper authorisation, allowing unauthenticated us... |
| CVE-2024-6362 | MEDIUM | 4.6 | 0.3% | Jul 29, 2024 | The Ultimate Blocks WordPress plugin before 3.2.0 does not validate and escape some of its post-grid block attributes b... |
| CVE-2024-5883 | MEDIUM | 4.7 | 0.4% | Jul 29, 2024 | The Ultimate Classified Listings WordPress plugin before 1.3 does not sanitise and escape a parameter before outputting ... |
| CVE-2024-5882 | HIGH | 7.5 | 0.8% | Jul 29, 2024 | The Ultimate Classified Listings WordPress plugin before 1.3 does not validate the `ucl_page` and `layout` parameters al... |
| CVE-2024-5285 | MEDIUM | 5.5 | 0.2% | Jul 29, 2024 | The wp-affiliate-platform WordPress plugin before 6.5.2 does not have CSRF check in place when deleting affiliates, whic... |
| CVE-2024-4483 | MEDIUM | 5.4 | 0.4% | Jul 29, 2024 | The Email Encoder WordPress plugin before 2.2.2 does not escape the WP_Email_Encoder_Bundle_options[protection_text] pa... |
| CVE-2024-41637 | HIGH | 8.3 | 0.8% | Jul 29, 2024 | RaspAP before 3.1.5 allows an attacker to escalate privileges: the www-data user has write access to the restapi.service... |
| CVE-2024-37381 | HIGH | 8 | 3.1% | Jul 29, 2024 | An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2024 flat allows an authenticated attacker withi... |
| CVE-2024-7184 | HIGH | 8.8 | 1.1% | Jul 29, 2024 | A vulnerability has been found in TOTOLINK A3600R 4.1.2cu.5182_B20201102 and classified as critical. Affected by this vu... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now