2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-37933 | CRITICAL | 9.3 | 0.4% | Jul 12, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in anhvnit Woocommerc... |
| CVE-2024-37932 | HIGH | 8.6 | 0.6% | Jul 12, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in anhvnit Woocommerce Open... |
| CVE-2024-37928 | HIGH | 8.6 | 0.6% | Jul 12, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in NooTheme Jobmonster allo... |
| CVE-2024-37927 | CRITICAL | 9.8 | 0.5% | Jul 12, 2024 | Incorrect Privilege Assignment vulnerability in NooTheme Jobmonster noo-jobmonster allows Privilege Escalation.This issu... |
| CVE-2024-37564 | HIGH | 8.5 | 0.4% | Jul 12, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PayPlus LTD PayPlu... |
| CVE-2024-37560 | HIGH | 8 | 0.4% | Jul 12, 2024 | Improper Privilege Management vulnerability in IqbalRony WP User Switch allows Privilege Escalation.This issue affects W... |
| CVE-2024-37544 | MEDIUM | 4.3 | 0.3% | Jul 12, 2024 | Missing Authorization vulnerability in Saleswonder Team: Tobias Get Better Reviews for WooCommerce more-better-reviews-f... |
| CVE-2024-37213 | HIGH | 7.1 | 0.2% | Jul 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in guru-aliexpress AliNext ali2woo-lite allows Cross Site Request Forger... |
| CVE-2024-37202 | MEDIUM | 6.5 | 0.2% | Jul 12, 2024 | Missing Authorization vulnerability in BinaryCarpenter Ultimate Custom Add To Cart Button (Ajax) For WooCommerce by Bina... |
| CVE-2024-35773 | HIGH | 7.1 | 0.2% | Jul 12, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WPJohnny, zerOneIT Comment Reply Email allows Cross-Site Scripting (X... |
| CVE-2024-6495 | MEDIUM | 5.4 | 0.3% | Jul 12, 2024 | The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Anim... |
| CVE-2024-5325 | MEDIUM | 6.5 | 0.5% | Jul 12, 2024 | The Form Vibes plugin for WordPress is vulnerable to SQL Injection via the ‘fv_export_data’ parameter in all versions up... |
| CVE-2024-41006 | MEDIUM | 5.5 | 0.2% | Jul 12, 2024 | In the Linux kernel, the following vulnerability has been resolved: netrom: Fix a memory leak in nr_heartbeat_expiry() ... |
| CVE-2024-41005 | MEDIUM | 4.7 | 0.2% | Jul 12, 2024 | In the Linux kernel, the following vulnerability has been resolved: netpoll: Fix race condition in netpoll_owner_active... |
| CVE-2024-41004 | MEDIUM | 5.5 | 0.3% | Jul 12, 2024 | In the Linux kernel, the following vulnerability has been resolved: tracing: Build event generation tests only as modul... |
| CVE-2024-41003 | HIGH | 7.8 | 0.3% | Jul 12, 2024 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix reg_set_min_max corruption of fake_reg Ju... |
| CVE-2024-41002 | MEDIUM | 5.5 | 0.3% | Jul 12, 2024 | In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/sec - Fix memory leak for sec res... |
| CVE-2024-41001 | MEDIUM | 5.5 | 0.3% | Jul 12, 2024 | In the Linux kernel, the following vulnerability has been resolved: io_uring/sqpoll: work around a potential audit memo... |
| CVE-2024-41000 | HIGH | 7.8 | 0.3% | Jul 12, 2024 | In the Linux kernel, the following vulnerability has been resolved: block/ioctl: prefer different overflow check Runni... |
| CVE-2024-40999 | MEDIUM | 5.5 | 0.2% | Jul 12, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: ena: Add validation for completion descriptors... |
| CVE-2024-40998 | MEDIUM | 5.5 | 0.3% | Jul 12, 2024 | In the Linux kernel, the following vulnerability has been resolved: ext4: fix uninitialized ratelimit_state->lock acces... |
| CVE-2024-40997 | MEDIUM | 5.5 | 0.3% | Jul 12, 2024 | In the Linux kernel, the following vulnerability has been resolved: cpufreq: amd-pstate: fix memory leak on CPU EPP exi... |
| CVE-2024-40996 | HIGH | 7.8 | 0.3% | Jul 12, 2024 | In the Linux kernel, the following vulnerability has been resolved: bpf: Avoid splat in pskb_pull_reason syzkaller bui... |
| CVE-2024-40995 | MEDIUM | 5.5 | 0.3% | Jul 12, 2024 | In the Linux kernel, the following vulnerability has been resolved: net/sched: act_api: fix possible infinite loop in t... |
| CVE-2024-40994 | HIGH | 7.8 | 0.3% | Jul 12, 2024 | In the Linux kernel, the following vulnerability has been resolved: ptp: fix integer overflow in max_vclocks_store On ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now