2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-6264MEDIUM5.4The Post Meta Data Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘$meta_key’ paramet...
CVE-2024-6099MEDIUM5.3The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to unauthenticated bypass to user registration ...
CVE-2024-6088MEDIUM5.3The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to unauthorized user registration due to a miss...
CVE-2024-4268MEDIUM5.4The Ultimate Blocks – WordPress Blocks Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
CVE-2024-6012MEDIUM4.3The Cost Calculator Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing cap...
CVE-2024-6011MEDIUM4.8The Cost Calculator Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘textarea.descript...
CVE-2024-34601MEDIUM5.3Improper verification of intent by broadcast receiver vulnerability in GalaxyStore prior to version 4.5.81.0 allows loca...
CVE-2024-34600LOW3.3Improper verification of intent by broadcast receiver vulnerability in Samsung Flow prior to version 4.9.13.0 allows loc...
CVE-2024-34599LOW3.3Improper input validation in Tips prior to version 6.2.9.4 in Android 14 allows local attacker to send broadcast with Ti...
CVE-2024-34597LOW3.3Improper input validation in Samsung Health prior to version 6.27.0.113 allows local attackers to write arbitrary docume...
CVE-2024-34596HIGH7.5Improper authentication in SmartThings prior to version 1.8.17 allows remote attackers to bypass the expiration date for...
CVE-2024-34595HIGH7.8Improper access control in clickAdapterItem of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch...
CVE-2024-34594MEDIUM5.5Exposure of sensitive information in proc file system prior to SMR Jul-2024 Release 1 allows local attackers to read ker...
CVE-2024-34593HIGH8.8Improper input validation in parsing and distributing RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows re...
CVE-2024-34592MEDIUM4.3Improper input validation in parsing RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attacke...
CVE-2024-34591MEDIUM4.3Improper input validation in parsing an item data from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 all...
CVE-2024-34590MEDIUM4.3Improper input validation혻in parsing an item type from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 all...
CVE-2024-34589MEDIUM6.5Improper input validation in parsing RTCP RR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers...
CVE-2024-34588MEDIUM6.5Improper input validation혻in parsing RTCP SR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers...
CVE-2024-34587MEDIUM6.8Improper input validation in parsing application information from RTCP packet in librtp.so prior to SMR Jul-2024 Release...
CVE-2024-34586LOW3.3Improper access control in KnoxCustomManagerService prior to SMR Jul-2024 Release 1 allows local attackers to configure ...
CVE-2024-34585HIGH7.8Improper access control in launchApp of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privil...
CVE-2024-34584Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. Reason: An additional patch is required.
CVE-2024-34583LOW3.3Improper access control in system property prior to SMR Jul-2024 Release 1 allows local attackers to get device identifi...
CVE-2024-20901HIGH7.8Improper input validation in copying data to buffer cache in libsaped prior to SMR Jul-2024 Release 1 allows local attac...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now