2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-6264 | MEDIUM | 5.4 | 0.3% | Jul 2, 2024 | The Post Meta Data Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘$meta_key’ paramet... |
| CVE-2024-6099 | MEDIUM | 5.3 | 0.4% | Jul 2, 2024 | The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to unauthenticated bypass to user registration ... |
| CVE-2024-6088 | MEDIUM | 5.3 | 0.6% | Jul 2, 2024 | The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to unauthorized user registration due to a miss... |
| CVE-2024-4268 | MEDIUM | 5.4 | 0.5% | Jul 2, 2024 | The Ultimate Blocks – WordPress Blocks Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ... |
| CVE-2024-6012 | MEDIUM | 4.3 | 0.4% | Jul 2, 2024 | The Cost Calculator Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing cap... |
| CVE-2024-6011 | MEDIUM | 4.8 | 0.4% | Jul 2, 2024 | The Cost Calculator Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘textarea.descript... |
| CVE-2024-34601 | MEDIUM | 5.3 | 0.1% | Jul 2, 2024 | Improper verification of intent by broadcast receiver vulnerability in GalaxyStore prior to version 4.5.81.0 allows loca... |
| CVE-2024-34600 | LOW | 3.3 | 0.1% | Jul 2, 2024 | Improper verification of intent by broadcast receiver vulnerability in Samsung Flow prior to version 4.9.13.0 allows loc... |
| CVE-2024-34599 | LOW | 3.3 | 0.1% | Jul 2, 2024 | Improper input validation in Tips prior to version 6.2.9.4 in Android 14 allows local attacker to send broadcast with Ti... |
| CVE-2024-34597 | LOW | 3.3 | 0.2% | Jul 2, 2024 | Improper input validation in Samsung Health prior to version 6.27.0.113 allows local attackers to write arbitrary docume... |
| CVE-2024-34596 | HIGH | 7.5 | 0.5% | Jul 2, 2024 | Improper authentication in SmartThings prior to version 1.8.17 allows remote attackers to bypass the expiration date for... |
| CVE-2024-34595 | HIGH | 7.8 | 0.2% | Jul 2, 2024 | Improper access control in clickAdapterItem of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch... |
| CVE-2024-34594 | MEDIUM | 5.5 | 0.2% | Jul 2, 2024 | Exposure of sensitive information in proc file system prior to SMR Jul-2024 Release 1 allows local attackers to read ker... |
| CVE-2024-34593 | HIGH | 8.8 | 0.6% | Jul 2, 2024 | Improper input validation in parsing and distributing RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows re... |
| CVE-2024-34592 | MEDIUM | 4.3 | 0.4% | Jul 2, 2024 | Improper input validation in parsing RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attacke... |
| CVE-2024-34591 | MEDIUM | 4.3 | 0.4% | Jul 2, 2024 | Improper input validation in parsing an item data from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 all... |
| CVE-2024-34590 | MEDIUM | 4.3 | 0.4% | Jul 2, 2024 | Improper input validation혻in parsing an item type from RTCP SDES packet in librtp.so prior to SMR Jul-2024 Release 1 all... |
| CVE-2024-34589 | MEDIUM | 6.5 | 0.4% | Jul 2, 2024 | Improper input validation in parsing RTCP RR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers... |
| CVE-2024-34588 | MEDIUM | 6.5 | 0.4% | Jul 2, 2024 | Improper input validation혻in parsing RTCP SR packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers... |
| CVE-2024-34587 | MEDIUM | 6.8 | 0.5% | Jul 2, 2024 | Improper input validation in parsing application information from RTCP packet in librtp.so prior to SMR Jul-2024 Release... |
| CVE-2024-34586 | LOW | 3.3 | 0.1% | Jul 2, 2024 | Improper access control in KnoxCustomManagerService prior to SMR Jul-2024 Release 1 allows local attackers to configure ... |
| CVE-2024-34585 | HIGH | 7.8 | 0.1% | Jul 2, 2024 | Improper access control in launchApp of SystemUI prior to SMR Jul-2024 Release 1 allows local attackers to launch privil... |
| CVE-2024-34584 | — | — | — | Jul 2, 2024 | Rejected reason: ** REJECT ** DO NOT USE THIS CVE RECORD. Reason: An additional patch is required. |
| CVE-2024-34583 | LOW | 3.3 | 0.1% | Jul 2, 2024 | Improper access control in system property prior to SMR Jul-2024 Release 1 allows local attackers to get device identifi... |
| CVE-2024-20901 | HIGH | 7.8 | 0.2% | Jul 2, 2024 | Improper input validation in copying data to buffer cache in libsaped prior to SMR Jul-2024 Release 1 allows local attac... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now