2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-47408MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net/smc: check smcd_v2_ext_offset when receiving pr...
CVE-2024-47143MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: dma-debug: fix a possible deadlock on radix_lock r...
CVE-2024-47141MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: pinmux: Use sequential access to access desc->pinmu...
CVE-2024-46896MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: don't access invalid sched Since 2320c...
CVE-2024-45828MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Mask ring interrupts before ring...
CVE-2024-43098MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: i3c: Use i3cdev->desc->info instead of calling i3c_...
CVE-2024-41932MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: sched: fix warning in sched_setaffinity Commit 8f9...
CVE-2024-12527MEDIUM6.4The Perfect Portal Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'perfect_p...
CVE-2024-12520MEDIUM6.4The Dominion – Domain Checker for WPBakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plu...
CVE-2024-12519MEDIUM6.4The TCBD Auto Refresher plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'tcbd_auto_re...
CVE-2024-12412MEDIUM6.1The Rental and Booking Manager for Bike, Car, Dress, Resort with WooCommerce Integration – WpRently | WordPress plugin p...
CVE-2024-12407MEDIUM6.1The Push Notification for Post and BuddyPress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via t...
CVE-2024-12116MEDIUM4.3The Unlimited Theme Addon For Elementor and WooCommerce plugin for WordPress is vulnerable to Information Exposure in al...
CVE-2024-11915MEDIUM4.3The RRAddons for Elementor plugin for WordPress is vulnerable to Information Exposure in all versions up to, and includi...
CVE-2024-11892MEDIUM6.4The Accordion Slider Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'accordion_...
CVE-2024-11874MEDIUM6.4The Grid Accordion Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'grid_accordi...
CVE-2024-11758MEDIUM6.4The WP SPID Italia plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode in all v...
CVE-2024-11386MEDIUM6.4The GatorMail SmartForms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'gatormailsm...
CVE-2024-42173MEDIUM4.8HCL MyXalytics is affected by an improper password policy implementation vulnerability. Weak passwords and lack of acco...
CVE-2024-42171MEDIUM6.4HCL MyXalytics is affected by a session fixation vulnerability. Cyber-criminals can exploit this by sending crafted URL...
CVE-2024-42170MEDIUM6.8HCL MyXalytics is affected by a session fixation vulnerability. Cyber-criminals can exploit this by sending crafted URL...
CVE-2024-12587MEDIUM6.1The Contact Form Master WordPress plugin through 1.0.7 does not sanitise and escape a parameter before outputting it ba...
CVE-2024-12304MEDIUM5.4The Gutenberg Blocks with AI by Kadence WP – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Si...
CVE-2024-12505MEDIUM6.4The Trackserver plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'tsmap' shortcode in ...
CVE-2024-12472MEDIUM4.3The Post Duplicator plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.3...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now