2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-47408 | MEDIUM | 5.5 | 0.2% | Jan 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: net/smc: check smcd_v2_ext_offset when receiving pr... |
| CVE-2024-47143 | MEDIUM | 5.5 | 0.2% | Jan 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: dma-debug: fix a possible deadlock on radix_lock r... |
| CVE-2024-47141 | MEDIUM | 5.5 | 0.2% | Jan 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: pinmux: Use sequential access to access desc->pinmu... |
| CVE-2024-46896 | MEDIUM | 5.5 | 0.2% | Jan 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: don't access invalid sched Since 2320c... |
| CVE-2024-45828 | MEDIUM | 5.5 | 0.3% | Jan 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Mask ring interrupts before ring... |
| CVE-2024-43098 | MEDIUM | 5.5 | 0.2% | Jan 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: i3c: Use i3cdev->desc->info instead of calling i3c_... |
| CVE-2024-41932 | MEDIUM | 5.5 | 0.2% | Jan 11, 2025 | In the Linux kernel, the following vulnerability has been resolved: sched: fix warning in sched_setaffinity Commit 8f9... |
| CVE-2024-12527 | MEDIUM | 6.4 | 0.3% | Jan 11, 2025 | The Perfect Portal Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'perfect_p... |
| CVE-2024-12520 | MEDIUM | 6.4 | 0.3% | Jan 11, 2025 | The Dominion – Domain Checker for WPBakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plu... |
| CVE-2024-12519 | MEDIUM | 6.4 | 0.3% | Jan 11, 2025 | The TCBD Auto Refresher plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'tcbd_auto_re... |
| CVE-2024-12412 | MEDIUM | 6.1 | 0.3% | Jan 11, 2025 | The Rental and Booking Manager for Bike, Car, Dress, Resort with WooCommerce Integration – WpRently | WordPress plugin p... |
| CVE-2024-12407 | MEDIUM | 6.1 | 0.3% | Jan 11, 2025 | The Push Notification for Post and BuddyPress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via t... |
| CVE-2024-12116 | MEDIUM | 4.3 | 0.4% | Jan 11, 2025 | The Unlimited Theme Addon For Elementor and WooCommerce plugin for WordPress is vulnerable to Information Exposure in al... |
| CVE-2024-11915 | MEDIUM | 4.3 | 0.3% | Jan 11, 2025 | The RRAddons for Elementor plugin for WordPress is vulnerable to Information Exposure in all versions up to, and includi... |
| CVE-2024-11892 | MEDIUM | 6.4 | 0.3% | Jan 11, 2025 | The Accordion Slider Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'accordion_... |
| CVE-2024-11874 | MEDIUM | 6.4 | 0.3% | Jan 11, 2025 | The Grid Accordion Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'grid_accordi... |
| CVE-2024-11758 | MEDIUM | 6.4 | 0.3% | Jan 11, 2025 | The WP SPID Italia plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode in all v... |
| CVE-2024-11386 | MEDIUM | 6.4 | 0.3% | Jan 11, 2025 | The GatorMail SmartForms plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'gatormailsm... |
| CVE-2024-42173 | MEDIUM | 4.8 | 0.2% | Jan 11, 2025 | HCL MyXalytics is affected by an improper password policy implementation vulnerability. Weak passwords and lack of acco... |
| CVE-2024-42171 | MEDIUM | 6.4 | 0.2% | Jan 11, 2025 | HCL MyXalytics is affected by a session fixation vulnerability. Cyber-criminals can exploit this by sending crafted URL... |
| CVE-2024-42170 | MEDIUM | 6.8 | 0.3% | Jan 11, 2025 | HCL MyXalytics is affected by a session fixation vulnerability. Cyber-criminals can exploit this by sending crafted URL... |
| CVE-2024-12587 | MEDIUM | 6.1 | 0.3% | Jan 11, 2025 | The Contact Form Master WordPress plugin through 1.0.7 does not sanitise and escape a parameter before outputting it ba... |
| CVE-2024-12304 | MEDIUM | 5.4 | 0.2% | Jan 11, 2025 | The Gutenberg Blocks with AI by Kadence WP – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Si... |
| CVE-2024-12505 | MEDIUM | 6.4 | 0.3% | Jan 11, 2025 | The Trackserver plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'tsmap' shortcode in ... |
| CVE-2024-12472 | MEDIUM | 4.3 | 0.3% | Jan 11, 2025 | The Post Duplicator plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.3... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now