2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-56768 | MEDIUM | 5.5 | 0.2% | Jan 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix bpf_get_smp_processor_id() on !CONFIG_SMP ... |
| CVE-2024-56767 | MEDIUM | 5.5 | 0.2% | Jan 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: at_xdmac: avoid null_prt_deref in at_xdm... |
| CVE-2024-56763 | MEDIUM | 5.5 | 0.2% | Jan 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: tracing: Prevent bad count for tracing_cpumask_writ... |
| CVE-2024-56761 | MEDIUM | 5.5 | 0.2% | Jan 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: x86/fred: Clear WFE in missing-ENDBRANCH #CPs An i... |
| CVE-2024-56760 | MEDIUM | 5.5 | 0.2% | Jan 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: PCI/MSI: Handle lack of irqdomain gracefully Alexa... |
| CVE-2024-56758 | MEDIUM | 5.5 | 0.2% | Jan 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: btrfs: check folio mapping after unlock in relocate... |
| CVE-2024-56757 | MEDIUM | 5.5 | 0.2% | Jan 6, 2025 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btusb: mediatek: add intf release flow w... |
| CVE-2024-47475 | MEDIUM | 5.5 | 0.1% | Jan 6, 2025 | Dell PowerScale OneFS 8.2.2.x through 9.8.0.x contains an incorrect permission assignment for critical resource vulnerab... |
| CVE-2024-51112 | MEDIUM | 6.1 | 0.3% | Jan 6, 2025 | Open Redirect vulnerability in Pnetlab 5.3.11 allows an attacker to manipulate URLs to redirect users to arbitrary exter... |
| CVE-2024-51111 | MEDIUM | 4.1 | 0.3% | Jan 6, 2025 | Cross-Site Scripting (XSS) vulnerability in Pnetlab 5.3.11 allows an attacker to inject malicious scripts into a web pag... |
| CVE-2024-31914 | MEDIUM | 6.4 | 0.2% | Jan 6, 2025 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2 is vulnerable to stored... |
| CVE-2024-31913 | MEDIUM | 5.4 | 0.2% | Jan 6, 2025 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2 is vulnerable to stored... |
| CVE-2024-45559 | MEDIUM | 5.5 | 0.1% | Jan 6, 2025 | Transient DOS can occur when GVM sends a specific message type to the Vdev-FastRPC backend. |
| CVE-2024-43064 | MEDIUM | 4.7 | 0.1% | Jan 6, 2025 | Uncontrolled resource consumption when a driver, an application or a SMMU client tries to access the global registers th... |
| CVE-2024-43063 | MEDIUM | 5.5 | 0.1% | Jan 6, 2025 | information disclosure while invoking the mailbox read API. |
| CVE-2024-33067 | MEDIUM | 5.5 | 0.1% | Jan 6, 2025 | Information disclosure while invoking callback function of sound model driver from ADSP for every valid opcode received ... |
| CVE-2024-33061 | MEDIUM | 5.5 | 0.1% | Jan 6, 2025 | Information disclosure while processing IOCTL call made for releasing a trusted VM process release or opening a channel ... |
| CVE-2024-23366 | MEDIUM | 5.5 | 0.1% | Jan 6, 2025 | Information Disclosure while invoking the mailbox write API when message received from user is larger than mailbox size. |
| CVE-2024-12311 | MEDIUM | 6.5 | 0.6% | Jan 6, 2025 | The Email Subscribers by Icegram Express WordPress plugin before 5.7.44 does not sanitize and escape a parameter before... |
| CVE-2024-12302 | MEDIUM | 6.1 | 0.3% | Jan 6, 2025 | The Icegram Engage WordPress plugin before 3.1.32 does not sanitise and escape some of its Campaign settings, which cou... |
| CVE-2024-11849 | MEDIUM | 6.1 | 0.3% | Jan 6, 2025 | The Pods WordPress plugin before 3.2.8.1 does not sanitise and escape some of its settings, which could allow high priv... |
| CVE-2024-11356 | MEDIUM | 6.1 | 0.3% | Jan 6, 2025 | The tourmaster WordPress plugin before 5.3.4 does not sanitise and escape some parameters when outputting them in the pa... |
| CVE-2024-20152 | MEDIUM | 4.4 | 0.1% | Jan 6, 2025 | In wlan STA driver, there is a possible reachable assertion due to improper exception handling. This could lead to local... |
| CVE-2024-20151 | MEDIUM | 6.7 | 0.2% | Jan 6, 2025 | In Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation ... |
| CVE-2024-20145 | MEDIUM | 6.6 | 0.1% | Jan 6, 2025 | In V6 DA, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now