2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-26935 | MEDIUM | 5.5 | 0.2% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: scsi: core: Fix unremoved procfs host directory reg... |
| CVE-2024-26934 | HIGH | 7.8 | 0.2% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: USB: core: Fix deadlock in usb_deauthorize_interfac... |
| CVE-2024-26933 | HIGH | 7.8 | 0.2% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: USB: core: Fix deadlock in port "disable" sysfs att... |
| CVE-2024-26932 | HIGH | 7.8 | 0.2% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpm: fix double-free issue in tcpm_por... |
| CVE-2024-26931 | MEDIUM | 5.5 | 0.3% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix command flush on cable pull Sys... |
| CVE-2024-26930 | HIGH | 7.8 | 0.2% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix double free of the ha->vp_map po... |
| CVE-2024-26929 | — | — | — | May 1, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-28979 | MEDIUM | 4.8 | 0.3% | May 1, 2024 | Dell OpenManage Enterprise, versions 4.1.0 and older, contains an Improper Neutralization of Input During Web Page Gener... |
| CVE-2024-28978 | MEDIUM | 6.5 | 0.4% | May 1, 2024 | Dell OpenManage Enterprise, versions 3.10 and 4.0, contains an Improper Access Control vulnerability. A high privileged ... |
| CVE-2024-33768 | CRITICAL | 9.8 | 0.8% | May 1, 2024 | lunasvg v2.3.9 was discovered to contain a segmentation violation via the component composition_solid_source_over. |
| CVE-2024-33767 | MEDIUM | 5 | 0.3% | May 1, 2024 | lunasvg v2.3.9 was discovered to contain a segmentation violation via the component composition_solid_source. |
| CVE-2024-33766 | MEDIUM | 5.3 | 0.6% | May 1, 2024 | lunasvg v2.3.9 was discovered to contain an FPE (Floating Point Exception) at blend_transformed_tiled_argb.isra.0. |
| CVE-2024-33764 | MEDIUM | 5.5 | 0.3% | May 1, 2024 | lunasvg v2.3.9 was discovered to contain a stack-overflow at lunasvg/source/element.h. |
| CVE-2024-33763 | HIGH | 7.5 | 0.7% | May 1, 2024 | lunasvg v2.3.9 was discovered to contain a stack-buffer-underflow at lunasvg/source/layoutcontext.cpp. |
| CVE-2024-4369 | MEDIUM | 6.8 | 0.7% | May 1, 2024 | An information disclosure flaw was found in OpenShift's internal image registry operator. The AZURE_CLIENT_SECRET can be... |
| CVE-2024-4349 | HIGH | 7.3 | 1.0% | Apr 30, 2024 | A vulnerability has been found in SourceCodester Pisay Online E-Learning System 1.0 and classified as critical. Affected... |
| CVE-2024-4192 | HIGH | 7.8 | 0.3% | Apr 30, 2024 | Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed... |
| CVE-2024-34149 | MEDIUM | 6.3 | 0.4% | Apr 30, 2024 | In Bitcoin Core through 27.0 and Bitcoin Knots before 25.1.knots20231115, tapscript lacks a policy size limit check, a d... |
| CVE-2024-32970 | HIGH | 7.1 | 0.7% | Apr 30, 2024 | Phlex is a framework for building object-oriented views in Ruby. In affected versions there is a potential cross-site sc... |
| CVE-2024-4348 | MEDIUM | 4.3 | 1.8% | Apr 30, 2024 | A vulnerability, which was classified as problematic, was found in osCommerce 4. Affected is an unknown function of the ... |
| CVE-2024-29466 | HIGH | 8.8 | 1.0% | Apr 30, 2024 | Directory Traversal vulnerability in lsgwr spring boot online exam v.0.9 allows an attacker to execute arbitrary code vi... |
| CVE-2024-3746 | MEDIUM | 6.8 | 0.2% | Apr 30, 2024 | The entire parent directory - C:\ScadaPro and its sub-directories and files are configured by default to allow user, in... |
| CVE-2024-33437 | HIGH | 7.5 | 0.8% | Apr 30, 2024 | An issue in CSS Exfil Protection v.1.1.0 allows a remote attacker to obtain sensitive information due to missing support... |
| CVE-2024-33436 | MEDIUM | 5.3 | 0.6% | Apr 30, 2024 | An issue in CSS Exfil Protection v.1.1.0 allows a remote attacker to obtain sensitive information due to missing support... |
| CVE-2024-33383 | HIGH | 7.5 | 0.7% | Apr 30, 2024 | Arbitrary File Read vulnerability in novel-plus 4.3.0 and before allows a remote attacker to obtain sensitive informatio... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now