2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-26935MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: scsi: core: Fix unremoved procfs host directory reg...
CVE-2024-26934HIGH7.8In the Linux kernel, the following vulnerability has been resolved: USB: core: Fix deadlock in usb_deauthorize_interfac...
CVE-2024-26933HIGH7.8In the Linux kernel, the following vulnerability has been resolved: USB: core: Fix deadlock in port "disable" sysfs att...
CVE-2024-26932HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpm: fix double-free issue in tcpm_por...
CVE-2024-26931MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix command flush on cable pull Sys...
CVE-2024-26930HIGH7.8In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix double free of the ha->vp_map po...
CVE-2024-26929Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-28979MEDIUM4.8Dell OpenManage Enterprise, versions 4.1.0 and older, contains an Improper Neutralization of Input During Web Page Gener...
CVE-2024-28978MEDIUM6.5Dell OpenManage Enterprise, versions 3.10 and 4.0, contains an Improper Access Control vulnerability. A high privileged ...
CVE-2024-33768CRITICAL9.8lunasvg v2.3.9 was discovered to contain a segmentation violation via the component composition_solid_source_over.
CVE-2024-33767MEDIUM5lunasvg v2.3.9 was discovered to contain a segmentation violation via the component composition_solid_source.
CVE-2024-33766MEDIUM5.3lunasvg v2.3.9 was discovered to contain an FPE (Floating Point Exception) at blend_transformed_tiled_argb.isra.0.
CVE-2024-33764MEDIUM5.5lunasvg v2.3.9 was discovered to contain a stack-overflow at lunasvg/source/element.h.
CVE-2024-33763HIGH7.5lunasvg v2.3.9 was discovered to contain a stack-buffer-underflow at lunasvg/source/layoutcontext.cpp.
CVE-2024-4369MEDIUM6.8An information disclosure flaw was found in OpenShift's internal image registry operator. The AZURE_CLIENT_SECRET can be...
CVE-2024-4349HIGH7.3A vulnerability has been found in SourceCodester Pisay Online E-Learning System 1.0 and classified as critical. Affected...
CVE-2024-4192HIGH7.8 Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed...
CVE-2024-34149MEDIUM6.3In Bitcoin Core through 27.0 and Bitcoin Knots before 25.1.knots20231115, tapscript lacks a policy size limit check, a d...
CVE-2024-32970HIGH7.1Phlex is a framework for building object-oriented views in Ruby. In affected versions there is a potential cross-site sc...
CVE-2024-4348MEDIUM4.3A vulnerability, which was classified as problematic, was found in osCommerce 4. Affected is an unknown function of the ...
CVE-2024-29466HIGH8.8Directory Traversal vulnerability in lsgwr spring boot online exam v.0.9 allows an attacker to execute arbitrary code vi...
CVE-2024-3746MEDIUM6.8The entire parent directory - C:\ScadaPro and its sub-directories and files are configured by default to allow user, in...
CVE-2024-33437HIGH7.5An issue in CSS Exfil Protection v.1.1.0 allows a remote attacker to obtain sensitive information due to missing support...
CVE-2024-33436MEDIUM5.3An issue in CSS Exfil Protection v.1.1.0 allows a remote attacker to obtain sensitive information due to missing support...
CVE-2024-33383HIGH7.5Arbitrary File Read vulnerability in novel-plus 4.3.0 and before allows a remote attacker to obtain sensitive informatio...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now