2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-32301CRITICAL9.8Tenda AC7V1.0 v15.03.06.44 firmware has a stack overflow vulnerability via the PPW parameter in the fromWizardHandle fun...
CVE-2024-32281HIGH8.8Tenda AC7V1.0 v15.03.06.44 firmware contains a command injection vulnerablility in formexeCommand function via the cmdin...
CVE-2024-30952MEDIUM6.1A stored cross-site scripting (XSS) vulnerability in PESCMS-TEAM v2.3.6 allows attackers to execute arbitrary web script...
CVE-2024-3910HIGH8.8A vulnerability, which was classified as critical, has been found in Tenda AC500 2.0.1.9(1307). Affected by this issue i...
CVE-2024-3909CRITICAL9.8A vulnerability classified as critical was found in Tenda AC500 2.0.1.9(1307). Affected by this vulnerability is the fun...
CVE-2024-3908CRITICAL9.8A vulnerability classified as critical has been found in Tenda AC500 2.0.1.9(1307). Affected is the function formWriteFa...
CVE-2024-3333MEDIUM6.4The Essential Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the URL attribu...
CVE-2024-3907CRITICAL9.8A vulnerability was found in Tenda AC500 2.0.1.9(1307). It has been rated as critical. This issue affects the function f...
CVE-2024-3906HIGH8.8A vulnerability was found in Tenda AC500 2.0.1.9(1307). It has been declared as critical. This vulnerability affects the...
CVE-2024-3905HIGH8.8A vulnerability was found in Tenda AC500 2.0.1.9(1307). It has been classified as critical. This affects the function R7...
CVE-2024-26909MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: soc: qcom: pmic_glink_altmode: fix drm bridge use-a...
CVE-2024-26908Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-26907HIGH7.8In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Fix fortify source warning while accessi...
CVE-2024-26906MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: x86/mm: Disallow vsyscall page read for copy_from_k...
CVE-2024-26905Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-26904Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-26903MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Bluetooth: rfcomm: Fix null-ptr-deref in rfcomm_che...
CVE-2024-26902MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: perf: RISCV: Fix panic on pmu overflow handler (1 ...
CVE-2024-26901MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: do_sys_name_to_handle(): use kzalloc() to fix kerne...
CVE-2024-26900MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: md: fix kmemleak of rdev->serial If kobject_add() ...
CVE-2024-26899MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: block: fix deadlock between bd_link_disk_holder and...
CVE-2024-26898HIGH7.8In the Linux kernel, the following vulnerability has been resolved: aoe: fix the potential use-after-free problem in ao...
CVE-2024-26897MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: wifi: ath9k: delay all of ath9k_wmi_event_tasklet()...
CVE-2024-26896MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: wfx: fix memory leak when starting AP Kmemle...
CVE-2024-26895HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: wilc1000: prevent use-after-free on vif when ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now