2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-53104HIGH7.8In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Skip parsing frames of type UVC_VS...
CVE-2024-53103HIGH7.8In the Linux kernel, the following vulnerability has been resolved: hv_sock: Initializing vsk->trans to NULL to prevent...
CVE-2024-20138HIGH7.5In wlan driver, there is a possible out of bound read due to improper input validation. This could lead to remote inform...
CVE-2024-20137HIGH7.5In wlan driver, there is a possible client disconnection due to improper handling of exceptional conditions. This could ...
CVE-2024-20129HIGH7.5In Telephony, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of ...
CVE-2024-20128HIGH7.5In Telephony, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of ...
CVE-2024-20127HIGH7.5In Telephony, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of ...
CVE-2024-53605HIGH7.5Incorrect access control in the component content://com.handcent.messaging.provider.MessageProvider/ of Handcent NextSMS...
CVE-2024-53750HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Maeve Lander PayPal Responder allows Stored XSS.This issue affects Pa...
CVE-2024-53742HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Prism I.T. Systems...
CVE-2024-45520HIGH7.5WithSecure Atlant (formerly F-Secure Atlant) 1.0.35-1 allows a remote Denial of Service because of memory corruption dur...
CVE-2024-53778HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Essential Marketer Essential Breadcrumbs essential-breadcrumbs allows...
CVE-2024-53783HIGH7.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Anzar Ahmed Ni Woo...
CVE-2024-11998HIGH7.5A vulnerability was found in code-projects Farmacia 1.0. It has been declared as critical. This vulnerability affects un...
CVE-2024-43703HIGH8.1Software installed and run as a non-privileged user may conduct improper GPU system calls to achieve unauthorised reads ...
CVE-2024-43702HIGH8.1Software installed and run as a non-privileged user may conduct improper GPU system calls to allow unprivileged access t...
CVE-2024-53623HIGH7.5Incorrect access control in the component l_0_0.xml of TP-Link ARCHER-C7 v5 allows attackers to access sensitive informa...
CVE-2024-36612HIGH7.5Zulip from 8.0 to 8.3 contains a memory leak vulnerability in the handling of popovers.
CVE-2024-35371HIGH7.5Ant-Media-Serverv2.8.2 is affected by Improper Output Neutralization for Logs. The vulnerability stems from insufficient...
CVE-2024-53980HIGH7.5RIOT is an open-source microcontroller operating system, designed to match the requirements of Internet of Things (IoT) ...
CVE-2024-53979HIGH8.2ibm.ibm_zhmc is an Ansible collection for the IBM Z HMC. The Ansible collection "ibm.ibm_zhmc" writes password-like prop...
CVE-2024-53865HIGH8.2zhmcclient is a pure Python client library for the IBM Z HMC Web Services API. In affected versions the Python package "...
CVE-2024-53861HIGH7.5pyjwt is a JSON Web Token implementation in Python. An incorrect string comparison is run for `iss` checking, resulting ...
CVE-2024-53848HIGH7.1check-jsonschema is a CLI and set of pre-commit hooks for jsonschema validation. The default cache strategy uses the bas...
CVE-2024-36611HIGH7.5In Symfony v7.07, a security vulnerability was identified in the FormLoginAuthenticator component, where it failed to ad...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now