2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-52452HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in eduNEXT Open edX L...
CVE-2024-12015HIGH7.7The 'Project Manager' WordPress Plugin is affected by an authenticated SQL injection vulnerability in the 'orderby' para...
CVE-2024-43053HIGH7.8Memory corruption while invoking IOCTL calls from user space to read WLAN target diagnostic information.
CVE-2024-43052HIGH7.8Memory corruption while processing API calls to NPU with invalid input.
CVE-2024-43050HIGH7.8Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WLAN driver.
CVE-2024-43049HIGH7.8Memory corruption while invoking IOCTL calls from user space to set generic private command inside WLAN driver.
CVE-2024-43048HIGH7.8Memory corruption when invalid input is passed to invoke GPU Headroom API call.
CVE-2024-33063HIGH7.5Transient DOS while parsing the ML IE when a beacon with common info length of the ML IE greater than the ML IE inside w...
CVE-2024-33056HIGH7.8Memory corruption when allocating and accessing an entry in an SMEM partition continuously.
CVE-2024-33044HIGH7.8Memory corruption while Configuring the SMR/S2CR register in Bypass mode.
CVE-2024-33040HIGH7Memory corruption while invoking redundant release command to release one buffer from user space as race condition can o...
CVE-2024-10490HIGH8.4An “Authentication Bypass Using an Alternate Path or Channel” vulnerability in the OPC UA Server configuration required ...
CVE-2024-53104HIGH7.8In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Skip parsing frames of type UVC_VS...
CVE-2024-53103HIGH7.8In the Linux kernel, the following vulnerability has been resolved: hv_sock: Initializing vsk->trans to NULL to prevent...
CVE-2024-20138HIGH7.5In wlan driver, there is a possible out of bound read due to improper input validation. This could lead to remote inform...
CVE-2024-20137HIGH7.5In wlan driver, there is a possible client disconnection due to improper handling of exceptional conditions. This could ...
CVE-2024-20129HIGH7.5In Telephony, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of ...
CVE-2024-20128HIGH7.5In Telephony, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of ...
CVE-2024-20127HIGH7.5In Telephony, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of ...
CVE-2024-53605HIGH7.5Incorrect access control in the component content://com.handcent.messaging.provider.MessageProvider/ of Handcent NextSMS...
CVE-2024-53750HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Maeve Lander PayPal Responder allows Stored XSS.This issue affects Pa...
CVE-2024-53742HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Prism I.T. Systems...
CVE-2024-45520HIGH7.5WithSecure Atlant (formerly F-Secure Atlant) 1.0.35-1 allows a remote Denial of Service because of memory corruption dur...
CVE-2024-53778HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Essential Marketer Essential Breadcrumbs essential-breadcrumbs allows...
CVE-2024-53783HIGH7.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Anzar Ahmed Ni Woo...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now