2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-26792 | HIGH | 7.8 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix double free of anonymous device after sn... |
| CVE-2024-26791 | HIGH | 7.1 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: btrfs: dev-replace: properly validate device names ... |
| CVE-2024-26790 | MEDIUM | 5.5 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: fsl-qdma: fix SoC may hang on 16 byte un... |
| CVE-2024-26789 | HIGH | 7.8 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: crypto: arm64/neonbs - fix out-of-bounds access on ... |
| CVE-2024-26788 | MEDIUM | 5.5 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: fsl-qdma: init irq after reg initializat... |
| CVE-2024-26787 | MEDIUM | 5.5 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: mmc: mmci: stm32: fix DMA API overlapping mappings ... |
| CVE-2024-26786 | HIGH | 7.8 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix iopt_access_list_id overwrite bug Syz... |
| CVE-2024-26785 | MEDIUM | 5.5 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: iommufd: Fix protection fault in iommufd_test_syz_c... |
| CVE-2024-26784 | MEDIUM | 5.5 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: pmdomain: arm: Fix NULL dereference on scmi_perf_do... |
| CVE-2024-26783 | MEDIUM | 5.5 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm/vmscan: fix a bug calling wakeup_kswapd() with a... |
| CVE-2024-26782 | HIGH | 7.8 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: mptcp: fix double-free on socket dismantle when MP... |
| CVE-2024-26781 | MEDIUM | 5.5 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: mptcp: fix possible deadlock in subflow diag Syzbo... |
| CVE-2024-26780 | MEDIUM | 5.5 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Fix task hung while purging oob_skb in GC.... |
| CVE-2024-26750 | MEDIUM | 5.5 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Drop oob_skb ref before purging queue in G... |
| CVE-2024-26746 | MEDIUM | 5.5 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Ensure safe user copy of completio... |
| CVE-2024-26745 | MEDIUM | 4.4 | 0.2% | Apr 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: powerpc/pseries/iommu: IOMMU table is not initializ... |
| CVE-2024-20800 | MEDIUM | 5.4 | 0.5% | Apr 4, 2024 | Adobe Experience Manager versions 6.5.19 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerabilit... |
| CVE-2024-30565 | HIGH | 8.8 | 1.6% | Apr 4, 2024 | An issue was discovered in SeaCMS version 12.9, allows remote attackers to execute arbitrary code via admin notify.php. |
| CVE-2024-29008 | MEDIUM | 6.4 | 0.6% | Apr 4, 2024 | A problem has been identified in the CloudStack additional VM configuration (extraconfig) feature which can be misused b... |
| CVE-2024-29007 | HIGH | 7.3 | 0.8% | Apr 4, 2024 | The CloudStack management server and secondary storage VM could be tricked into making requests to restricted or random ... |
| CVE-2024-29006 | CRITICAL | 9.8 | 0.9% | Apr 4, 2024 | By default the CloudStack management server honours the x-forwarded-for HTTP header and logs it as the source IP of an A... |
| CVE-2024-25503 | MEDIUM | 4.7 | 0.9% | Apr 4, 2024 | Cross Site Scripting (XSS) vulnerability in Advanced REST Client v.17.0.9 allows a remote attacker to execute arbitrary ... |
| CVE-2024-29375 | CRITICAL | 9.8 | 1.5% | Apr 4, 2024 | CSV Injection vulnerability in Addactis IBNRS v.3.10.3.107 allows a remote attacker to execute arbitrary code via a craf... |
| CVE-2024-28520 | MEDIUM | 6.5 | 0.2% | Apr 4, 2024 | File Upload vulnerability in Byzoro Networks Smart multi-service security gateway intelligent management platform versio... |
| CVE-2024-1418 | MEDIUM | 5.3 | 0.4% | Apr 4, 2024 | The CGC Maintenance Mode plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now