2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-26734 | HIGH | 7.8 | 0.2% | Apr 3, 2024 | In the Linux kernel, the following vulnerability has been resolved: devlink: fix possible use-after-free and memory lea... |
| CVE-2024-26733 | MEDIUM | 5.5 | 0.3% | Apr 3, 2024 | In the Linux kernel, the following vulnerability has been resolved: arp: Prevent overflow in arp_req_get(). syzkaller ... |
| CVE-2024-26732 | MEDIUM | 5.5 | 0.2% | Apr 3, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: implement lockless setsockopt(SO_PEEK_OFF) sy... |
| CVE-2024-26731 | MEDIUM | 5.3 | 0.8% | Apr 3, 2024 | In the Linux kernel, the following vulnerability has been resolved: bpf, sockmap: Fix NULL pointer dereference in sk_ps... |
| CVE-2024-26730 | HIGH | 7 | 0.2% | Apr 3, 2024 | In the Linux kernel, the following vulnerability has been resolved: hwmon: (nct6775) Fix access to temperature configur... |
| CVE-2024-26729 | MEDIUM | 5.5 | 0.2% | Apr 3, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix potential null pointer derefer... |
| CVE-2024-26728 | MEDIUM | 5.5 | 0.2% | Apr 3, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fix null-pointer dereference on ed... |
| CVE-2024-26701 | — | — | — | Apr 3, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-23540 | MEDIUM | 5.3 | 0.6% | Apr 3, 2024 | The HCL BigFix Inventory server is vulnerable to path traversal which enables an attacker to read internal application f... |
| CVE-2024-20368 | HIGH | 8.8 | 0.3% | Apr 3, 2024 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthentic... |
| CVE-2024-20367 | MEDIUM | 5.4 | 0.4% | Apr 3, 2024 | A vulnerability in the web UI of Cisco Enterprise Chat and Email (ECE) could allow an authenticated, remote attacker to ... |
| CVE-2024-20362 | MEDIUM | 6.1 | 0.5% | Apr 3, 2024 | A vulnerability in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV... |
| CVE-2024-20352 | HIGH | 8.8 | 1.5% | Apr 3, 2024 | A vulnerability in Cisco Emergency Responder could allow an authenticated, remote attacker to conduct a directory traver... |
| CVE-2024-20348 | HIGH | 7.5 | 0.8% | Apr 3, 2024 | A vulnerability in the Out-of-Band (OOB) Plug and Play (PnP) feature of Cisco Nexus Dashboard Fabric Controller (NDFC) c... |
| CVE-2024-20347 | MEDIUM | 6.5 | 0.2% | Apr 3, 2024 | A vulnerability in Cisco Emergency Responder could allow an unauthenticated, remote attacker to conduct a CSRF attack, w... |
| CVE-2024-20334 | MEDIUM | 5.4 | 0.4% | Apr 3, 2024 | A vulnerability in the web-based management interface of Cisco TelePresence Management Suite (TMS) could allow a low-pri... |
| CVE-2024-20332 | MEDIUM | 5.5 | 0.4% | Apr 3, 2024 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat... |
| CVE-2024-20310 | MEDIUM | 6.1 | 0.5% | Apr 3, 2024 | A vulnerability in the web-based interface of Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&... |
| CVE-2024-20302 | MEDIUM | 4.3 | 0.4% | Apr 3, 2024 | A vulnerability in the tenant security implementation of Cisco Nexus Dashboard Orchestrator (NDO) could allow an authent... |
| CVE-2024-20283 | MEDIUM | 4.3 | 0.4% | Apr 3, 2024 | A vulnerability in Cisco Nexus Dashboard could allow an authenticated, remote attacker to learn cluster deployment infor... |
| CVE-2024-20282 | MEDIUM | 6 | 0.2% | Apr 3, 2024 | A vulnerability in Cisco Nexus Dashboard could allow an authenticated, local attacker with valid rescue-user credentials... |
| CVE-2024-20281 | HIGH | 8.8 | 0.3% | Apr 3, 2024 | A vulnerability in the web-based management interface of Cisco Nexus Dashboard and Cisco Nexus Dashboard hosted services... |
| CVE-2024-1180 | HIGH | 8 | 1.0% | Apr 3, 2024 | TP-Link Omada ER605 Access Control Command Injection Remote Code Execution Vulnerability. This vulnerability allows netw... |
| CVE-2024-31393 | MEDIUM | 4.3 | 0.3% | Apr 3, 2024 | Dragging Javascript URLs to the address bar could cause them to be loaded, bypassing restrictions and security protectio... |
| CVE-2024-31392 | HIGH | 7.5 | 0.4% | Apr 3, 2024 | If an insecure element was added to a page after a delay, Firefox would not replace the secure icon with a mixed content... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now