2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-25984MEDIUM6.2In dumpBatteryDefend of dump_power.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could...
CVE-2024-22011HIGH7.5In ss_ProcessRejectComponent of ss_MmConManagement.c, there is a possible out of bounds read due to a missing bounds che...
CVE-2024-22010MEDIUM5.5In dvfs_plugin_caller of fvp.c, there is a possible out of bounds read due to a missing bounds check. This could lead to...
CVE-2024-22009HIGH7.1In init_data of , there is a possible out of bounds write due to a missing bounds check. This could lead to local escala...
CVE-2024-22008HIGH7.8In config_gov_time_windows of tmu.c, there is a possible out of bounds write due to a missing bounds check. This could l...
CVE-2024-22007MEDIUM6.2In constraint_check of fvp.c, there is a possible out of bounds read due to a missing bounds check. This could lead to l...
CVE-2024-22006MEDIUM5.3OOB read in the TMU plugin that allows for memory disclosure in the power management subsystem of the device.
CVE-2024-22005HIGH8.4there is a possible Authentication Bypass due to improperly used crypto. This could lead to local escalation of privileg...
CVE-2024-26620HIGH7.5In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: always filter entire AP matrix The v...
CVE-2024-26619HIGH7.8In the Linux kernel, the following vulnerability has been resolved: riscv: Fix module loading free order Reverse order...
CVE-2024-26618MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: arm64/sme: Always exit sme_alloc() early with exist...
CVE-2024-26617HIGH7In the Linux kernel, the following vulnerability has been resolved: fs/proc/task_mmu: move mmu notification mechanism i...
CVE-2024-26616HIGH7.8In the Linux kernel, the following vulnerability has been resolved: btrfs: scrub: avoid use-after-free when chunk lengt...
CVE-2024-26615MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net/smc: fix illegal rmb_desc access in SMC-D conne...
CVE-2024-26614HIGH7.8In the Linux kernel, the following vulnerability has been resolved: tcp: make sure init the accept_queue's spinlocks on...
CVE-2024-26613Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-26612MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netfs, fscache: Prevent Oops in fscache_put_cache()...
CVE-2024-26611MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: xsk: fix usage of multi-buffer BPF helpers for ZC X...
CVE-2024-26610HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: fix a memory corruption iwl_fw_ini_...
CVE-2024-26609Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-26608HIGH7.8In the Linux kernel, the following vulnerability has been resolved: ksmbd: fix global oob in ksmbd_nl_policy Similar t...
CVE-2024-1487MEDIUM5.4The Photos and Files Contest Gallery WordPress plugin before 21.3.1 does not sanitize and escape some parameters, which ...
CVE-2024-1290MEDIUM6.5The User Registration WordPress plugin before 2.12 does not prevent users with at least the contributor role from render...
CVE-2024-1279MEDIUM4.3The Paid Memberships Pro WordPress plugin before 2.12.9 does not prevent user with at least the contributor role from le...
CVE-2024-1273MEDIUM6.1The Starbox WordPress plugin before 3.5.0 does not sanitise and escape some parameters, which could allow users with a r...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now