2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-1552 | HIGH | 7.5 | 0.7% | Feb 20, 2024 | Incorrect code generation could have led to unexpected numeric conversions and potential undefined behavior.*Note:* This... |
| CVE-2024-1551 | MEDIUM | 6.1 | 0.7% | Feb 20, 2024 | Set-Cookie response headers were being incorrectly honored in multipart HTTP responses. If an attacker could control the... |
| CVE-2024-1550 | MEDIUM | 6.1 | 0.6% | Feb 20, 2024 | A malicious website could have used a combination of exiting fullscreen mode and `requestPointerLock` to cause the user'... |
| CVE-2024-1549 | MEDIUM | 6.1 | 0.5% | Feb 20, 2024 | If a website set a large custom cursor, portions of the cursor could have overlapped with the permission dialog, potenti... |
| CVE-2024-1548 | MEDIUM | 4.3 | 0.9% | Feb 20, 2024 | A website could have obscured the fullscreen notification by using a dropdown select input element. This could have led ... |
| CVE-2024-1547 | MEDIUM | 6.5 | 0.7% | Feb 20, 2024 | Through a series of API calls and redirects, an attacker-controlled alert dialog could have been displayed on another we... |
| CVE-2024-1546 | HIGH | 7.5 | 0.7% | Feb 20, 2024 | When storing and re-accessing data on a networking channel, the length of buffers may have been confused, resulting in a... |
| CVE-2024-26581 | HIGH | 7.8 | 2.2% | Feb 20, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_set_rbtree: skip end interval elemen... |
| CVE-2024-26267 | MEDIUM | 5.3 | 0.5% | Feb 20, 2024 | In Liferay Portal 7.2.0 through 7.4.3.25, and older unsupported versions, and Liferay DXP 7.4 before update 26, 7.3 befo... |
| CVE-2024-26265 | MEDIUM | 6.5 | 0.7% | Feb 20, 2024 | The Image Uploader module in Liferay Portal 7.2.0 through 7.4.3.15, and older unsupported versions, and Liferay DXP 7.4 ... |
| CVE-2024-25610 | MEDIUM | 5.4 | 0.5% | Feb 20, 2024 | In Liferay Portal 7.2.0 through 7.4.3.12, and older unsupported versions, and Liferay DXP 7.4 before update 9, 7.3 befor... |
| CVE-2024-1661 | MEDIUM | 5.5 | 0.3% | Feb 20, 2024 | A vulnerability classified as problematic was found in Totolink X6000R 9.4.0cu.852_B20230719. Affected by this vulnerabi... |
| CVE-2024-24794 | CRITICAL | 9.8 | 1.1% | Feb 20, 2024 | A use-after-free vulnerability exists in the DICOM Element Parsing as implemented in Imaging Data Commons libdicom 1.0.5... |
| CVE-2024-24793 | CRITICAL | 9.8 | 1.1% | Feb 20, 2024 | A use-after-free vulnerability exists in the DICOM Element Parsing as implemented in Imaging Data Commons libdicom 1.0.5... |
| CVE-2024-25609 | MEDIUM | 6.1 | 0.4% | Feb 20, 2024 | HtmlUtil.escapeRedirect in Liferay Portal 7.2.0 through 7.4.3.12, and older unsupported versions, and Liferay DXP 7.4 be... |
| CVE-2024-25608 | MEDIUM | 6.1 | 1.0% | Feb 20, 2024 | HtmlUtil.escapeRedirect in Liferay Portal 7.2.0 through 7.4.3.18, and older unsupported versions, and Liferay DXP 7.4 be... |
| CVE-2024-25607 | HIGH | 7.5 | 0.3% | Feb 20, 2024 | The default password hashing algorithm (PBKDF2-HMAC-SHA1) in Liferay Portal 7.2.0 through 7.4.3.15, and older unsupporte... |
| CVE-2024-25606 | HIGH | 8.7 | 0.5% | Feb 20, 2024 | XXE vulnerability in Liferay Portal 7.2.0 through 7.4.3.7, and older unsupported versions, and Liferay DXP 7.4 before up... |
| CVE-2024-25605 | MEDIUM | 5.3 | 0.5% | Feb 20, 2024 | The Journal module in Liferay Portal 7.2.0 through 7.4.3.4, and older unsupported versions, and Liferay DXP 7.4.13, 7.3 ... |
| CVE-2024-25604 | MEDIUM | 6.5 | 0.4% | Feb 20, 2024 | Liferay Portal 7.2.0 through 7.4.3.4, and older unsupported versions, and Liferay DXP 7.4.13, 7.3 before service pack 3,... |
| CVE-2024-1608 | HIGH | 7.5 | 0.5% | Feb 20, 2024 | In OPPO Usercenter Credit SDK, there's a possible escalation of privilege due to loose permission check, This could lead... |
| CVE-2024-25974 | MEDIUM | 5.4 | 0.5% | Feb 20, 2024 | The Frentix GmbH OpenOlat LMS is affected by stored a Cross-Site Scripting (XSS) vulnerability. It is possible to upload... |
| CVE-2024-25973 | MEDIUM | 5.4 | 0.6% | Feb 20, 2024 | The Frentix GmbH OpenOlat LMS is affected by multiple stored Cross-Site Scripting (XSS) vulnerabilities. An attacker wit... |
| CVE-2024-25150 | MEDIUM | 4.3 | 0.4% | Feb 20, 2024 | Information disclosure vulnerability in the Control Panel in Liferay Portal 7.2.0 through 7.4.2, and older unsupported v... |
| CVE-2024-25149 | MEDIUM | 5.4 | 0.3% | Feb 20, 2024 | Liferay Portal 7.2.0 through 7.4.1, and older unsupported versions, and Liferay DXP 7.3 before service pack 3, 7.2 befor... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now