2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-51210 | MEDIUM | 5.3 | 0.5% | Dec 4, 2024 | Firepad through 1.5.11 allows remote attackers, who have knowledge of a pad ID, to retrieve both the current text of a d... |
| CVE-2024-12196 | MEDIUM | 6.5 | 0.4% | Dec 4, 2024 | Incorrect authorization in the permission component in Devolutions Server 2024.3.7.0 and earlier allows an authenticated... |
| CVE-2024-12151 | MEDIUM | 5 | 0.3% | Dec 4, 2024 | Incorrect permission assignment in the user migration feature in Devolutions Server 2024.3.8.0 and earlier allows users ... |
| CVE-2024-12148 | MEDIUM | 4.3 | 0.4% | Dec 4, 2024 | Incorrect authorization in permission validation component in Devolutions Server 2024.3.6.0 and earlier allows an authen... |
| CVE-2024-52676 | MEDIUM | 5.4 | 0.3% | Dec 4, 2024 | Itsourcecode Online Discussion Forum Project v.1.0.0 is vulnerable to Cross Site Scripting (XSS) via /bcc_forum/members/... |
| CVE-2024-20397 | MEDIUM | 5.2 | 0.3% | Dec 4, 2024 | A vulnerability in the bootloader of Cisco NX-OS Software could allow an unauthenticated attacker with physical access t... |
| CVE-2024-54132 | MEDIUM | 6.3 | 0.6% | Dec 4, 2024 | The GitHub CLI is GitHub’s official command line tool. A security vulnerability has been identified in GitHub CLI that c... |
| CVE-2024-54002 | MEDIUM | 5.3 | 0.3% | Dec 4, 2024 | Dependency-Track is a Component Analysis platform that allows organizations to identify and reduce risk in the software ... |
| CVE-2024-53614 | MEDIUM | 6.5 | 0.6% | Dec 4, 2024 | A hardcoded decryption key in Thinkware Cloud APK v4.3.46 allows attackers to access sensitive data and execute arbitrar... |
| CVE-2024-53140 | MEDIUM | 5.5 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: netlink: terminate outstanding dump on socket close... |
| CVE-2024-53138 | MEDIUM | 5.5 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: net/mlx5e: kTLS, Fix incorrect page refcounting Th... |
| CVE-2024-53137 | MEDIUM | 5.5 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: ARM: fix cacheflush with PAN It seems that the cac... |
| CVE-2024-53136 | MEDIUM | 4.7 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm: revert "mm: shmem: fix data-race in shmem_getat... |
| CVE-2024-53135 | MEDIUM | 6.5 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: KVM: VMX: Bury Intel PT virtualization (guest/host ... |
| CVE-2024-53134 | MEDIUM | 5.5 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: pmdomain: imx93-blk-ctrl: correct remove path The ... |
| CVE-2024-53132 | MEDIUM | 5.5 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/xe/oa: Fix "Missing outer runtime PM protection... |
| CVE-2024-53131 | MEDIUM | 5.5 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix null-ptr-deref in block_touch_buffer tr... |
| CVE-2024-53130 | MEDIUM | 5.5 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix null-ptr-deref in block_dirty_buffer tr... |
| CVE-2024-53129 | MEDIUM | 5.5 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/rockchip: vop: Fix a dereferenced before check ... |
| CVE-2024-53128 | MEDIUM | 5.5 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: sched/task_stack: fix object_is_on_stack() for KASA... |
| CVE-2024-53127 | MEDIUM | 5.5 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: Revert "mmc: dw_mmc: Fix IDMAC operation with pages... |
| CVE-2024-40745 | MEDIUM | 5.4 | 0.2% | Dec 4, 2024 | Reflected Cross site scripting vulnerability in Convert Forms component for Joomla in versions before 4.4.8. |
| CVE-2024-7488 | MEDIUM | 5.3 | 0.3% | Dec 4, 2024 | Integer Overflow or Wraparound, Improper Validation of Specified Quantity in Input vulnerability in RestApp Inc. Online ... |
| CVE-2024-53125 | MEDIUM | 5.5 | 0.2% | Dec 4, 2024 | In the Linux kernel, the following vulnerability has been resolved: bpf: sync_linked_regs() must preserve subreg_def R... |
| CVE-2024-11935 | MEDIUM | 6.4 | 0.3% | Dec 4, 2024 | The Email Address Obfuscation plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘class’ paramete... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now