2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-51735HIGH8.7Osmedeus is a Workflow Engine for Offensive Security. Cross-site Scripting (XSS) occurs on the Osmedues web server when ...
CVE-2024-51382HIGH8.4Cross-Site Request Forgery (CSRF) vulnerability in JATOS v3.9.3 allows an attacker to reset the administrator's password...
CVE-2024-51381HIGH8.4Cross-Site Request Forgery (CSRF) vulnerability in JATOS v3.9.3 that allows attackers to perform actions reserved for ad...
CVE-2024-51380HIGH8.4Stored Cross-Site Scripting (XSS) vulnerability discovered in the Properties Component of JATOS v3.9.3. This flaw allows...
CVE-2024-51379HIGH8.4Stored Cross-Site Scripting (XSS) vulnerability discovered in JATOS v3.9.3. The vulnerability exists in the description ...
CVE-2024-51240HIGH8An issue in the luci-mod-rpc package in OpenWRT Luci LTS allows for privilege escalation from an admin account to root v...
CVE-2024-50333HIGH8.8SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. User input is ...
CVE-2024-50332HIGH8.8SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. Insufficient i...
CVE-2024-49774HIGH7.2SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. SuiteCRM relie...
CVE-2024-49772HIGH8.8SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In SuiteCRM ve...
CVE-2024-50131HIGH7.8In the Linux kernel, the following vulnerability has been resolved: tracing: Consider the NULL character when validatin...
CVE-2024-50130HIGH7.8In the Linux kernel, the following vulnerability has been resolved: netfilter: bpf: must hold reference on net namespac...
CVE-2024-50129HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net: pse-pd: Fix out of bound for loop Adjust the ...
CVE-2024-50128HIGH7.1In the Linux kernel, the following vulnerability has been resolved: net: wwan: fix global oob in wwan_rtnl_policy The ...
CVE-2024-50127HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net: sched: fix use-after-free in taprio_change() ...
CVE-2024-50126HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net: sched: use RCU read-side critical section in t...
CVE-2024-50125HIGH7.8In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: Fix UAF on sco_sock_timeout conn->...
CVE-2024-50124HIGH7.8In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Fix UAF on iso_sock_timeout conn->...
CVE-2024-50123HIGH7.1In the Linux kernel, the following vulnerability has been resolved: bpf: Add the missing BPF_LINK_TYPE invocation for s...
CVE-2024-50121HIGH7.8In the Linux kernel, the following vulnerability has been resolved: nfsd: cancel nfsd_shrinker_work using sync mode in ...
CVE-2024-50115HIGH7.1In the Linux kernel, the following vulnerability has been resolved: KVM: nSVM: Ignore nCR3[4:0] when loading PDPTEs fro...
CVE-2024-50114HIGH7.8In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Unregister redistributor for failed vCP...
CVE-2024-50112HIGH7.8In the Linux kernel, the following vulnerability has been resolved: x86/lam: Disable ADDRESS_MASKING in most cases Lin...
CVE-2024-50106HIGH7In the Linux kernel, the following vulnerability has been resolved: nfsd: fix race between laundromat and free_stateid ...
CVE-2024-9579HIGH7.5A potential vulnerability was discovered in certain Poly video conferencing devices. The firmware flaw does not properly...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now