2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-51735 | HIGH | 8.7 | 0.4% | Nov 5, 2024 | Osmedeus is a Workflow Engine for Offensive Security. Cross-site Scripting (XSS) occurs on the Osmedues web server when ... |
| CVE-2024-51382 | HIGH | 8.4 | 0.2% | Nov 5, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in JATOS v3.9.3 allows an attacker to reset the administrator's password... |
| CVE-2024-51381 | HIGH | 8.4 | 0.2% | Nov 5, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in JATOS v3.9.3 that allows attackers to perform actions reserved for ad... |
| CVE-2024-51380 | HIGH | 8.4 | 0.5% | Nov 5, 2024 | Stored Cross-Site Scripting (XSS) vulnerability discovered in the Properties Component of JATOS v3.9.3. This flaw allows... |
| CVE-2024-51379 | HIGH | 8.4 | 0.6% | Nov 5, 2024 | Stored Cross-Site Scripting (XSS) vulnerability discovered in JATOS v3.9.3. The vulnerability exists in the description ... |
| CVE-2024-51240 | HIGH | 8 | 0.3% | Nov 5, 2024 | An issue in the luci-mod-rpc package in OpenWRT Luci LTS allows for privilege escalation from an admin account to root v... |
| CVE-2024-50333 | HIGH | 8.8 | 0.4% | Nov 5, 2024 | SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. User input is ... |
| CVE-2024-50332 | HIGH | 8.8 | 0.4% | Nov 5, 2024 | SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. Insufficient i... |
| CVE-2024-49774 | HIGH | 7.2 | 0.5% | Nov 5, 2024 | SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. SuiteCRM relie... |
| CVE-2024-49772 | HIGH | 8.8 | 0.4% | Nov 5, 2024 | SuiteCRM is an open-source, enterprise-ready Customer Relationship Management (CRM) software application. In SuiteCRM ve... |
| CVE-2024-50131 | HIGH | 7.8 | 0.2% | Nov 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: tracing: Consider the NULL character when validatin... |
| CVE-2024-50130 | HIGH | 7.8 | 0.2% | Nov 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: bpf: must hold reference on net namespac... |
| CVE-2024-50129 | HIGH | 7.8 | 0.2% | Nov 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: pse-pd: Fix out of bound for loop Adjust the ... |
| CVE-2024-50128 | HIGH | 7.1 | 0.2% | Nov 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: wwan: fix global oob in wwan_rtnl_policy The ... |
| CVE-2024-50127 | HIGH | 7.8 | 0.2% | Nov 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: sched: fix use-after-free in taprio_change() ... |
| CVE-2024-50126 | HIGH | 7.8 | 0.2% | Nov 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: sched: use RCU read-side critical section in t... |
| CVE-2024-50125 | HIGH | 7.8 | 0.3% | Nov 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: Fix UAF on sco_sock_timeout conn->... |
| CVE-2024-50124 | HIGH | 7.8 | 0.2% | Nov 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: ISO: Fix UAF on iso_sock_timeout conn->... |
| CVE-2024-50123 | HIGH | 7.1 | 0.2% | Nov 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: bpf: Add the missing BPF_LINK_TYPE invocation for s... |
| CVE-2024-50121 | HIGH | 7.8 | 0.2% | Nov 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: nfsd: cancel nfsd_shrinker_work using sync mode in ... |
| CVE-2024-50115 | HIGH | 7.1 | 0.2% | Nov 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: KVM: nSVM: Ignore nCR3[4:0] when loading PDPTEs fro... |
| CVE-2024-50114 | HIGH | 7.8 | 0.2% | Nov 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: KVM: arm64: Unregister redistributor for failed vCP... |
| CVE-2024-50112 | HIGH | 7.8 | 0.3% | Nov 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: x86/lam: Disable ADDRESS_MASKING in most cases Lin... |
| CVE-2024-50106 | HIGH | 7 | 0.2% | Nov 5, 2024 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix race between laundromat and free_stateid ... |
| CVE-2024-9579 | HIGH | 7.5 | 0.4% | Nov 5, 2024 | A potential vulnerability was discovered in certain Poly video conferencing devices. The firmware flaw does not properly... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now