2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-53112 | MEDIUM | 5.5 | 0.2% | Dec 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: ocfs2: uncache inode which has failed entering the ... |
| CVE-2024-53111 | MEDIUM | 5.5 | 0.2% | Dec 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm/mremap: fix address wraparound in move_page_tabl... |
| CVE-2024-53110 | MEDIUM | 5.5 | 0.2% | Dec 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: vp_vdpa: fix id_table array not null terminated err... |
| CVE-2024-53109 | MEDIUM | 5.5 | 0.2% | Dec 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: nommu: pass NULL argument to vma_iter_prealloc() W... |
| CVE-2024-53107 | MEDIUM | 5.5 | 0.2% | Dec 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: fs/proc/task_mmu: prevent integer overflow in pagem... |
| CVE-2024-53105 | MEDIUM | 5.5 | 0.2% | Dec 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm: page_alloc: move mlocked flag clearance into fr... |
| CVE-2024-52503 | MEDIUM | 6.5 | 0.3% | Dec 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tailored Media Tai... |
| CVE-2024-52502 | MEDIUM | 6.5 | 0.3% | Dec 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ImbaSynergy ImbaCh... |
| CVE-2024-52494 | MEDIUM | 5.9 | 0.3% | Dec 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Matt Varone, Tim B... |
| CVE-2024-52493 | MEDIUM | 5.9 | 0.3% | Dec 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Josh Leuze Meteor ... |
| CVE-2024-52492 | MEDIUM | 5.9 | 0.3% | Dec 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in gopiplus Image hor... |
| CVE-2024-52491 | MEDIUM | 5.9 | 0.3% | Dec 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sanil Shakya Stick... |
| CVE-2024-52489 | MEDIUM | 5.9 | 0.3% | Dec 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in udidol Add Chat Ap... |
| CVE-2024-52487 | MEDIUM | 6.5 | 0.3% | Dec 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in webcodingplace Ult... |
| CVE-2024-52486 | MEDIUM | 6.5 | 0.3% | Dec 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SolverWp Elementor... |
| CVE-2024-52478 | MEDIUM | 5.4 | 0.3% | Dec 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Astoundify Jobify ... |
| CVE-2024-51900 | MEDIUM | 5.9 | 0.3% | Dec 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in James Hunt What Wo... |
| CVE-2024-33053 | MEDIUM | 6.7 | 0.1% | Dec 2, 2024 | Memory corruption when multiple threads try to unregister the CVP buffer at the same time. |
| CVE-2024-33039 | MEDIUM | 6.7 | 0.1% | Dec 2, 2024 | Memory corruption when PAL client calls PAL service APIs by passing a random value as handle and the handle is not valid... |
| CVE-2024-33037 | MEDIUM | 6.1 | 0.1% | Dec 2, 2024 | Information disclosure as NPU firmware can send invalid IPC message to NPU driver as the driver doesn`t validate the IPC... |
| CVE-2024-33036 | MEDIUM | 6.7 | 0.1% | Dec 2, 2024 | Memory corruption while parsing sensor packets in camera driver, user-space variable is used while allocating memory in ... |
| CVE-2024-20139 | MEDIUM | 6.5 | 0.1% | Dec 2, 2024 | In Bluetooth firmware, there is a possible firmware asssert due to improper handling of exceptional conditions. This cou... |
| CVE-2024-20136 | MEDIUM | 6.2 | 0.1% | Dec 2, 2024 | In da, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclo... |
| CVE-2024-20135 | MEDIUM | 6.7 | 0.1% | Dec 2, 2024 | In soundtrigger, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalat... |
| CVE-2024-20134 | MEDIUM | 6.7 | 0.1% | Dec 2, 2024 | In ril, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now