2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-47742 | HIGH | 7.8 | 0.3% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: firmware_loader: Block path traversal Most firmwar... |
| CVE-2024-47741 | HIGH | 7 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: btrfs: fix race setting file private on concurrent ... |
| CVE-2024-47730 | HIGH | 7.8 | 0.3% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/qm - inject error before stopping... |
| CVE-2024-47727 | HIGH | 7.8 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: x86/tdx: Fix "in-kernel MMIO" check TDX only suppo... |
| CVE-2024-47723 | HIGH | 7.1 | 0.3% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: jfs: fix out-of-bounds in dbNextAG() and diAlloc() ... |
| CVE-2024-48231 | HIGH | 7.2 | 0.5% | Oct 21, 2024 | Funadmin 5.0.2 is vulnerable to SQL Injection via the selectFields parameter in the index method of \backend\controller\... |
| CVE-2024-47721 | HIGH | 7.1 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: remove unused C2H event ID RTW89_MAC_C... |
| CVE-2024-47719 | HIGH | 7.8 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: iommufd: Protect against overflow of ALIGN() during... |
| CVE-2024-47718 | HIGH | 7.8 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: always wait for both firmware loading ... |
| CVE-2024-47711 | HIGH | 7.8 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: af_unix: Don't return OOB skb in manage_oob(). syz... |
| CVE-2024-47701 | HIGH | 7.8 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: ext4: avoid OOB when system.data xattr changes unde... |
| CVE-2024-47698 | HIGH | 7.8 | 0.3% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: drivers: media: dvb-frontends/rtl2832: fix an out-o... |
| CVE-2024-47697 | HIGH | 7.8 | 0.3% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: drivers: media: dvb-frontends/rtl2830: fix an out-o... |
| CVE-2024-47696 | HIGH | 7.8 | 0.3% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: RDMA/iwcm: Fix WARNING:at_kernel/workqueue.c:#check... |
| CVE-2024-47695 | HIGH | 7.8 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: RDMA/rtrs-clt: Reset cid to con_num - 1 to stay in ... |
| CVE-2024-47691 | HIGH | 7.8 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid use-after-free in f2fs_stop_gc_t... |
| CVE-2024-47686 | HIGH | 7.1 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: ep93xx: clock: Fix off by one in ep93xx_div_recalc_... |
| CVE-2024-47682 | HIGH | 7.8 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: scsi: sd: Fix off-by-one error in sd_read_block_cha... |
| CVE-2024-47676 | HIGH | 7.8 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb.c: fix UAF of vma in hugetlb fault pathw... |
| CVE-2024-47675 | HIGH | 7.8 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: bpf: Fix use-after-free in bpf_uprobe_multi_link_at... |
| CVE-2024-47328 | HIGH | 7.2 | 0.5% | Oct 21, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Aman FunnelKit Aut... |
| CVE-2024-43945 | HIGH | 8.8 | 0.2% | Oct 21, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Latepoint LatePoint allows Cross Site Request Forgery.This issue affe... |
| CVE-2024-8625 | HIGH | 7.2 | 2.3% | Oct 21, 2024 | The TS Poll WordPress plugin before 2.4.0 does not sanitize and escape a parameter before using it in a SQL statement, ... |
| CVE-2024-10202 | HIGH | 8.8 | 1.1% | Oct 21, 2024 | Administrative Management System from Wellchoose has an OS Command Injection vulnerability, allowing remote attackers wi... |
| CVE-2024-10201 | HIGH | 8.8 | 0.6% | Oct 21, 2024 | Administrative Management System from Wellchoose does not properly validate uploaded file types, allowing remote attacke... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now