2024 CVE Vulnerabilities

39,221 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-50183MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: scsi: lpfc: Ensure DA_ID handling completion before...
CVE-2024-50182MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: secretmem: disable memfd_secret() if arch cannot se...
CVE-2024-50179MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ceph: remove the incorrect Fw reference check when ...
CVE-2024-50178MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: cpufreq: loongson3: Use raw_smp_processor_id() in d...
CVE-2024-50177MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: fix a UBSAN warning in DML2.1 Whe...
CVE-2024-50176MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: remoteproc: k3-r5: Fix error handling when power-up...
CVE-2024-50175MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: qcom: camss: Remove use_count guard in stop_...
CVE-2024-50174MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Fix race when converting group handle ...
CVE-2024-50173MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/panthor: Fix access to uninitialized variable i...
CVE-2024-10621MEDIUM6.4The Simple Shortcode for Google Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ...
CVE-2024-10989MEDIUM6.5A vulnerability classified as critical has been found in code-projects E-Health Care System 1.0. This affects an unknown...
CVE-2024-10987MEDIUM6.5A vulnerability was found in code-projects E-Health Care System 1.0. It has been declared as critical. Affected by this ...
CVE-2024-48011MEDIUM6.5Dell PowerProtect DD, versions prior to 7.7.5.50, contains an Exposure of Sensitive Information to an Unauthorized Actor...
CVE-2024-51987MEDIUM5.4Duende.AccessTokenManagement.OpenIdConnect is a set of .NET libraries that manage OAuth and OpenId Connect access tokens...
CVE-2024-8810MEDIUM6.5A GitHub App installed in organizations could upgrade some permissions from read to write access without approval from a...
CVE-2024-51434MEDIUM6.1Inconsistent <plaintext> tag parsing allows for XSS in Froala WYSIWYG editor 4.3.0 and earlier.
CVE-2024-49524MEDIUM5.4Adobe Experience Manager versions 6.5.20 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerabilit...
CVE-2024-49523MEDIUM5.4Adobe Experience Manager versions 6.5.20 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-36064MEDIUM6.2The NLL com.nll.cb (aka ACR Phone) application through 0.330-playStore-NoAccessibility-arm8 for Android allows any insta...
CVE-2024-36062MEDIUM4The com.callassistant.android (aka AI Call Assistant & Screener) application 1.174 for Android enables any installed app...
CVE-2024-10824MEDIUM6.5An authorization bypass vulnerability was identified in GitHub Enterprise Server that allowed unauthorized internal user...
CVE-2024-50599MEDIUM6.1A reflected Cross-Site Scripting (XSS) vulnerability has been identified in Zimbra Collaboration Suite (ZCS) 8.8.15, aff...
CVE-2024-51994MEDIUM5.4Combodo iTop is a web based IT Service Management tool. In affected versions uploading a text file containing some java ...
CVE-2024-48290MEDIUM4.3An issue in the Bluetooth Low Energy implementation of Realtek RTL8762E BLE SDK v1.4.0 allows attackers to cause a Denia...
CVE-2024-48954MEDIUM6.4An issue was discovered in Logpoint before 7.5.0. Unvalidated input during the EventHub Collector setup by an authentica...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now