2024 CVE Vulnerabilities
39,222 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-46833 | HIGH | 7.8 | 0.2% | Sep 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: hns3: void array out of bound when loop tnl_nu... |
| CVE-2024-46831 | HIGH | 7.8 | 0.2% | Sep 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: microchip: vcap: Fix use-after-free error in k... |
| CVE-2024-46830 | HIGH | 7.8 | 0.2% | Sep 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: KVM: x86: Acquire kvm->srcu when handling KVM_SET_V... |
| CVE-2024-46828 | HIGH | 7.8 | 0.3% | Sep 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: sched: sch_cake: fix bulk flow accounting logic for... |
| CVE-2024-46821 | HIGH | 7.8 | 0.3% | Sep 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: Fix negative array index read Avoid us... |
| CVE-2024-46820 | HIGH | 7.8 | 0.2% | Sep 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu/vcn: remove irq disabling in vcn 5 suspe... |
| CVE-2024-46818 | HIGH | 7.8 | 0.3% | Sep 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check gpio_id before used as array... |
| CVE-2024-46815 | HIGH | 7.8 | 0.3% | Sep 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check num_valid_sets before access... |
| CVE-2024-46814 | HIGH | 7.8 | 0.2% | Sep 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check msg_id before processing tra... |
| CVE-2024-46813 | HIGH | 7.8 | 0.3% | Sep 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check link_index before accessing ... |
| CVE-2024-46812 | HIGH | 7.8 | 0.3% | Sep 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Skip inactive planes within ModeSu... |
| CVE-2024-46811 | HIGH | 7.8 | 0.2% | Sep 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix index may exceed array range w... |
| CVE-2024-46804 | HIGH | 7.8 | 0.2% | Sep 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Add array index check for hdcp ddc... |
| CVE-2024-46441 | HIGH | 8.8 | 0.6% | Sep 27, 2024 | An arbitrary file upload vulnerability in YPay 1.2.0 allows attackers to execute arbitrary code via a ZIP archive to the... |
| CVE-2024-8644 | HIGH | 7.5 | 0.3% | Sep 27, 2024 | Cleartext Storage of Sensitive Information in a Cookie vulnerability in Oceanic Software ValeApp allows Protocol Manipul... |
| CVE-2024-8609 | HIGH | 7.5 | 0.5% | Sep 27, 2024 | Insertion of Sensitive Information into Log File vulnerability in Oceanic Software ValeApp allows Query System for Infor... |
| CVE-2024-9136 | HIGH | 7.5 | 0.2% | Sep 27, 2024 | Access permission verification vulnerability in the App Multiplier module Impact: Successful exploitation of this vulner... |
| CVE-2024-47294 | HIGH | 7.5 | 0.2% | Sep 27, 2024 | Access permission verification vulnerability in the input method framework module Impact: Successful exploitation of thi... |
| CVE-2024-47293 | HIGH | 7.5 | 0.2% | Sep 27, 2024 | Out-of-bounds write vulnerability in the HAL-WIFI module Impact: Successful exploitation of this vulnerability may affec... |
| CVE-2024-38861 | HIGH | 7.4 | 0.2% | Sep 27, 2024 | Improper Certificate Validation in Checkmk Exchange plugin MikroTik allows attackers in MitM position to intercept traff... |
| CVE-2024-39435 | HIGH | 7.8 | 0.1% | Sep 27, 2024 | In Logmanager service, there is a possible missing verification incorrect input. This could lead to local escalation of ... |
| CVE-2024-9029 | HIGH | 7.5 | 0.5% | Sep 27, 2024 | A flaw was found in the freeimage library. Processing a crafted image can cause a buffer over-read of 1 byte in the read... |
| CVE-2024-7400 | HIGH | 8.5 | 0.2% | Sep 27, 2024 | The vulnerability potentially allowed an attacker to misuse ESET’s file operations during the removal of a detected file... |
| CVE-2024-9130 | HIGH | 7.2 | 0.7% | Sep 27, 2024 | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to time-based SQL Injection via... |
| CVE-2024-8922 | HIGH | 8.8 | 0.8% | Sep 27, 2024 | The Product Enquiry for WooCommerce, WooCommerce product catalog plugin for WordPress is vulnerable to PHP Object Inject... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now