2024 CVE Vulnerabilities

39,223 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-46740HIGH7.8In the Linux kernel, the following vulnerability has been resolved: binder: fix UAF caused by offsets overwrite Binder...
CVE-2024-46738HIGH7.8In the Linux kernel, the following vulnerability has been resolved: VMCI: Fix use-after-free when removing resource in ...
CVE-2024-46736HIGH7.8In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double put of @cfile in smb2_renam...
CVE-2024-47001HIGH8.8Hidden functionality issue in multiple digital video recorders provided by TAKENAKA ENGINEERING CO., LTD. allows a remot...
CVE-2024-46731HIGH7.1In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: fix the Out-of-bounds read warning usi...
CVE-2024-46729HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix incorrect size calculation for...
CVE-2024-46725HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix out-of-bounds write warning Check ...
CVE-2024-46724HIGH7.1In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix out-of-bounds read of df_v1_7_chann...
CVE-2024-46723HIGH7.1In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix ucode out-of-bounds read warning C...
CVE-2024-46722HIGH7.1In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix mc_data out-of-bounds read warning ...
CVE-2024-43778HIGH8.8OS command injection vulnerability in multiple digital video recorders provided by TAKENAKA ENGINEERING CO., LTD. allows...
CVE-2024-41929HIGH8.8Improper authentication vulnerability in multiple digital video recorders provided by TAKENAKA ENGINEERING CO., LTD. all...
CVE-2024-42404HIGH8.8SQL injection vulnerability in Welcart e-Commerce prior to 2.11.2 allows an attacker who can login to the product to obt...
CVE-2024-45679HIGH8.4Heap-based buffer overflow vulnerability in Assimp versions prior to 5.4.3 allows a local attacker to execute arbitrary ...
CVE-2024-43969HIGH7.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Spiffy Plugins Spi...
CVE-2024-46982HIGH7.5Next.js is a React framework for building full-stack web applications. By sending a crafted HTTP request, it is possible...
CVE-2024-8957HIGH7.2PTZOptics PT30X-SDI/NDI-xx before firmware 6.3.40 is vulnerable to an OS command injection issue. The camera does not su...
CVE-2024-8905HIGH8.8Inappropriate implementation in V8 in Google Chrome prior to 129.0.6668.58 allowed a remote attacker to potentially expl...
CVE-2024-8904HIGH8.8Type Confusion in V8 in Google Chrome prior to 129.0.6668.58 allowed a remote attacker to potentially exploit heap corru...
CVE-2024-45398HIGH8.8Contao is an Open Source CMS. In affected versions a back end user with access to the file manager can upload malicious ...
CVE-2024-8949HIGH8.8A vulnerability classified as critical has been found in SourceCodester Online Eyewear Shop 1.0. This affects an unknown...
CVE-2024-8948HIGH7.5A vulnerability was found in MicroPython 1.23.0. It has been rated as critical. Affected by this issue is the function m...
CVE-2024-8947HIGH8.1A vulnerability was found in MicroPython 1.22.2. It has been declared as critical. Affected by this vulnerability is an ...
CVE-2024-8946HIGH7.5A vulnerability was found in MicroPython 1.23.0. It has been classified as critical. Affected is the function mp_vfs_umo...
CVE-2024-8900HIGH7.5An attacker could write data to the user's clipboard, bypassing the user prompt, during a certain sequence of navigation...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now