2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-56691MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mfd: intel_soc_pmic_bxtwc: Use IRQ domain for USB T...
CVE-2024-56690MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: pcrypt - Call crypto layer directly when pa...
CVE-2024-56689MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: epf-mhi: Avoid NULL dereference if D...
CVE-2024-56688MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: sunrpc: clear XPRT_SOCK_UPD_TIMEOUT when reset tran...
CVE-2024-56687MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: usb: musb: Fix hardware lockup on first Rx endpoint...
CVE-2024-56686Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-56685MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ASoC: mediatek: Check num_codecs is not zero to avo...
CVE-2024-56684HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mailbox: mtk-cmdq: fix wrong use of sizeof in cmdq_...
CVE-2024-56683MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/vc4: hdmi: Avoid hang with debug registers when...
CVE-2024-56682MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: irqchip/riscv-aplic: Prevent crash when MSI domain ...
CVE-2024-56681MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: bcm - add error check in the ahash_hmac_ini...
CVE-2024-56680MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: intel/ipu6: do not handle interrupts when de...
CVE-2024-56679MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: octeontx2-pf: handle otx2_mbox_get_rsp errors in ot...
CVE-2024-56678HIGH7.8In the Linux kernel, the following vulnerability has been resolved: powerpc/mm/fault: Fix kfence page fault reporting ...
CVE-2024-56677MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: powerpc/fadump: Move fadump_cma_init to setup_arch(...
CVE-2024-56676MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: thermal: testing: Initialize some variables annoted...
CVE-2024-46973HIGH7.8Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kern...
CVE-2024-46972HIGH7.8Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger use-after-free kern...
CVE-2024-43705HIGH7.8Software installed and run as a non-privileged user can trigger the GPU kernel driver to write to arbitrary read-only sy...
CVE-2024-54775MEDIUM4.8Dcat-Admin v2.2.0-beta and v2.2.2-beta contains a Cross-Site Scripting (XSS) vulnerability via /admin/auth/menu and /adm...
CVE-2024-54774MEDIUM4.8Dcat Admin v2.2.0-beta contains a cross-site scripting (XSS) vulnerability in /admin/articles/create.
CVE-2024-50714HIGH7.5A Server-Side Request Forgery (SSRF) in smarts-srl.com Smart Agent v.1.1.0 allows a remote attacker to obtain sensitive ...
CVE-2024-50717CRITICAL9.8SQL injection vulnerability in Smart Agent v.1.1.0 allows a remote attacker to execute arbitrary code via the client par...
CVE-2024-50716CRITICAL9.8SQL injection vulnerability in Smart Agent v.1.1.0 allows a remote attacker to execute arbitrary code via the id paramet...
CVE-2024-50715HIGH7.5An issue in smarts-srl.com Smart Agent v.1.1.0 allows a remote attacker to obtain sensitive information via command inje...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now