2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-42302HIGH7.8In the Linux kernel, the following vulnerability has been resolved: PCI/DPC: Fix use-after-free on concurrent DPC and h...
CVE-2024-42301HIGH7.8In the Linux kernel, the following vulnerability has been resolved: dev/parport: fix the array out-of-bounds risk Fixe...
CVE-2024-42292HIGH7.1In the Linux kernel, the following vulnerability has been resolved: kobject_uevent: Fix OOB access within zap_modalias_...
CVE-2024-42285HIGH7.8In the Linux kernel, the following vulnerability has been resolved: RDMA/iwcm: Fix a use-after-free related to destroyi...
CVE-2024-42284HIGH7.8In the Linux kernel, the following vulnerability has been resolved: tipc: Return non-zero value from tipc_udp_addr2str(...
CVE-2024-42280HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mISDN: Fix a use after free in hfcmulti_tx() Don't...
CVE-2024-42271HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net/iucv: fix use after free in iucv_sock_close() ...
CVE-2024-42264HIGH7.1In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Prevent out of bounds access in performanc...
CVE-2024-7886HIGH8.5A vulnerability has been found in Scooter Software Beyond Compare up to 3.3.5.15075 and classified as critical. Affected...
CVE-2024-43395HIGH8.2CraftOS-PC 2 is a rewrite of the desktop port of CraftOS from the popular Minecraft mod ComputerCraft using C++ and a mo...
CVE-2024-43472HIGH8.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2024-7646HIGH8.8A security issue was discovered in ingress-nginx where an actor with permission to create Ingress objects (in the `netwo...
CVE-2024-42995HIGH8.3VTiger CRM <= 8.1.0 does not correctly check user privileges. A low-privileged user can interact directly with the "Migr...
CVE-2024-42994HIGH7.2VTiger CRM <= 8.1.0 does not properly sanitize user input before using it in a SQL statement, leading to a SQL Injection...
CVE-2024-4763HIGH7.8An insecure driver vulnerability was reported in Lenovo Display Control Center (LDCC) and Lenovo Accessories and Display...
CVE-2024-42486HIGH7.2Cilium is a networking, observability, and security solution with an eBPF-based dataplane. In versions on the 1.15.x bra...
CVE-2024-2175HIGH7.8An insecure permissions vulnerability was reported in Lenovo Display Control Center (LDCC) and Lenovo Accessories and Di...
CVE-2024-7145HIGH8.8The JetElements plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.6.20 ...
CVE-2024-7146HIGH8.8The JetTabs for Elementor plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and includin...
CVE-2024-7630HIGH7.5The Relevanssi – A Better Search plugin for WordPress is vulnerable to Information Exposure in all versions up to, and i...
CVE-2024-7853HIGH8.8A vulnerability was found in SourceCodester Yoga Class Registration System up to 1.0. It has been classified as critical...
CVE-2024-7849HIGH8.8** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Link DNS-120, DNR-202L...
CVE-2024-7845HIGH7.5A vulnerability was found in SourceCodester Online Graduate Tracer System 1.0 and classified as critical. Affected by th...
CVE-2024-43378HIGH7.8calamares-nixos-extensions provides Calamares branding and modules for NixOS, a distribution of GNU/Linux. Users who ins...
CVE-2024-43370HIGH7.2gettext.js is a GNU gettext port for node and the browser. There is a cross-site scripting (XSS) injection if `.po` dict...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now