2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-9675MEDIUM4.4A vulnerability was found in Buildah. Cache mounts do not properly validate that user-specified paths for the cache are ...
CVE-2024-9671MEDIUM5.3A vulnerability was found in 3Scale. There is no auth mechanism to see a PDF invoice of a Developer user if the URL is k...
CVE-2024-7294MEDIUM6.5In Progress® Telerik® Report Server versions prior to 2024 Q3 (10.2.24.806), an HTTP DoS attack is possible on anonymous...
CVE-2024-47673MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: pause TCM when the firmware is ...
CVE-2024-47671MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: USB: usbtmc: prevent kernel-usb-infoleak The syzbo...
CVE-2024-47669MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix state management in error path of log w...
CVE-2024-47668MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: lib/generic-radix-tree.c: Fix rare race in __genrad...
CVE-2024-47667MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: PCI: keystone: Add workaround for Errata #i2037 (AM...
CVE-2024-47666MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: scsi: pm80xx: Set phy->enable_completion only when ...
CVE-2024-47665MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Error out instead on BUG_ON() in...
CVE-2024-47664MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: spi: hisi-kunpeng: Add verification for the max_fre...
CVE-2024-47663MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: staging: iio: frequency: ad9834: Validate frequency...
CVE-2024-47662MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Remove register from DCN35 DMCUB d...
CVE-2024-47661MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Avoid overflow from uint32_t to ui...
CVE-2024-47660MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: fsnotify: clear PARENT_WATCHED flags lazily In som...
CVE-2024-47658MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: stm32/cryp - call finalize with bh disabled...
CVE-2024-46870MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Disable DMCUB timeout for DCN35 [...
CVE-2024-46237MEDIUM5.4PHPGurukul Hospital Management System 4.0 is vulnerable to Cross Site Scripting (XSS) via the patname, pataddress, and m...
CVE-2024-47420MEDIUM5.5Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to discl...
CVE-2024-47419MEDIUM5.5Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to discl...
CVE-2024-45145MEDIUM5.5Lightroom Desktop versions 7.4.1, 13.5, 12.5.1 and earlier are affected by an out-of-bounds read vulnerability that coul...
CVE-2024-20787MEDIUM5.5Substance3D - Painter versions 10.0.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to...
CVE-2024-9451MEDIUM6.4The Embed PDF Viewer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'height' and 'width' para...
CVE-2024-9449MEDIUM6.4The Auto iFrame plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'tag' parameter in all version...
CVE-2024-39586MEDIUM4.3Dell AppSync Server, version 4.3 through 4.6, contains an XML External Entity Injection vulnerability. An adjacent high ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now