2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-9675 | MEDIUM | 4.4 | 0.4% | Oct 9, 2024 | A vulnerability was found in Buildah. Cache mounts do not properly validate that user-specified paths for the cache are ... |
| CVE-2024-9671 | MEDIUM | 5.3 | 0.3% | Oct 9, 2024 | A vulnerability was found in 3Scale. There is no auth mechanism to see a PDF invoice of a Developer user if the URL is k... |
| CVE-2024-7294 | MEDIUM | 6.5 | 0.3% | Oct 9, 2024 | In Progress® Telerik® Report Server versions prior to 2024 Q3 (10.2.24.806), an HTTP DoS attack is possible on anonymous... |
| CVE-2024-47673 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: pause TCM when the firmware is ... |
| CVE-2024-47671 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: USB: usbtmc: prevent kernel-usb-infoleak The syzbo... |
| CVE-2024-47669 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix state management in error path of log w... |
| CVE-2024-47668 | MEDIUM | 4.7 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: lib/generic-radix-tree.c: Fix rare race in __genrad... |
| CVE-2024-47667 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: PCI: keystone: Add workaround for Errata #i2037 (AM... |
| CVE-2024-47666 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: scsi: pm80xx: Set phy->enable_completion only when ... |
| CVE-2024-47665 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Error out instead on BUG_ON() in... |
| CVE-2024-47664 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: spi: hisi-kunpeng: Add verification for the max_fre... |
| CVE-2024-47663 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: staging: iio: frequency: ad9834: Validate frequency... |
| CVE-2024-47662 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Remove register from DCN35 DMCUB d... |
| CVE-2024-47661 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Avoid overflow from uint32_t to ui... |
| CVE-2024-47660 | MEDIUM | 4.7 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: fsnotify: clear PARENT_WATCHED flags lazily In som... |
| CVE-2024-47658 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: crypto: stm32/cryp - call finalize with bh disabled... |
| CVE-2024-46870 | MEDIUM | 4.7 | 0.1% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Disable DMCUB timeout for DCN35 [... |
| CVE-2024-46237 | MEDIUM | 5.4 | 0.3% | Oct 9, 2024 | PHPGurukul Hospital Management System 4.0 is vulnerable to Cross Site Scripting (XSS) via the patname, pataddress, and m... |
| CVE-2024-47420 | MEDIUM | 5.5 | 0.3% | Oct 9, 2024 | Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to discl... |
| CVE-2024-47419 | MEDIUM | 5.5 | 0.3% | Oct 9, 2024 | Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to discl... |
| CVE-2024-45145 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | Lightroom Desktop versions 7.4.1, 13.5, 12.5.1 and earlier are affected by an out-of-bounds read vulnerability that coul... |
| CVE-2024-20787 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | Substance3D - Painter versions 10.0.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to... |
| CVE-2024-9451 | MEDIUM | 6.4 | 0.4% | Oct 9, 2024 | The Embed PDF Viewer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'height' and 'width' para... |
| CVE-2024-9449 | MEDIUM | 6.4 | 0.3% | Oct 9, 2024 | The Auto iFrame plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'tag' parameter in all version... |
| CVE-2024-39586 | MEDIUM | 4.3 | 0.2% | Oct 9, 2024 | Dell AppSync Server, version 4.3 through 4.6, contains an XML External Entity Injection vulnerability. An adjacent high ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now