2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-47665MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Error out instead on BUG_ON() in...
CVE-2024-47664MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: spi: hisi-kunpeng: Add verification for the max_fre...
CVE-2024-47663MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: staging: iio: frequency: ad9834: Validate frequency...
CVE-2024-47662MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Remove register from DCN35 DMCUB d...
CVE-2024-47661MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Avoid overflow from uint32_t to ui...
CVE-2024-47660MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: fsnotify: clear PARENT_WATCHED flags lazily In som...
CVE-2024-47658MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: stm32/cryp - call finalize with bh disabled...
CVE-2024-46870MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Disable DMCUB timeout for DCN35 [...
CVE-2024-46237MEDIUM5.4PHPGurukul Hospital Management System 4.0 is vulnerable to Cross Site Scripting (XSS) via the patname, pataddress, and m...
CVE-2024-47420MEDIUM5.5Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to discl...
CVE-2024-47419MEDIUM5.5Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to discl...
CVE-2024-45145MEDIUM5.5Lightroom Desktop versions 7.4.1, 13.5, 12.5.1 and earlier are affected by an out-of-bounds read vulnerability that coul...
CVE-2024-20787MEDIUM5.5Substance3D - Painter versions 10.0.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to...
CVE-2024-9451MEDIUM6.4The Embed PDF Viewer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'height' and 'width' para...
CVE-2024-9449MEDIUM6.4The Auto iFrame plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'tag' parameter in all version...
CVE-2024-39586MEDIUM4.3Dell AppSync Server, version 4.3 through 4.6, contains an XML External Entity Injection vulnerability. An adjacent high ...
CVE-2024-39440MEDIUM4.4In DRM service, there is a possible system crash due to null pointer dereference. This could lead to local denial of ser...
CVE-2024-39439MEDIUM4.4In DRM service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o...
CVE-2024-39438MEDIUM6.7In linkturbonative service, there is a possible command injection due to improper input validation. This could lead to l...
CVE-2024-39437MEDIUM6.7In linkturbonative service, there is a possible command injection due to improper input validation. This could lead to l...
CVE-2024-39436MEDIUM6.7In linkturbonative service, there is a possible command injection due to improper input validation. This could lead to l...
CVE-2024-5968MEDIUM4.8The Photo Gallery by 10Web WordPress plugin before 1.8.28 does not properly sanitise and escape some of its Gallery set...
CVE-2024-42934MEDIUM5OpenIPMI before 2.0.36 has an out-of-bounds array access (for authentication type) in the ipmi_sim simulator, resulting ...
CVE-2024-7963MEDIUM6.4The CMSMasters Content Composer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's multi...
CVE-2024-36814MEDIUM4.9An arbitrary file read vulnerability in Adguard Home before v0.107.52 allows authenticated attackers to access arbitrary...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now