2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-47665 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: i3c: mipi-i3c-hci: Error out instead on BUG_ON() in... |
| CVE-2024-47664 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: spi: hisi-kunpeng: Add verification for the max_fre... |
| CVE-2024-47663 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: staging: iio: frequency: ad9834: Validate frequency... |
| CVE-2024-47662 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Remove register from DCN35 DMCUB d... |
| CVE-2024-47661 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Avoid overflow from uint32_t to ui... |
| CVE-2024-47660 | MEDIUM | 4.7 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: fsnotify: clear PARENT_WATCHED flags lazily In som... |
| CVE-2024-47658 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: crypto: stm32/cryp - call finalize with bh disabled... |
| CVE-2024-46870 | MEDIUM | 4.7 | 0.1% | Oct 9, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Disable DMCUB timeout for DCN35 [... |
| CVE-2024-46237 | MEDIUM | 5.4 | 0.3% | Oct 9, 2024 | PHPGurukul Hospital Management System 4.0 is vulnerable to Cross Site Scripting (XSS) via the patname, pataddress, and m... |
| CVE-2024-47420 | MEDIUM | 5.5 | 0.3% | Oct 9, 2024 | Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to discl... |
| CVE-2024-47419 | MEDIUM | 5.5 | 0.3% | Oct 9, 2024 | Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to discl... |
| CVE-2024-45145 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | Lightroom Desktop versions 7.4.1, 13.5, 12.5.1 and earlier are affected by an out-of-bounds read vulnerability that coul... |
| CVE-2024-20787 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | Substance3D - Painter versions 10.0.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to... |
| CVE-2024-9451 | MEDIUM | 6.4 | 0.4% | Oct 9, 2024 | The Embed PDF Viewer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'height' and 'width' para... |
| CVE-2024-9449 | MEDIUM | 6.4 | 0.3% | Oct 9, 2024 | The Auto iFrame plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'tag' parameter in all version... |
| CVE-2024-39586 | MEDIUM | 4.3 | 0.2% | Oct 9, 2024 | Dell AppSync Server, version 4.3 through 4.6, contains an XML External Entity Injection vulnerability. An adjacent high ... |
| CVE-2024-39440 | MEDIUM | 4.4 | 0.1% | Oct 9, 2024 | In DRM service, there is a possible system crash due to null pointer dereference. This could lead to local denial of ser... |
| CVE-2024-39439 | MEDIUM | 4.4 | 0.1% | Oct 9, 2024 | In DRM service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial o... |
| CVE-2024-39438 | MEDIUM | 6.7 | 0.3% | Oct 9, 2024 | In linkturbonative service, there is a possible command injection due to improper input validation. This could lead to l... |
| CVE-2024-39437 | MEDIUM | 6.7 | 0.3% | Oct 9, 2024 | In linkturbonative service, there is a possible command injection due to improper input validation. This could lead to l... |
| CVE-2024-39436 | MEDIUM | 6.7 | 0.3% | Oct 9, 2024 | In linkturbonative service, there is a possible command injection due to improper input validation. This could lead to l... |
| CVE-2024-5968 | MEDIUM | 4.8 | 0.3% | Oct 9, 2024 | The Photo Gallery by 10Web WordPress plugin before 1.8.28 does not properly sanitise and escape some of its Gallery set... |
| CVE-2024-42934 | MEDIUM | 5 | 0.4% | Oct 9, 2024 | OpenIPMI before 2.0.36 has an out-of-bounds array access (for authentication type) in the ipmi_sim simulator, resulting ... |
| CVE-2024-7963 | MEDIUM | 6.4 | 0.3% | Oct 9, 2024 | The CMSMasters Content Composer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's multi... |
| CVE-2024-36814 | MEDIUM | 4.9 | 0.8% | Oct 8, 2024 | An arbitrary file read vulnerability in Adguard Home before v0.107.52 allows authenticated attackers to access arbitrary... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now