2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-57995HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix read pointer after free in ath12k...
CVE-2024-57990HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7925: fix off by one in mt7925_load_c...
CVE-2024-57984HIGH7.8In the Linux kernel, the following vulnerability has been resolved: i3c: dw: Fix use-after-free in dw_i3c_master driver...
CVE-2024-57983HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mailbox: th1520: Fix memory corruption due to incor...
CVE-2024-57982HIGH7.1In the Linux kernel, the following vulnerability has been resolved: xfrm: state: fix out-of-bounds read during lookup ...
CVE-2024-57980HIGH7.8In the Linux kernel, the following vulnerability has been resolved: media: uvcvideo: Fix double free in error path If ...
CVE-2024-57979HIGH7.8In the Linux kernel, the following vulnerability has been resolved: pps: Fix a use-after-free On a board running ntpd ...
CVE-2024-55581HIGH7.4When AdaCore Ada Web Server 25.0.0 is linked with GnuTLS, the default behaviour of AWS.Client is vulnerable to a man-in-...
CVE-2024-50696HIGH7.5SunGrow WiNet-S V200.001.00.P025 and earlier versions is missing integrity checks for firmware upgrades. Sending a speci...
CVE-2024-50691HIGH7.4SunGrow iSolarCloud Android app V2.1.6.20241104 and prior suffers from Missing SSL Certificate Validation. The app expli...
CVE-2024-53427HIGH8.1decNumberCopy in decNumber.c in jq through 1.7.1 does not properly consider that NaN is interpreted as numeric, which ha...
CVE-2024-47053HIGH7.7This advisory addresses an authorization vulnerability in Mautic's HTTP Basic Authentication implementation. This flaw c...
CVE-2024-39441HIGH8.4In wifi display, there is a possible missing permission check. This could lead to local escalation of privilege with no ...
CVE-2024-13633HIGH7.1The Simple catalogue WordPress plugin through 1.0.2 does not sanitise and escape a parameter before outputting it back i...
CVE-2024-13632HIGH7.1The WP Extra Fields WordPress plugin through 1.0.1 does not sanitise and escape a parameter before outputting it back in...
CVE-2024-13631HIGH7.1The Om Stripe WordPress plugin through 02.00.00 does not sanitise and escape a parameter before outputting it back in th...
CVE-2024-13624HIGH7.1The WPMovieLibrary WordPress plugin through 2.1.4.8 does not sanitise and escape a parameter before outputting it back i...
CVE-2024-13571HIGH7.1The Post Timeline WordPress plugin before 2.3.10 does not sanitise and escape a parameter before outputting it back in t...
CVE-2024-12878HIGH7.1The Custom Block Builder WordPress plugin before 3.8.3 does not sanitise and escape a parameter before outputting it ba...
CVE-2024-10483HIGH7.1The Simple:Press Forum WordPress plugin before 6.10.11 does not sanitise and escape a parameter before outputting it bac...
CVE-2024-10152HIGH7.1The Simple Certain Time to Show Content WordPress plugin before 1.3.1 does not sanitise and escape a parameter before ou...
CVE-2024-0148HIGH7.6NVIDIA Jetson Linux and IGX OS image contains a vulnerability in the UEFI firmware RCM boot mode, where an unprivileged ...
CVE-2024-45424HIGH7.5Business logic error in some Zoom Workplace Apps may allow an unauthenticated user to conduct a disclosure of informatio...
CVE-2024-45421HIGH8.8Buffer overflow in some Zoom Apps may allow an authenticated user to conduct an escalation of privilege via network acce...
CVE-2024-45418HIGH8.8Symlink following in the installer for some Zoom apps for macOS before version 6.1.5 may allow an authenticated user to ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now