2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-27882MEDIUM4.4A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Monterey 12.7.6, macOS Sono...
CVE-2024-27881MEDIUM5.3A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Montere...
CVE-2024-27878MEDIUM6.7A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.6. An app ma...
CVE-2024-27877MEDIUM6.1The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.7.6, macOS Sonoma 14.6, ...
CVE-2024-27873MEDIUM5.5An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in iOS 16.7.9 and iPadOS ...
CVE-2024-27872MEDIUM5.5This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sonoma 14.6. An app may be a...
CVE-2024-27871MEDIUM5.5A path handling issue was addressed with improved validation. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Son...
CVE-2024-27863MEDIUM5.5An information disclosure issue was addressed with improved private data redaction for log entries. This issue is fixed ...
CVE-2024-27853MEDIUM4.4This issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.4. A maliciously crafted ZIP archi...
CVE-2024-27823MEDIUM5.9A race condition was addressed with improved locking. This issue is fixed in iOS 16.7.8 and iPadOS 16.7.8, iOS 17.5 and ...
CVE-2024-27809MEDIUM5.5A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sonoma ...
CVE-2024-3219MEDIUM5.1The “socket” module provides a pure-Python fallback to the socket.socketpair() function for platforms that don’t suppo...
CVE-2024-6578MEDIUM5.4A stored cross-site scripting (XSS) vulnerability exists in aimhubio/aim version 3.19.3. The vulnerability arises from t...
CVE-2024-37859MEDIUM6.1Cross Site Scripting vulnerability in Lost and Found Information System 1.0 allows a remote attacker to escalate privile...
CVE-2024-37856MEDIUM5.4Cross Site Scripting vulnerability in Lost and Found Information System 1.0 allows a remote attacker to escalate privile...
CVE-2024-6727MEDIUM5.4A flaw in versions of Delphix Data Control Tower (DCT) prior to 19.0.0 results in broken authentication through the enab...
CVE-2024-42098MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: ecdh - explicitly zeroize private_key priv...
CVE-2024-42097MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ALSA: emux: improve patch ioctl data validation In...
CVE-2024-42096MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: x86: stop playing stack games in profile_pc() The ...
CVE-2024-42095MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: serial: 8250_omap: Implementation of Errata i2310 ...
CVE-2024-42091MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/xe: Check pat.ops before dumping PAT settings ...
CVE-2024-42090MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: pinctrl: fix deadlock in create_pinctrl() when hand...
CVE-2024-42089MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ASoC: fsl-asoc-card: set priv->pdev before using it...
CVE-2024-42087MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/panel: ilitek-ili9881c: Fix warning with GPIO c...
CVE-2024-42085MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: core: remove lock of otg mode during gad...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now