2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-27398 | HIGH | 7.8 | 0.8% | May 14, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: Fix use-after-free bugs caused by sco_so... |
| CVE-2024-27397 | HIGH | 7 | 0.3% | May 14, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: use timestamp to check for se... |
| CVE-2024-27396 | HIGH | 7.8 | 0.2% | May 14, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: gtp: Fix Use-After-Free in gtp_dellink Since ... |
| CVE-2024-27395 | HIGH | 7.8 | 0.2% | May 14, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: openvswitch: Fix Use-After-Free in ovs_ct_exit... |
| CVE-2024-27394 | HIGH | 7.8 | 0.3% | May 14, 2024 | In the Linux kernel, the following vulnerability has been resolved: tcp: Fix Use-After-Free in tcp_ao_connect_init Sin... |
| CVE-2024-27393 | HIGH | 7.5 | 0.3% | May 14, 2024 | In the Linux kernel, the following vulnerability has been resolved: xen-netfront: Add missing skb_mark_for_recycle Not... |
| CVE-2024-25641 | HIGH | 7.2 | 86.3% | May 14, 2024 | Cacti provides an operational monitoring and fault management framework. Prior to version 1.2.27, an arbitrary file writ... |
| CVE-2024-25581 | HIGH | 7.5 | 1.1% | May 14, 2024 | When incoming DNS over HTTPS support is enabled using the nghttp2 provider, and queries are routed to a tcp-only or DNS ... |
| CVE-2024-23576 | HIGH | 7.1 | 0.5% | May 14, 2024 | Security vulnerability in HCL Commerce 9.1.12 and 9.1.13 could allow denial of service, disclosure of user personal data... |
| CVE-2024-22774 | HIGH | 7.8 | 0.5% | May 14, 2024 | An issue in Panoramic Corporation Digital Imaging Software v.9.1.2.7600 allows a local attacker to escalate privileges v... |
| CVE-2024-22345 | HIGH | 7.5 | 0.5% | May 14, 2024 | IBM TXSeries for Multiplatforms 8.2 transmits or stores authentication credentials, but it uses an insecure method that ... |
| CVE-2024-0100 | HIGH | 8.1 | 0.7% | May 14, 2024 | NVIDIA Triton Inference Server for Linux contains a vulnerability in the tracing API, where a user can corrupt system fi... |
| CVE-2024-0097 | HIGH | 7.5 | 0.2% | May 14, 2024 | NVIDIA ChatRTX for Windows contains a vulnerability in ChatRTX UI, where a user can cause an improper privilege manageme... |
| CVE-2024-0096 | HIGH | 7.5 | 0.2% | May 14, 2024 | NVIDIA ChatRTX for Windows contains a vulnerability in Chat RTX UI, where a user can cause an improper privilege managem... |
| CVE-2024-0088 | HIGH | 8.1 | 19.8% | May 14, 2024 | NVIDIA Triton Inference Server for Linux contains a vulnerability in shared memory APIs, where a user can cause an impro... |
| CVE-2024-0087 | HIGH | 8.8 | 20.1% | May 14, 2024 | NVIDIA Triton Inference Server for Linux contains a vulnerability where a user can set the logging location to an arbitr... |
| CVE-2024-34244 | HIGH | 7.5 | 0.5% | May 8, 2024 | libmodbus v3.1.10 is vulnerable to Buffer Overflow via the modbus_write_bits function. This issue can be triggered when ... |
| CVE-2024-22460 | HIGH | 7.2 | 0.4% | May 8, 2024 | Dell PowerProtect DM5500 version 5.15.0.0 and prior contains an insecure deserialization Vulnerability. A remote attacke... |
| CVE-2024-4653 | HIGH | 7.5 | 0.7% | May 8, 2024 | A vulnerability was found in BlueNet Technology Clinical Browsing System 1.2.1 and classified as critical. Affected by t... |
| CVE-2024-3951 | HIGH | 7.1 | 0.3% | May 8, 2024 | PTC Codebeamer is vulnerable to a cross site scripting vulnerability that could allow an attacker to inject and execute... |
| CVE-2024-34347 | HIGH | 8.3 | 0.6% | May 8, 2024 | @hoppscotch/cli is a CLI to run Hoppscotch Test Scripts in CI environments. Prior to 0.8.0, the @hoppscotch/js-sandbox p... |
| CVE-2024-33608 | HIGH | 7.5 | 0.6% | May 8, 2024 | When IPsec is configured on a virtual server, undisclosed traffic can cause the Traffic Management Microkernel (TMM) to ... |
| CVE-2024-32049 | HIGH | 7.4 | 0.5% | May 8, 2024 | BIG-IP Next Central Manager (CM) may allow an unauthenticated, remote attacker to obtain the BIG-IP Next LTM/WAF instanc... |
| CVE-2024-31156 | HIGH | 8 | 0.6% | May 8, 2024 | A stored cross-site scripting (XSS) vulnerability exists in an undisclosed page of the BIG-IP Configuration utility tha... |
| CVE-2024-28883 | HIGH | 7.4 | 0.2% | May 8, 2024 | An origin validation vulnerability exists in BIG-IP APM browser network access VPN client for Windows, macOS and ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now