2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-33516 | HIGH | 7.5 | 0.6% | May 1, 2024 | An unauthenticated Denial of Service (DoS) vulnerability exists in the Auth service accessed via the PAPI protocol provi... |
| CVE-2024-33515 | HIGH | 7.5 | 0.6% | May 1, 2024 | Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the AP Management service accessed via the PAPI protoco... |
| CVE-2024-33514 | HIGH | 7.5 | 0.6% | May 1, 2024 | Unauthenticated Denial-of-Service (DoS) vulnerabilities exist in the AP Management service accessed via the PAPI protoco... |
| CVE-2024-28764 | HIGH | 7.8 | 0.2% | May 1, 2024 | IBM WebSphere Automation 1.7.0 could allow an attacker with privileged access to the network to conduct a CSV injection.... |
| CVE-2024-25015 | HIGH | 7.5 | 0.9% | May 1, 2024 | IBM MQ 9.2 LTS, 9.3 LTS, and 9.3 CD Internet Pass-Thru could allow a remote user to cause a denial of service by sending... |
| CVE-2024-23457 | HIGH | 7.8 | 0.2% | May 1, 2024 | The anti-tampering functionality of the Zscaler Client Connector can be disabled under certain conditions when an uninst... |
| CVE-2024-20378 | HIGH | 7.5 | 0.8% | May 1, 2024 | A vulnerability in the web-based management interface of Cisco IP Phone firmware could allow an unauthenticated, remote ... |
| CVE-2024-20376 | HIGH | 7.5 | 0.9% | May 1, 2024 | A vulnerability in the web-based management interface of Cisco IP Phone firmware could allow an unauthenticated, remote ... |
| CVE-2024-33820 | HIGH | 7.5 | 0.6% | May 1, 2024 | Totolink AC1200 Wireless Dual Band Gigabit Router A3002R_V4 Firmware V4.0.0-B20230531.1404 is vulnerable to Buffer Overf... |
| CVE-2024-28893 | HIGH | 7.7 | 0.3% | May 1, 2024 | Certain HP software packages (SoftPaqs) are potentially vulnerable to arbitrary code execution when the SoftPaq configur... |
| CVE-2024-4368 | HIGH | 8.8 | 1.1% | May 1, 2024 | Use after free in Dawn in Google Chrome prior to 124.0.6367.118 allowed a remote attacker to potentially exploit heap co... |
| CVE-2024-4331 | HIGH | 8.8 | 1.2% | May 1, 2024 | Use after free in Picture In Picture in Google Chrome prior to 124.0.6367.118 allowed a remote attacker to potentially e... |
| CVE-2024-4058 | HIGH | 8.8 | 8.9% | May 1, 2024 | Type confusion in ANGLE in Google Chrome prior to 124.0.6367.78 allowed a remote attacker to potentially exploit heap co... |
| CVE-2024-33775 | HIGH | 8.8 | 1.6% | May 1, 2024 | An issue with the Autodiscover component in Nagios XI 2024R1.01 allows a remote attacker to escalate privileges via a cr... |
| CVE-2024-31412 | HIGH | 7.8 | 0.2% | May 1, 2024 | Out-of-bounds read vulnerability exists in CX-Programmer included in CX-One CXONE-AL[][]D-V4 Ver. 9.81 or lower. Opening... |
| CVE-2024-27392 | HIGH | 7.8 | 0.3% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: nvme: host: fix double-free of struct nvme_id_ns in... |
| CVE-2024-27075 | HIGH | 7.8 | 0.3% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: media: dvb-frontends: avoid stack overflow warnings... |
| CVE-2024-27073 | HIGH | 7.8 | 0.3% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: media: ttpci: fix two memleaks in budget_av_attach ... |
| CVE-2024-27070 | HIGH | 7.8 | 0.2% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid use-after-free issue in f2fs_fil... |
| CVE-2024-27065 | HIGH | 7.8 | 0.3% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: do not compare internal table... |
| CVE-2024-27062 | HIGH | 7.8 | 0.2% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: nouveau: lock the client object tree. It appears t... |
| CVE-2024-27061 | HIGH | 7.8 | 0.2% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: crypto: sun8i-ce - Fix use after free in unprepare ... |
| CVE-2024-27058 | HIGH | 7.8 | 0.5% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: tmpfs: fix race on handling dquot rbtree A syzkall... |
| CVE-2024-27053 | HIGH | 8.8 | 1.6% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: wifi: wilc1000: fix RCU usage in connect path With... |
| CVE-2024-27052 | HIGH | 7.8 | 0.3% | May 1, 2024 | In the Linux kernel, the following vulnerability has been resolved: wifi: rtl8xxxu: add cancel_work_sync() for c2hcmd_w... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now