2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-24764MEDIUM4.8October is a self-hosted CMS platform based on the Laravel PHP Framework. This issue affects authenticated administrator...
CVE-2024-4869MEDIUM6.1The WP Cookie Consent ( for GDPR, CCPA & ePrivacy ) plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi...
CVE-2024-29954MEDIUM5.5A vulnerability in a password management API in Brocade Fabric OS versions before v9.2.1, v9.2.0b, v9.1.1d, and v8.2.3e ...
CVE-2024-29953MEDIUM4.3A vulnerability in the web interface in Brocade Fabric OS before v9.2.1, v9.2.0b, and v9.1.1d prints encoded session pas...
CVE-2024-30931MEDIUM6.1Stored Cross Site Scripting vulnerability in Emby Media Server Emby Media Server 4.8.3.0 allows a remote attacker to esc...
CVE-2024-30112MEDIUM5.4HCL Connections is vulnerable to a cross-site scripting attack where an attacker may leverage this issue to execute arbi...
CVE-2024-5017MEDIUM6.5In WhatsUp Gold versions released before 2023.1.3, a path traversal vulnerability exists. A specially crafted unauthenti...
CVE-2024-5014MEDIUM6.5In WhatsUp Gold versions released before 2023.1.3, a Server Side Request Forgery vulnerability exists in the GetASPRepor...
CVE-2024-35526MEDIUM5.9An issue in Daemon PTY Limited FarCry Core framework before 7.2.14 allows attackers to access sensitive information in t...
CVE-2024-34400MEDIUM6.1An issue was discovered in VirtoSoftware Virto Kanban Board Web Part before 5.3.5.1 for SharePoint 2019. There is /_layo...
CVE-2024-21739MEDIUM5.3Geehy APM32F103CCT6, APM32F103RCT6, APM32F103RCT7, and APM32F103VCT6 devices have Incorrect Access Control.
CVE-2024-37894MEDIUM6.3Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Out-of-bounds Write error when ass...
CVE-2024-37167MEDIUM4.3Tuleap is an Open Source Suite to improve management of software developments and collaboration. Users are able to see b...
CVE-2024-37820MEDIUM5.4A nil pointer dereference in PingCAP TiDB v8.2.0-alpha-216-gfe5858b allows attackers to crash the application via expres...
CVE-2024-36819MEDIUM5.4MAP-OS 4.45.0 and earlier is vulnerable to Cross-Site Scripting (XSS). This vulnerability allows malicious users to inse...
CVE-2024-6238MEDIUM5.3pgAdmin <= 8.8 has an installation Directory permission issue. Because of this issue, attackers can gain unauthorised ac...
CVE-2024-0171MEDIUM5.3Dell PowerEdge Server BIOS contains an TOCTOU race condition vulnerability. A local low privileged attacker could potent...
CVE-2024-39470MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: eventfs: Fix a possible null pointer dereference in...
CVE-2024-39468MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: smb: client: fix deadlock in smb2_find_smb_tcon() ...
CVE-2024-39466MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: thermal/drivers/qcom/lmh: Check for SCM availabilit...
CVE-2024-39465MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: mgb4: Fix double debugfs remove Fixes an er...
CVE-2024-39464MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: v4l: async: Fix notifier list entry init st...
CVE-2024-39461MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: clk: bcm: rpi: Assign ->num before accessing ->hws ...
CVE-2024-39371MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: io_uring: check for non-NULL file pointer in io_fil...
CVE-2024-39301MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net/9p: fix uninit-value in p9_client_rpc() Syzbot...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now