2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-49832HIGH7.8Memory corruption in Camera due to unusually high number of nodes passed to AXI port.
CVE-2024-45584HIGH7.8Memory corruption can occur when a compat IOCTL call is followed by a normal IOCTL call from userspace.
CVE-2024-45582HIGH7.8Memory corruption while validating number of devices in Camera kernel .
CVE-2024-45573HIGH7.8Memory corruption may occour while generating test pattern due to negative indexing of display ID.
CVE-2024-45571HIGH7.8Memory corruption may occour occur when stopping the WLAN interface after processing a WMI command from the interface.
CVE-2024-45561HIGH7.8Memory corruption while handling IOCTL call from user-space to set latency level.
CVE-2024-45560HIGH7Memory corruption while taking a snapshot with hardware encoder due to unvalidated userspace buffer.
CVE-2024-38420HIGH7.8Memory corruption while configuring a Hypervisor based input virtual device.
CVE-2024-38418HIGH7Memory corruption while parsing the memory map info in IOCTL calls.
CVE-2024-38413HIGH7.8Memory corruption while processing frame packets.
CVE-2024-38412HIGH7.8Memory corruption while invoking IOCTL calls from user-space to kernel-space to handle session errors.
CVE-2024-38411HIGH7.8Memory corruption while registering a buffer from user-space to kernel-space using IOCTL calls.
CVE-2024-38404HIGH7.5Transient DOS when registration accept OTA is received with incorrect ciphering key data IE in modem.
CVE-2024-43333HIGH7.5Incorrect Privilege Assignment vulnerability in NotFound Admin and Site Enhancements (ASE) Pro allows Privilege Escalati...
CVE-2024-10395HIGH7.5No proper validation of the length of user input in http_server_get_content_type_from_extension.
CVE-2024-53295HIGH7.8Dell PowerProtect DD versions prior to 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain an improper access control vulnerabilit...
CVE-2024-51534HIGH7.1Dell PowerProtect DD versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.20 contain a path traversal vulnerability. A ...
CVE-2024-13343HIGH8.8The WooCommerce Customers Manager plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability...
CVE-2024-12171HIGH8.8The ELEX WordPress HelpDesk & Customer Ticketing System plugin for WordPress is vulnerable to privilege escalation due t...
CVE-2024-57434HIGH8.8macrozheng mall-tiny 1.0.1 is vulnerable to Incorrect Access Control. The project imports users by default, and the test...
CVE-2024-57433HIGH7.5macrozheng mall-tiny 1.0.1 is vulnerable to Incorrect Access Control via the logout function. After a user logs out, the...
CVE-2024-53357HIGH7.5Multiple SQL injection vulnerabilities in EasyVirt DCScope <= 8.6.0 and CO2Scope <= 1.3.0 allows remote authenticated at...
CVE-2024-53355HIGH8.8Multiple incorrect access control issues in EasyVirt DCScope <= 8.6.0 and CO2Scope <= 1.3.0 allows remote authenticated ...
CVE-2024-57432HIGH7.5macrozheng mall-tiny 1.0.1 suffers from Insecure Permissions. The application's JWT signing keys are hardcoded and do no...
CVE-2024-53582HIGH7.5An issue found in the Copy and View functions in the File Manager component of OpenPanel v0.3.4 allows attackers to exec...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now