2024 CVE Vulnerabilities
39,235 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-50031 | MEDIUM | 5.5 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Stop the active perfmon before being destr... |
| CVE-2024-50030 | HIGH | 7.8 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/xe/ct: prevent UAF in send_recv() Ensure we se... |
| CVE-2024-50029 | HIGH | 7.8 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: Fix UAF in hci_enhanced_setup_... |
| CVE-2024-50028 | MEDIUM | 5.5 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: thermal: core: Reference count the zone in thermal_... |
| CVE-2024-50027 | MEDIUM | 5.5 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: thermal: core: Free tzp copy along with the thermal... |
| CVE-2024-50026 | MEDIUM | 5.5 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: scsi: wd33c93: Don't use stale scsi_pointer value ... |
| CVE-2024-50025 | MEDIUM | 5.5 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: scsi: fnic: Move flush_work initialization out of i... |
| CVE-2024-50024 | MEDIUM | 5.5 | 0.3% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: Fix an unsafe loop on the list The kernel may... |
| CVE-2024-50023 | MEDIUM | 5.5 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: phy: Remove LED entry from LEDs list on unregi... |
| CVE-2024-50022 | MEDIUM | 5.5 | 0.3% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: device-dax: correct pgoff align in dax_set_mapping(... |
| CVE-2024-50021 | MEDIUM | 5.5 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: ice: Fix improper handling of refcount in ice_dpll_... |
| CVE-2024-50020 | MEDIUM | 5.5 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: ice: Fix improper handling of refcount in ice_sriov... |
| CVE-2024-50019 | MEDIUM | 5.5 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: kthread: unpark only parked kthread Calling into k... |
| CVE-2024-48659 | CRITICAL | 9.8 | 1.1% | Oct 21, 2024 | An issue in DCME-320-L <=9.3.2.114 allows a remote attacker to execute arbitrary code via the log_u_umount.php component... |
| CVE-2024-48645 | HIGH | 7.5 | 0.6% | Oct 21, 2024 | In Minecraft mod "Command Block IDE" up to and including version 0.4.9, a missing authorization (CWE-862) allows any use... |
| CVE-2024-48597 | HIGH | 8.1 | 0.4% | Oct 21, 2024 | Online Clinic Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /su... |
| CVE-2024-48509 | CRITICAL | 9.8 | 0.5% | Oct 21, 2024 | Learning with Texts (LWT) 2.0.3 is vulnerable to SQL Injection. This occurs when the application fails to properly sanit... |
| CVE-2024-47912 | HIGH | 8.2 | 0.4% | Oct 21, 2024 | A vulnerability in the AWV (Audio, Web, and Video) Conferencing component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.2... |
| CVE-2024-47223 | CRITICAL | 9.4 | 0.5% | Oct 21, 2024 | A vulnerability in the AWV (Audio, Web and Video Conferencing) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.20... |
| CVE-2024-47189 | HIGH | 7.7 | 0.4% | Oct 21, 2024 | The API Interface of the AWV (Audio, Web and Video Conferencing) component of Mitel MiCollab through 9.8 SP1 FP2 (9.8.1.... |
| CVE-2024-46326 | MEDIUM | 6.1 | 0.4% | Oct 21, 2024 | Public Knowledge Project pkp-lib 3.4.0-7 and earlier is vulnerable to Open redirect due to a lack of input sanitization ... |
| CVE-2024-31007 | MEDIUM | 5.5 | 0.2% | Oct 21, 2024 | Buffer Overflow vulnerability in IrfanView 32bit v.4.66 allows a local attacker to cause a denial of service via a craft... |
| CVE-2024-50018 | — | — | — | Oct 21, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-50017 | MEDIUM | 5.5 | 0.2% | Oct 21, 2024 | In the Linux kernel, the following vulnerability has been resolved: x86/mm/ident_map: Use gbpages only where full GB pa... |
| CVE-2024-50016 | — | — | — | Oct 21, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now