2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-47736MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: erofs: handle overlapped pclusters out of crafted i...
CVE-2024-47735MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix spin_unlock_irqrestore() called with ...
CVE-2024-47734MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bonding: Fix unnecessary warnings and logs from bon...
CVE-2024-47733MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netfs: Delete subtree of 'fs/netfs' when netfs modu...
CVE-2024-47732MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: iaa - Fix potential use after free bug The...
CVE-2024-47731MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drivers/perf: Fix ali_drw_pmu driver interrupt stat...
CVE-2024-47730HIGH7.8In the Linux kernel, the following vulnerability has been resolved: crypto: hisilicon/qm - inject error before stopping...
CVE-2024-47729MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/xe: Use reserved copy engine for user binds on ...
CVE-2024-47728MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bpf: Zero former ARG_PTR_TO_{LONG,INT} args in case...
CVE-2024-47727HIGH7.8In the Linux kernel, the following vulnerability has been resolved: x86/tdx: Fix "in-kernel MMIO" check TDX only suppo...
CVE-2024-47726MEDIUM6.5In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to wait dio completion It should wait al...
CVE-2024-47725Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-47724MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: wifi: ath11k: use work queue to process beacon tx e...
CVE-2024-47723HIGH7.1In the Linux kernel, the following vulnerability has been resolved: jfs: fix out-of-bounds in dbNextAG() and diAlloc() ...
CVE-2024-47722Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-49321MEDIUM4.3Missing Authorization vulnerability in colorlibplugins Simple Custom Post Order simple-custom-post-order allows Exploiti...
CVE-2024-49293MEDIUM5.4Missing Authorization vulnerability in RexTheme WP VR wpvr allows Exploiting Incorrectly Configured Access Control Secur...
CVE-2024-49273MEDIUM6.5Missing Authorization vulnerability in Metagauss ProfileGrid profilegrid-user-profiles-groups-and-communities.This issu...
CVE-2024-48231HIGH7.2Funadmin 5.0.2 is vulnerable to SQL Injection via the selectFields parameter in the index method of \backend\controller\...
CVE-2024-47721HIGH7.1In the Linux kernel, the following vulnerability has been resolved: wifi: rtw89: remove unused C2H event ID RTW89_MAC_C...
CVE-2024-47720MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Add null check for set_output_gamm...
CVE-2024-47719HIGH7.8In the Linux kernel, the following vulnerability has been resolved: iommufd: Protect against overflow of ALIGN() during...
CVE-2024-47718HIGH7.8In the Linux kernel, the following vulnerability has been resolved: wifi: rtw88: always wait for both firmware loading ...
CVE-2024-47717MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: RISC-V: KVM: Don't zero-out PMU snapshot area befor...
CVE-2024-47716MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ARM: 9410/1: vfp: Use asm volatile in fmrx/fmxr mac...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now