2024 CVE Vulnerabilities

39,228 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-26943MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: nouveau/dmem: handle kcalloc() allocation failure ...
CVE-2024-26942MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: phy: qcom: at803x: fix kernel panic with at803...
CVE-2024-26941MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/dp: Fix divide-by-zero regression on DP MST unp...
CVE-2024-26940MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/vmwgfx: Create debugfs ttm_resource_manager ent...
CVE-2024-26938MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/i915/bios: Tolerate devdata==NULL in intel_bios...
CVE-2024-26937MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/i915/gt: Reset queue_priority_hint on parking ...
CVE-2024-26935MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: scsi: core: Fix unremoved procfs host directory reg...
CVE-2024-26931MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: scsi: qla2xxx: Fix command flush on cable pull Sys...
CVE-2024-28979MEDIUM4.8Dell OpenManage Enterprise, versions 4.1.0 and older, contains an Improper Neutralization of Input During Web Page Gener...
CVE-2024-28978MEDIUM6.5Dell OpenManage Enterprise, versions 3.10 and 4.0, contains an Improper Access Control vulnerability. A high privileged ...
CVE-2024-33767MEDIUM5lunasvg v2.3.9 was discovered to contain a segmentation violation via the component composition_solid_source.
CVE-2024-33766MEDIUM5.3lunasvg v2.3.9 was discovered to contain an FPE (Floating Point Exception) at blend_transformed_tiled_argb.isra.0.
CVE-2024-33764MEDIUM5.5lunasvg v2.3.9 was discovered to contain a stack-overflow at lunasvg/source/element.h.
CVE-2024-4369MEDIUM6.8An information disclosure flaw was found in OpenShift's internal image registry operator. The AZURE_CLIENT_SECRET can be...
CVE-2024-34149MEDIUM6.3In Bitcoin Core through 27.0 and Bitcoin Knots before 25.1.knots20231115, tapscript lacks a policy size limit check, a d...
CVE-2024-4348MEDIUM4.3A vulnerability, which was classified as problematic, was found in osCommerce 4. Affected is an unknown function of the ...
CVE-2024-3746MEDIUM6.8The entire parent directory - C:\ScadaPro and its sub-directories and files are configured by default to allow user, in...
CVE-2024-33436MEDIUM5.3An issue in CSS Exfil Protection v.1.1.0 allows a remote attacker to obtain sensitive information due to missing support...
CVE-2024-33371MEDIUM6.1Cross Site Scripting vulnerability in DedeCMS v.5.7.113 allows a remote attacker to execute arbitrary code via the typei...
CVE-2024-22546MEDIUM6.4TRENDnet TEW-815DAP 1.0.2.0 is vulnerable to Command Injection via the do_setNTP function. An authenticated attacker wit...
CVE-2024-33832MEDIUM6.3OneNav v0.9.35-20240318 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /index.php?c=ap...
CVE-2024-33103MEDIUM6.1An arbitrary file upload vulnerability in the Media Manager component of DokuWiki 2024-02-06a allows attackers to execut...
CVE-2024-33102MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in the component /pubs/counter.php of ThinkSAAS v3.7.0 allows attacker...
CVE-2024-33101MEDIUM6.1A stored cross-site scripting (XSS) vulnerability in the component /action/anti.php of ThinkSAAS v3.7.0 allows attackers...
CVE-2024-2877MEDIUM5.5Vault Enterprise, when configured with performance standby nodes and a configured audit device, will inadvertently log r...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now