2024 CVE Vulnerabilities

39,233 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-26826MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: mptcp: fix data re-injection from stale subflow Wh...
CVE-2024-26825MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: nfc: nci: free rx_data_reassembly skb on NCI device...
CVE-2024-26824MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - Remove bogus SGL free on zero-...
CVE-2024-26823MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: irqchip/gic-v3-its: Restore quirk probing for ACPI-...
CVE-2024-26822MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: smb: client: set correct id, uid and cruid for mult...
CVE-2024-26820MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: hv_netvsc: Register VF in netvsc_probe if NET_DEVIC...
CVE-2024-26818MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: tools/rtla: Fix clang warning about mount_point var...
CVE-2024-1350MEDIUM5.3Missing Authorization vulnerability in Prasidhda Malla Honeypot for WP Comment.This issue affects Honeypot for WP Commen...
CVE-2024-32540MEDIUM5.9Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Web357 Fixed HTML ...
CVE-2024-32539MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in JoomUnited WP File...
CVE-2024-32538MEDIUM6.5Cross-Site Request Forgery (CSRF) vulnerability in Joshua Eldridge Easy CountDowner allows Stored XSS.This issue affects...
CVE-2024-32536MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Trade Pips WP Trad...
CVE-2024-32534MEDIUM4.8Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 10Web Form Builder...
CVE-2024-24856MEDIUM5.3The memory allocation function ACPI_ALLOCATE_ZEROED does not guarantee a successful allocation, but the subsequent code ...
CVE-2024-3847MEDIUM6.1Insufficient policy enforcement in WebUI in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to bypass con...
CVE-2024-3846MEDIUM4.3Inappropriate implementation in Prompts in Google Chrome prior to 124.0.6367.60 allowed a remote attacker who convinced ...
CVE-2024-3845MEDIUM4.3Inappropriate implementation in Networks in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to bypass mix...
CVE-2024-3844MEDIUM4.3Inappropriate implementation in Extensions in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to perform ...
CVE-2024-3843MEDIUM4.3Insufficient data validation in Downloads in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to perform U...
CVE-2024-3841MEDIUM6.1Insufficient data validation in Browser Switcher in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to in...
CVE-2024-3839MEDIUM6.5Out of bounds read in Fonts in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to obtain potentially sens...
CVE-2024-3838MEDIUM5.5Inappropriate implementation in Autofill in Google Chrome prior to 124.0.6367.60 allowed an attacker who convinced a use...
CVE-2024-32548MEDIUM5.9Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Hideki Tanaka What...
CVE-2024-32547MEDIUM5.8Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Max Bond Code Inse...
CVE-2024-32532MEDIUM5.3Missing Authorization vulnerability in SiteGround Speed Optimizer.This issue affects Speed Optimizer: from n/a through 7...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now