2024 CVE Vulnerabilities
39,233 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-26826 | MEDIUM | 5.5 | 0.3% | Apr 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: mptcp: fix data re-injection from stale subflow Wh... |
| CVE-2024-26825 | MEDIUM | 5.5 | 0.2% | Apr 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: nfc: nci: free rx_data_reassembly skb on NCI device... |
| CVE-2024-26824 | MEDIUM | 5.5 | 0.2% | Apr 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: crypto: algif_hash - Remove bogus SGL free on zero-... |
| CVE-2024-26823 | MEDIUM | 5.5 | 0.2% | Apr 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: irqchip/gic-v3-its: Restore quirk probing for ACPI-... |
| CVE-2024-26822 | MEDIUM | 5.5 | 0.2% | Apr 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: smb: client: set correct id, uid and cruid for mult... |
| CVE-2024-26820 | MEDIUM | 5.5 | 0.2% | Apr 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: hv_netvsc: Register VF in netvsc_probe if NET_DEVIC... |
| CVE-2024-26818 | MEDIUM | 5.5 | 0.2% | Apr 17, 2024 | In the Linux kernel, the following vulnerability has been resolved: tools/rtla: Fix clang warning about mount_point var... |
| CVE-2024-1350 | MEDIUM | 5.3 | 0.4% | Apr 17, 2024 | Missing Authorization vulnerability in Prasidhda Malla Honeypot for WP Comment.This issue affects Honeypot for WP Commen... |
| CVE-2024-32540 | MEDIUM | 5.9 | 0.3% | Apr 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Web357 Fixed HTML ... |
| CVE-2024-32539 | MEDIUM | 6.5 | 0.3% | Apr 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in JoomUnited WP File... |
| CVE-2024-32538 | MEDIUM | 6.5 | 0.2% | Apr 17, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Joshua Eldridge Easy CountDowner allows Stored XSS.This issue affects... |
| CVE-2024-32536 | MEDIUM | 6.5 | 0.3% | Apr 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Trade Pips WP Trad... |
| CVE-2024-32534 | MEDIUM | 4.8 | 0.3% | Apr 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 10Web Form Builder... |
| CVE-2024-24856 | MEDIUM | 5.3 | 0.2% | Apr 17, 2024 | The memory allocation function ACPI_ALLOCATE_ZEROED does not guarantee a successful allocation, but the subsequent code ... |
| CVE-2024-3847 | MEDIUM | 6.1 | 0.8% | Apr 17, 2024 | Insufficient policy enforcement in WebUI in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to bypass con... |
| CVE-2024-3846 | MEDIUM | 4.3 | 0.7% | Apr 17, 2024 | Inappropriate implementation in Prompts in Google Chrome prior to 124.0.6367.60 allowed a remote attacker who convinced ... |
| CVE-2024-3845 | MEDIUM | 4.3 | 0.8% | Apr 17, 2024 | Inappropriate implementation in Networks in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to bypass mix... |
| CVE-2024-3844 | MEDIUM | 4.3 | 0.6% | Apr 17, 2024 | Inappropriate implementation in Extensions in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to perform ... |
| CVE-2024-3843 | MEDIUM | 4.3 | 0.6% | Apr 17, 2024 | Insufficient data validation in Downloads in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to perform U... |
| CVE-2024-3841 | MEDIUM | 6.1 | 0.7% | Apr 17, 2024 | Insufficient data validation in Browser Switcher in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to in... |
| CVE-2024-3839 | MEDIUM | 6.5 | 0.7% | Apr 17, 2024 | Out of bounds read in Fonts in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to obtain potentially sens... |
| CVE-2024-3838 | MEDIUM | 5.5 | 0.4% | Apr 17, 2024 | Inappropriate implementation in Autofill in Google Chrome prior to 124.0.6367.60 allowed an attacker who convinced a use... |
| CVE-2024-32548 | MEDIUM | 5.9 | 0.3% | Apr 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Hideki Tanaka What... |
| CVE-2024-32547 | MEDIUM | 5.8 | 0.3% | Apr 17, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Max Bond Code Inse... |
| CVE-2024-32532 | MEDIUM | 5.3 | 0.5% | Apr 17, 2024 | Missing Authorization vulnerability in SiteGround Speed Optimizer.This issue affects Speed Optimizer: from n/a through 7... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now