2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-26671MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: blk-mq: fix IO hang from sbitmap wakeup race In bl...
CVE-2024-26670MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: arm64: entry: fix ARM64_WORKAROUND_SPECULATIVE_UNPR...
CVE-2024-26668MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_limit: reject configurations that ca...
CVE-2024-26667MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/msm/dpu: check for valid hw_pp in dpu_encoder_h...
CVE-2024-26663MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: tipc: Check the bearer type before calling tipc_udp...
CVE-2024-26662MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix 'panel_cntl' could be null in ...
CVE-2024-26661MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Add NULL test for 'timing generato...
CVE-2024-26660MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Implement bounds check for stream ...
CVE-2024-26659MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: xhci: handle isoc Babble and Buffer Overrun events ...
CVE-2024-26658MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bcachefs: grab s_umount only if snapshotting When ...
CVE-2024-26657MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/sched: fix null-ptr-deref in init entity The b...
CVE-2024-26656MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix use-after-free bug The bug can be ...
CVE-2024-22180MEDIUM5.5in OpenHarmony v4.0.0 and prior versions allow a local attacker cause DOS through use after free.
CVE-2024-22177MEDIUM5.5in OpenHarmony v3.2.4 and prior versions allow a local attacker cause apps crash through get permission.
CVE-2024-21834MEDIUM5.5in OpenHarmony v3.2.4 and prior versions allow a local attacker cause apps crash through type confusion.
CVE-2024-2924MEDIUM6.4The Creative Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wid...
CVE-2024-2791MEDIUM5.4The Metform Elementor Contact Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plu...
CVE-2024-1504MEDIUM4.3The SecuPress Free — WordPress Security plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions...
CVE-2024-1274MEDIUM5.4The My Calendar WordPress plugin before 3.4.24 does not sanitise and escape some parameters, which could allow users wit...
CVE-2024-2369MEDIUM5.4The Page Builder Gutenberg Blocks WordPress plugin before 3.1.7 does not validate and escape some of its block options b...
CVE-2024-3160MEDIUM5.3** DISPUTED ** A vulnerability, which was classified as problematic, was found in Intelbras MHDX 1004, MHDX 1008, MHDX 1...
CVE-2024-20853MEDIUM5.1Improper verification of intent by broadcast receiver vulnerability in ThemeStore prior to 5.3.05.2 allows local attacke...
CVE-2024-20851MEDIUM5.5Improper access control vulnerability in Samsung Data Store prior to version 5.3.00.4 allows local attackers to launch a...
CVE-2024-20850MEDIUM5.5Use of Implicit Intent for Sensitive Communication in Samsung Pay prior to version 5.4.99 allows local attackers to acce...
CVE-2024-20843MEDIUM6.7Out-of-bound write vulnerability in command parsing implementation of libIfaaCa prior to SMR Apr-2024 Release 1 allows l...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now