2024 CVE Vulnerabilities
39,235 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-26671 | MEDIUM | 4.7 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: blk-mq: fix IO hang from sbitmap wakeup race In bl... |
| CVE-2024-26670 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: arm64: entry: fix ARM64_WORKAROUND_SPECULATIVE_UNPR... |
| CVE-2024-26668 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_limit: reject configurations that ca... |
| CVE-2024-26667 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/msm/dpu: check for valid hw_pp in dpu_encoder_h... |
| CVE-2024-26663 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: tipc: Check the bearer type before calling tipc_udp... |
| CVE-2024-26662 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix 'panel_cntl' could be null in ... |
| CVE-2024-26661 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Add NULL test for 'timing generato... |
| CVE-2024-26660 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Implement bounds check for stream ... |
| CVE-2024-26659 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: xhci: handle isoc Babble and Buffer Overrun events ... |
| CVE-2024-26658 | MEDIUM | 5.5 | 0.1% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: bcachefs: grab s_umount only if snapshotting When ... |
| CVE-2024-26657 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/sched: fix null-ptr-deref in init entity The b... |
| CVE-2024-26656 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix use-after-free bug The bug can be ... |
| CVE-2024-22180 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker cause DOS through use after free. |
| CVE-2024-22177 | MEDIUM | 5.5 | 0.1% | Apr 2, 2024 | in OpenHarmony v3.2.4 and prior versions allow a local attacker cause apps crash through get permission. |
| CVE-2024-21834 | MEDIUM | 5.5 | 0.2% | Apr 2, 2024 | in OpenHarmony v3.2.4 and prior versions allow a local attacker cause apps crash through type confusion. |
| CVE-2024-2924 | MEDIUM | 6.4 | 0.3% | Apr 2, 2024 | The Creative Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wid... |
| CVE-2024-2791 | MEDIUM | 5.4 | 0.3% | Apr 2, 2024 | The Metform Elementor Contact Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plu... |
| CVE-2024-1504 | MEDIUM | 4.3 | 0.3% | Apr 2, 2024 | The SecuPress Free — WordPress Security plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions... |
| CVE-2024-1274 | MEDIUM | 5.4 | 0.4% | Apr 2, 2024 | The My Calendar WordPress plugin before 3.4.24 does not sanitise and escape some parameters, which could allow users wit... |
| CVE-2024-2369 | MEDIUM | 5.4 | 0.4% | Apr 2, 2024 | The Page Builder Gutenberg Blocks WordPress plugin before 3.1.7 does not validate and escape some of its block options b... |
| CVE-2024-3160 | MEDIUM | 5.3 | 0.7% | Apr 2, 2024 | ** DISPUTED ** A vulnerability, which was classified as problematic, was found in Intelbras MHDX 1004, MHDX 1008, MHDX 1... |
| CVE-2024-20853 | MEDIUM | 5.1 | 0.2% | Apr 2, 2024 | Improper verification of intent by broadcast receiver vulnerability in ThemeStore prior to 5.3.05.2 allows local attacke... |
| CVE-2024-20851 | MEDIUM | 5.5 | 0.1% | Apr 2, 2024 | Improper access control vulnerability in Samsung Data Store prior to version 5.3.00.4 allows local attackers to launch a... |
| CVE-2024-20850 | MEDIUM | 5.5 | 0.1% | Apr 2, 2024 | Use of Implicit Intent for Sensitive Communication in Samsung Pay prior to version 5.4.99 allows local attackers to acce... |
| CVE-2024-20843 | MEDIUM | 6.7 | 0.2% | Apr 2, 2024 | Out-of-bound write vulnerability in command parsing implementation of libIfaaCa prior to SMR Apr-2024 Release 1 allows l... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now