2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-46682 | MEDIUM | 5.5 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: nfsd: prevent panic for nfsv4.0 closed files in nfs... |
| CVE-2024-46681 | MEDIUM | 5.5 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: pktgen: use cpus_read_lock() in pg_net_init() I ha... |
| CVE-2024-46680 | MEDIUM | 5.5 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btnxpuart: Fix random crash seen while r... |
| CVE-2024-46679 | MEDIUM | 4.7 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: ethtool: check device is present when getting link ... |
| CVE-2024-46678 | MEDIUM | 5.5 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: bonding: change ipsec_lock from spin lock to mutex ... |
| CVE-2024-46677 | MEDIUM | 5.5 | 0.3% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: gtp: fix a potential NULL pointer dereference When... |
| CVE-2024-46676 | MEDIUM | 5.5 | 0.2% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: nfc: pn533: Add poll mod list filling check In cas... |
| CVE-2024-46675 | MEDIUM | 5.5 | 0.3% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: core: Prevent USB core invalid event buf... |
| CVE-2024-46674 | HIGH | 7.8 | 0.3% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: st: fix probed platform device ref count... |
| CVE-2024-46673 | HIGH | 7.8 | 0.3% | Sep 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: scsi: aacraid: Fix double-free on probe failure aa... |
| CVE-2024-38816 | HIGH | 7.5 | 14.7% | Sep 13, 2024 | Applications serving static resources through the functional web frameworks WebMvc.fn or WebFlux.fn are vulnerable to pa... |
| CVE-2024-8656 | MEDIUM | 6.1 | 0.4% | Sep 13, 2024 | The WPFactory Helper plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_ar... |
| CVE-2024-43180 | MEDIUM | 4.3 | 0.2% | Sep 13, 2024 | IBM Concert 1.0 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to g... |
| CVE-2024-8762 | CRITICAL | 9.8 | 0.7% | Sep 13, 2024 | A vulnerability was found in code-projects Crud Operation System 1.0. It has been classified as critical. This affects a... |
| CVE-2024-8751 | HIGH | 7.5 | 0.9% | Sep 12, 2024 | A vulnerability allows a remote unauthenticated attacker to modify the prod uct’s IP address over the Sopas ET interface... |
| CVE-2024-7961 | CRITICAL | 9.8 | 1.0% | Sep 12, 2024 | A path traversal vulnerability exists in the Rockwell Automation affected product. If exploited, the threat actor could... |
| CVE-2024-7960 | CRITICAL | 9.1 | 0.5% | Sep 12, 2024 | The Rockwell Automation affected product contains a vulnerability that allows a threat actor to view sensitive informati... |
| CVE-2024-8533 | HIGH | 8.8 | 1.3% | Sep 12, 2024 | A privilege escalation vulnerability exists in the Rockwell Automation affected products. The vulnerability occurs due t... |
| CVE-2024-6077 | HIGH | 7.5 | 0.6% | Sep 12, 2024 | A denial-of-service vulnerability exists in the Rockwell Automation affected products when specially crafted packets are... |
| CVE-2024-45607 | MEDIUM | 5.3 | 14.1% | Sep 12, 2024 | whatsapp-api-js is a TypeScript server agnostic Whatsapp's Official API framework. It's possible to check the payload va... |
| CVE-2024-44460 | HIGH | 7.5 | 0.5% | Sep 12, 2024 | An invalid read size in Nanomq v0.21.9 allows attackers to cause a Denial of Service (DoS). |
| CVE-2024-44459 | HIGH | 7.5 | 0.5% | Sep 12, 2024 | A memory allocation issue in vernemq v2.0.1 allows attackers to cause a Denial of Service (DoS) via excessive memory con... |
| CVE-2024-20430 | HIGH | 7.3 | 0.2% | Sep 12, 2024 | A vulnerability in Cisco Meraki Systems Manager (SM) Agent for Windows could allow an authenticated, local attacker to e... |
| CVE-2024-8641 | HIGH | 8.8 | 0.5% | Sep 12, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.7 prior to 17.1.7, from 17.2 prior ... |
| CVE-2024-8311 | MEDIUM | 6.5 | 0.5% | Sep 12, 2024 | An issue was discovered with pipeline execution policies in GitLab EE affecting all versions from 17.2 prior to 17.2.5, ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now