2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-46682MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: nfsd: prevent panic for nfsv4.0 closed files in nfs...
CVE-2024-46681MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: pktgen: use cpus_read_lock() in pg_net_init() I ha...
CVE-2024-46680MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Bluetooth: btnxpuart: Fix random crash seen while r...
CVE-2024-46679MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: ethtool: check device is present when getting link ...
CVE-2024-46678MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: bonding: change ipsec_lock from spin lock to mutex ...
CVE-2024-46677MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: gtp: fix a potential NULL pointer dereference When...
CVE-2024-46676MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: nfc: pn533: Add poll mod list filling check In cas...
CVE-2024-46675MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: core: Prevent USB core invalid event buf...
CVE-2024-46674HIGH7.8In the Linux kernel, the following vulnerability has been resolved: usb: dwc3: st: fix probed platform device ref count...
CVE-2024-46673HIGH7.8In the Linux kernel, the following vulnerability has been resolved: scsi: aacraid: Fix double-free on probe failure aa...
CVE-2024-38816HIGH7.5Applications serving static resources through the functional web frameworks WebMvc.fn or WebFlux.fn are vulnerable to pa...
CVE-2024-8656MEDIUM6.1The WPFactory Helper plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_ar...
CVE-2024-43180MEDIUM4.3IBM Concert 1.0 does not set the secure attribute on authorization tokens or session cookies. Attackers may be able to g...
CVE-2024-8762CRITICAL9.8A vulnerability was found in code-projects Crud Operation System 1.0. It has been classified as critical. This affects a...
CVE-2024-8751HIGH7.5A vulnerability allows a remote unauthenticated attacker to modify the prod uct’s IP address over the Sopas ET interface...
CVE-2024-7961CRITICAL9.8A path traversal vulnerability exists in the Rockwell Automation affected product. If exploited, the threat actor could...
CVE-2024-7960CRITICAL9.1The Rockwell Automation affected product contains a vulnerability that allows a threat actor to view sensitive informati...
CVE-2024-8533HIGH8.8A privilege escalation vulnerability exists in the Rockwell Automation affected products. The vulnerability occurs due t...
CVE-2024-6077HIGH7.5A denial-of-service vulnerability exists in the Rockwell Automation affected products when specially crafted packets are...
CVE-2024-45607MEDIUM5.3whatsapp-api-js is a TypeScript server agnostic Whatsapp's Official API framework. It's possible to check the payload va...
CVE-2024-44460HIGH7.5An invalid read size in Nanomq v0.21.9 allows attackers to cause a Denial of Service (DoS).
CVE-2024-44459HIGH7.5A memory allocation issue in vernemq v2.0.1 allows attackers to cause a Denial of Service (DoS) via excessive memory con...
CVE-2024-20430HIGH7.3A vulnerability in Cisco Meraki Systems Manager (SM) Agent for Windows could allow an authenticated, local attacker to e...
CVE-2024-8641HIGH8.8An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.7 prior to 17.1.7, from 17.2 prior ...
CVE-2024-8311MEDIUM6.5An issue was discovered with pipeline execution policies in GitLab EE affecting all versions from 17.2 prior to 17.2.5, ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now