2024 CVE Vulnerabilities

39,239 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-38382MEDIUM5.5in OpenHarmony v4.0.0 and prior versions allow a local attacker cause information leak through out-of-bounds Read.
CVE-2024-28044MEDIUM5.5in OpenHarmony v4.1.0 and prior versions allow a local attacker cause crash through integer overflow.
CVE-2024-20089HIGH7.5In wlan, there is a possible denial of service due to incorrect error handling. This could lead to remote denial of serv...
CVE-2024-20088MEDIUM4.4In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio...
CVE-2024-20087MEDIUM6.7In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p...
CVE-2024-20086MEDIUM6.7In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p...
CVE-2024-20085MEDIUM4.4In power, there is a possible out of bounds read due to a missing bounds check. This could lead to local information dis...
CVE-2024-20084MEDIUM4.4In power, there is a possible out of bounds read due to a missing bounds check. This could lead to local information dis...
CVE-2024-45522CRITICAL9.8Linen before cd37c3e does not verify that the domain is linen.dev or www.linen.dev when resetting a password. This occur...
CVE-2024-45270MEDIUM4.3WordPress plugin "Carousel Slider" provided by Sayful Islam contains a cross-site request forgery vulnerability on Hero ...
CVE-2024-45269MEDIUM4.3WordPress plugin "Carousel Slider" provided by Sayful Islam contains a cross-site request forgery vulnerability on Carou...
CVE-2024-8370MEDIUM5.4A vulnerability classified as problematic was found in Grocy up to 4.2.0. This vulnerability affects unknown code of the...
CVE-2024-45509MEDIUM6.5In MISP through 2.4.196, app/Controller/BookmarksController.php does not properly restrict access to bookmarks data in t...
CVE-2024-45508CRITICAL9.8HTMLDOC before 1.9.19 has an out-of-bounds write in parse_paragraph in ps-pdf.cxx because of an attempt to strip leading...
CVE-2024-5053MEDIUM4.3The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner...
CVE-2024-8368CRITICAL9.8A vulnerability was found in code-projects Hospital Management System 1.0. It has been rated as critical. Affected by th...
CVE-2024-8367MEDIUM5.1A vulnerability was found in HM Courts & Tribunals Service Probate Back Office up to c1afe0cdb2b2766d9e24872c4e827f8b82a...
CVE-2024-8366MEDIUM4.7A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been classified as problematic. This a...
CVE-2024-44946MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: kcm: Serialise kcm_sendmsg() for the same socket. ...
CVE-2024-8108MEDIUM5.4The Share This Image plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'alignment' parameter in ...
CVE-2024-7717HIGH8.8The WP Events Manager plugin for WordPress is vulnerable to time-based SQL Injection via the ‘order’ parameter in all ve...
CVE-2024-0111MEDIUM4.4NVIDIA CUDA Toolkit contains a vulnerability in command 'cuobjdump' where a user may cause a crash or produce incorrect ...
CVE-2024-0110HIGH7.8NVIDIA CUDA Toolkit contains a vulnerability in command `cuobjdump` where a user may cause an out-of-bound write by pass...
CVE-2024-0109LOW3.3NVIDIA CUDA Toolkit contains a vulnerability in command `cuobjdump` where a user may cause a crash by passing in a malfo...
CVE-2024-8276MEDIUM5.4The WPZOOM Portfolio Lite – Filterable Portfolio Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scriptin...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now