2024 CVE Vulnerabilities
39,239 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-38382 | MEDIUM | 5.5 | 0.2% | Sep 2, 2024 | in OpenHarmony v4.0.0 and prior versions allow a local attacker cause information leak through out-of-bounds Read. |
| CVE-2024-28044 | MEDIUM | 5.5 | 0.1% | Sep 2, 2024 | in OpenHarmony v4.1.0 and prior versions allow a local attacker cause crash through integer overflow. |
| CVE-2024-20089 | HIGH | 7.5 | 0.3% | Sep 2, 2024 | In wlan, there is a possible denial of service due to incorrect error handling. This could lead to remote denial of serv... |
| CVE-2024-20088 | MEDIUM | 4.4 | 0.1% | Sep 2, 2024 | In keyinstall, there is a possible out of bounds read due to a missing bounds check. This could lead to local informatio... |
| CVE-2024-20087 | MEDIUM | 6.7 | 0.1% | Sep 2, 2024 | In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p... |
| CVE-2024-20086 | MEDIUM | 6.7 | 0.1% | Sep 2, 2024 | In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of p... |
| CVE-2024-20085 | MEDIUM | 4.4 | 0.1% | Sep 2, 2024 | In power, there is a possible out of bounds read due to a missing bounds check. This could lead to local information dis... |
| CVE-2024-20084 | MEDIUM | 4.4 | 0.1% | Sep 2, 2024 | In power, there is a possible out of bounds read due to a missing bounds check. This could lead to local information dis... |
| CVE-2024-45522 | CRITICAL | 9.8 | 0.5% | Sep 2, 2024 | Linen before cd37c3e does not verify that the domain is linen.dev or www.linen.dev when resetting a password. This occur... |
| CVE-2024-45270 | MEDIUM | 4.3 | 0.2% | Sep 2, 2024 | WordPress plugin "Carousel Slider" provided by Sayful Islam contains a cross-site request forgery vulnerability on Hero ... |
| CVE-2024-45269 | MEDIUM | 4.3 | 0.3% | Sep 2, 2024 | WordPress plugin "Carousel Slider" provided by Sayful Islam contains a cross-site request forgery vulnerability on Carou... |
| CVE-2024-8370 | MEDIUM | 5.4 | 0.4% | Sep 1, 2024 | A vulnerability classified as problematic was found in Grocy up to 4.2.0. This vulnerability affects unknown code of the... |
| CVE-2024-45509 | MEDIUM | 6.5 | 0.4% | Sep 1, 2024 | In MISP through 2.4.196, app/Controller/BookmarksController.php does not properly restrict access to bookmarks data in t... |
| CVE-2024-45508 | CRITICAL | 9.8 | 0.7% | Sep 1, 2024 | HTMLDOC before 1.9.19 has an out-of-bounds write in parse_paragraph in ps-pdf.cxx because of an attempt to strip leading... |
| CVE-2024-5053 | MEDIUM | 4.3 | 0.4% | Sep 1, 2024 | The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner... |
| CVE-2024-8368 | CRITICAL | 9.8 | 0.8% | Sep 1, 2024 | A vulnerability was found in code-projects Hospital Management System 1.0. It has been rated as critical. Affected by th... |
| CVE-2024-8367 | MEDIUM | 5.1 | 0.5% | Sep 1, 2024 | A vulnerability was found in HM Courts & Tribunals Service Probate Back Office up to c1afe0cdb2b2766d9e24872c4e827f8b82a... |
| CVE-2024-8366 | MEDIUM | 4.7 | 0.5% | Aug 31, 2024 | A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been classified as problematic. This a... |
| CVE-2024-44946 | MEDIUM | 5.5 | 0.8% | Aug 31, 2024 | In the Linux kernel, the following vulnerability has been resolved: kcm: Serialise kcm_sendmsg() for the same socket. ... |
| CVE-2024-8108 | MEDIUM | 5.4 | 0.4% | Aug 31, 2024 | The Share This Image plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'alignment' parameter in ... |
| CVE-2024-7717 | HIGH | 8.8 | 0.5% | Aug 31, 2024 | The WP Events Manager plugin for WordPress is vulnerable to time-based SQL Injection via the ‘order’ parameter in all ve... |
| CVE-2024-0111 | MEDIUM | 4.4 | 0.2% | Aug 31, 2024 | NVIDIA CUDA Toolkit contains a vulnerability in command 'cuobjdump' where a user may cause a crash or produce incorrect ... |
| CVE-2024-0110 | HIGH | 7.8 | 0.2% | Aug 31, 2024 | NVIDIA CUDA Toolkit contains a vulnerability in command `cuobjdump` where a user may cause an out-of-bound write by pass... |
| CVE-2024-0109 | LOW | 3.3 | 0.2% | Aug 31, 2024 | NVIDIA CUDA Toolkit contains a vulnerability in command `cuobjdump` where a user may cause a crash by passing in a malfo... |
| CVE-2024-8276 | MEDIUM | 5.4 | 0.4% | Aug 31, 2024 | The WPZOOM Portfolio Lite – Filterable Portfolio Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scriptin... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now