2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-0742MEDIUM4.3It was possible for certain browser prompts and dialogs to be activated or dismissed unintentionally by the user due to ...
CVE-2024-0741MEDIUM6.5An out of bounds write in ANGLE could have allowed an attacker to corrupt memory leading to a potentially exploitable cr...
CVE-2024-0703MEDIUM4.8The Sticky Buttons – floating buttons builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via stic...
CVE-2024-23183MEDIUM5.4Cross-site scripting vulnerability in a-blog cms Ver.3.1.x series versions prior to Ver.3.1.7, Ver.3.0.x series versions...
CVE-2024-23181MEDIUM6.1Cross-site scripting vulnerability in a-blog cms Ver.3.1.x series versions prior to Ver.3.1.7, Ver.3.0.x series versions...
CVE-2024-23851MEDIUM5.5copy_params in drivers/md/dm-ioctl.c in the Linux kernel through 6.7.1 can attempt to allocate more than INT_MAX bytes, ...
CVE-2024-23850MEDIUM5.5In btrfs_get_root_ref in fs/btrfs/disk-io.c in the Linux kernel through 6.7.1, there can be an assertion failure and cra...
CVE-2024-23849MEDIUM5.5In rds_recv_track_latency in net/rds/af_rds.c in the Linux kernel through 6.7.1, there is an off-by-one error for an RDS...
CVE-2024-23848MEDIUM5.5In the Linux kernel through 6.7.1, there is a use-after-free in cec_queue_msg_fh, related to drivers/media/cec/core/cec-...
CVE-2024-0587MEDIUM6.1The AMP for WP – Accelerated Mobile Pages plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the '...
CVE-2024-23224MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.3, macOS Ventura 13.6.4. An app may...
CVE-2024-23223MEDIUM6.2A privacy issue was addressed with improved handling of files. This issue is fixed in iOS 17.3 and iPadOS 17.3, macOS So...
CVE-2024-23219MEDIUM6.2The issue was addressed with improved authentication. This issue is fixed in iOS 17.3 and iPadOS 17.3. Stolen Device Pro...
CVE-2024-23218MEDIUM5.9A timing side-channel issue was addressed with improvements to constant-time computation in cryptographic functions. Thi...
CVE-2024-23215MEDIUM5.5An issue was addressed with improved handling of temporary files. This issue is fixed in iOS 17.3 and iPadOS 17.3, macOS...
CVE-2024-23207MEDIUM5.5This issue was addressed with improved redaction of sensitive information. This issue is fixed in iOS 17.3 and iPadOS 17...
CVE-2024-23206MEDIUM6.5An access issue was addressed with improved access restrictions. This issue is fixed in Safari 17.3, iOS 16.7.5 and iPad...
CVE-2024-23345MEDIUM5.4Nautobot is a Network Source of Truth and Network Automation Platform built as a web application. All users of Nautobot...
CVE-2024-23340MEDIUM5.3@hono/node-server is an adapter that allows users to run Hono applications on Node.js. Since v1.3.0, @hono/node-server h...
CVE-2024-23339MEDIUM6.5hoolock is a suite of lightweight utilities designed to maintain a small footprint when bundled. Starting in version 2.0...
CVE-2024-23677MEDIUM5.3In Splunk Enterprise versions below 9.0.8, the Splunk RapidDiag utility discloses server responses from external applica...
CVE-2024-23675MEDIUM6.5In Splunk Enterprise versions below 9.0.8 and 9.1.3, Splunk app key value store (KV Store) improperly handles permission...
CVE-2024-0606MEDIUM6.1An attacker could execute unauthorized script on a legitimate site through UXSS using window.open() by opening a javascr...
CVE-2024-0430MEDIUM5.5IObit Malware Fighter v11.0.0.1274 is vulnerable to a Denial of Service vulnerability by triggering the 0x8001E00C IOCTL...
CVE-2024-0782MEDIUM6.1A vulnerability has been found in CodeAstro Online Railway Reservation System 1.0 and classified as problematic. This vu...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now