2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-43900HIGH7.8In the Linux kernel, the following vulnerability has been resolved: media: xc2028: avoid use-after-free in load_firmwar...
CVE-2024-43899MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix null pointer deref in dcn20_re...
CVE-2024-43898Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-43897MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net: drop bad gso csum_start and offset in virtio_n...
CVE-2024-43896MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ASoC: cs-amp-lib: Fix NULL pointer crash if efi.get...
CVE-2024-43895Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-43894MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/client: fix null pointer dereference in drm_cli...
CVE-2024-43893MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: serial: core: check uartclk for zero to avoid divid...
CVE-2024-43892MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: memcg: protect concurrent access to mem_cgroup_idr ...
CVE-2024-43891MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: tracing: Have format file honor EVENT_FILE_FL_FREED...
CVE-2024-43890MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: tracing: Fix overflow in get_free_elt() "tracing_m...
CVE-2024-43889MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: padata: Fix possible divide-by-0 panic in padata_mt...
CVE-2024-43888HIGH7.8In the Linux kernel, the following vulnerability has been resolved: mm: list_lru: fix UAF for memory cgroup The mem_cg...
CVE-2024-43887MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: net/tcp: Disable TCP-AO static key after RCU grace ...
CVE-2024-43886MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Add null check in resource_log_pip...
CVE-2024-43885Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-8161CRITICAL9.8SQL injection vulnerability in ATISolutions CIGES affecting versions lower than 2.15.5. This vulnerability allows a remo...
CVE-2024-43444HIGH8.2Passwords of agents and customers are displayed in plain text in the OTRS admin log module if certain configurations reg...
CVE-2024-43443MEDIUM4.9Improper Neutralization of Input done by an attacker with admin privileges ('Cross-site Scripting') in Process Managemen...
CVE-2024-43442MEDIUM4.9Improper Neutralization of Input done by an attacker with admin privileges ('Cross-site Scripting') in  OTRS (System Con...
CVE-2024-43884MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Bluetooth: MGMT: Add error handling to pair_device(...
CVE-2024-45256CRITICAL9.8An arbitrary file write issue in the exfiltration endpoint in BYOB (Build Your Own Botnet) 2.0 allows attackers to overw...
CVE-2024-45241HIGH7.5A traversal vulnerability in GeneralDocs.aspx in CentralSquare CryWolf (False Alarm Management) through 2024-08-09 allow...
CVE-2024-7313MEDIUM6.1The Shield Security WordPress plugin before 20.0.6 does not sanitise and escape a parameter before outputting it back i...
CVE-2024-6879MEDIUM4.7The Quiz and Survey Master (QSM) WordPress plugin before 9.1.1 fails to validate and escape certain Quiz fields before ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now