2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-57941 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | In the Linux kernel, the following vulnerability has been resolved: netfs: Fix the (non-)cancellation of copy when cach... |
| CVE-2024-57940 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | In the Linux kernel, the following vulnerability has been resolved: exfat: fix the infinite loop in exfat_readdir() If... |
| CVE-2024-57939 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | In the Linux kernel, the following vulnerability has been resolved: riscv: Fix sleeping in invalid context in die() di... |
| CVE-2024-57938 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | In the Linux kernel, the following vulnerability has been resolved: net/sctp: Prevent autoclose integer overflow in sct... |
| CVE-2024-57936 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | In the Linux kernel, the following vulnerability has been resolved: RDMA/bnxt_re: Fix max SGEs for the Work Request Ge... |
| CVE-2024-57935 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | In the Linux kernel, the following vulnerability has been resolved: RDMA/hns: Fix accessing invalid dip_ctx during dest... |
| CVE-2024-57934 | MEDIUM | 4.7 | 0.2% | Jan 21, 2025 | In the Linux kernel, the following vulnerability has been resolved: fgraph: Add READ_ONCE() when accessing fgraph_array... |
| CVE-2024-57933 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | In the Linux kernel, the following vulnerability has been resolved: gve: guard XSK operations on the existence of queue... |
| CVE-2024-57932 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | In the Linux kernel, the following vulnerability has been resolved: gve: guard XDP xmit NDO on existence of xdp queues ... |
| CVE-2024-57931 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | In the Linux kernel, the following vulnerability has been resolved: selinux: ignore unknown extended permissions When ... |
| CVE-2024-57930 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | In the Linux kernel, the following vulnerability has been resolved: tracing: Have process_string() also allow arrays I... |
| CVE-2024-52973 | MEDIUM | 6.5 | 0.4% | Jan 21, 2025 | An allocation of resources without limits or throttling in Kibana can lead to a crash caused by a specially crafted requ... |
| CVE-2024-37284 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | Improper handling of alternate encoding occurs when Elastic Defend on Windows systems attempts to scan a file or process... |
| CVE-2024-13444 | MEDIUM | 6.1 | 0.2% | Jan 21, 2025 | The wp-greet plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 6.2.... |
| CVE-2024-13230 | MEDIUM | 5.3 | 0.4% | Jan 21, 2025 | The Social Share, Social Login and Social Comments Plugin – Super Socializer plugin for WordPress is vulnerable to Limit... |
| CVE-2024-11226 | MEDIUM | 6.4 | 0.3% | Jan 21, 2025 | The FireCask Like & Share Button plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'width' param... |
| CVE-2024-6466 | MEDIUM | 5.3 | 0.3% | Jan 21, 2025 | NEC Corporation's WebSAM DeploymentManager v6.0 to v6.80 allows an attacker to reset configurations or restart products ... |
| CVE-2024-13404 | MEDIUM | 6.1 | 0.3% | Jan 21, 2025 | The Link Library plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'searchll' parameter in al... |
| CVE-2024-12005 | MEDIUM | 6.1 | 0.2% | Jan 21, 2025 | The WP-BibTeX plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.0... |
| CVE-2024-13536 | MEDIUM | 5.3 | 0.4% | Jan 21, 2025 | The 1003 Mortgage Application plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and incl... |
| CVE-2024-45091 | MEDIUM | 5.5 | 0.2% | Jan 21, 2025 | IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.24, 7.1 through 7.1.2.10, and 7.2 through 7.2.3.13 stores potentially sensi... |
| CVE-2024-13454 | MEDIUM | 5.3 | 0.1% | Jan 20, 2025 | Weak encryption algorithm in Easy-RSA version 3.0.5 through 3.1.7 allows a local attacker to more easily bruteforce the ... |
| CVE-2024-13176 | MEDIUM | 4.1 | 0.6% | Jan 20, 2025 | Issue summary: A timing side-channel which could potentially allow recovering the private key exists in the ECDSA signat... |
| CVE-2024-13524 | MEDIUM | 4.5 | 0.2% | Jan 20, 2025 | A vulnerability has been found in obsproject OBS Studio up to 30.0.2 on Windows and classified as problematic. Affected ... |
| CVE-2024-57927 | MEDIUM | 5.5 | 0.2% | Jan 19, 2025 | In the Linux kernel, the following vulnerability has been resolved: nfs: Fix oops in nfs_netfs_init_request() when copy... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now