2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-41924HIGH7.2Acceptance of extraneous untrusted data with trusted data vulnerability exists in EC-CUBE 4 series. If this vulnerabilit...
CVE-2024-41696HIGH7.5Priority PRI WEB Portal Add-On for Priority ERP on prem - CWE-200: Exposure of Sensitive Information to an Unauthoriz...
CVE-2024-41695HIGH7.5Cybonet - CWE-22: Improper Limitation of a Pathname to a Restricted Directory
CVE-2024-41694MEDIUM5.3Cybonet - CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CVE-2024-41693MEDIUM6.1Mashov - CWE-80: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)
CVE-2024-41141MEDIUM6.1Stored cross-site scripting vulnerability exists in EC-CUBE Web API Plugin. When there are multiple users using OAuth Ma...
CVE-2024-40895MEDIUM6.4FFRI AMC versions 3.4.0 to 3.5.3 and some OEM products that implement/bundle FFRI AMC versions 3.4.0 to 3.5.3 allow a re...
CVE-2024-38432CRITICAL9.8Matrix Tafnit v8 - CWE-646: Reliance on File Name or Extension of Externally-Supplied File
CVE-2024-38431HIGH7.5Matrix Tafnit v8 - CWE-204: Observable Response Discrepancy
CVE-2024-38430MEDIUM6.1Matrix - CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-38429HIGH7.5Matrix Tafnit v8 -  CWE-552: Files or Directories Accessible to External Parties
CVE-2024-7224CRITICAL9.8A vulnerability was found in SourceCodester Lot Reservation Management System 1.0 and classified as critical. Affected b...
CVE-2024-7223CRITICAL9.8A vulnerability has been found in SourceCodester Lot Reservation Management System 1.0 and classified as critical. Affec...
CVE-2024-42231MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: btrfs: zoned: fix calc_available_free_space() for z...
CVE-2024-42230MEDIUM4.4In the Linux kernel, the following vulnerability has been resolved: powerpc/pseries: Fix scv instruction crash with kex...
CVE-2024-42229MEDIUM4.1In the Linux kernel, the following vulnerability has been resolved: crypto: aead,cipher - zeroize key buffer after use ...
CVE-2024-42228HIGH7In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Using uninitialized value *size when ca...
CVE-2024-42227MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Fix overlapping copy within dml_co...
CVE-2024-42226Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-42225HIGH7.5In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: replace skb_put with skb_put_zero Avoi...
CVE-2024-42224MEDIUM6.1In the Linux kernel, the following vulnerability has been resolved: net: dsa: mv88e6xxx: Correct check for empty list ...
CVE-2024-42223MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: dvb-frontends: tda10048: Fix integer overflo...
CVE-2024-42162HIGH7In the Linux kernel, the following vulnerability has been resolved: gve: Account for stopped queues when reading NIC st...
CVE-2024-42161MEDIUM6.3In the Linux kernel, the following vulnerability has been resolved: bpf: Avoid uninitialized value in BPF_CORE_READ_BIT...
CVE-2024-42160HIGH7.8In the Linux kernel, the following vulnerability has been resolved: f2fs: check validation of fault attrs in f2fs_build...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now