2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-37680MEDIUM6.1Hangzhou Meisoft Information Technology Co., Ltd. FineSoft <=8.0 is affected by Cross Site Scripting (XSS) which allows ...
CVE-2024-37679MEDIUM6.1Cross Site Scripting vulnerability in Hangzhou Meisoft Information Technology Co., Ltd. Finesoft v.8.0 and before allows...
CVE-2024-37677HIGH7.5An issue in Shenzhen Weitillage Industrial Co., Ltd the access management specialist V6.62.51215 allows a remote attacke...
CVE-2024-6104MEDIUM5.5go-retryablehttp prior to 0.7.7 did not sanitize urls when writing them to its log file. This could lead to go-retryable...
CVE-2024-38373HIGH8.1FreeRTOS-Plus-TCP is a lightweight TCP/IP stack for FreeRTOS. FreeRTOS-Plus-TCP versions 4.0.0 through 4.1.0 contain a b...
CVE-2024-38369MEDIUM4.3XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. The content of ...
CVE-2024-33881MEDIUM5.3An issue was discovered in VirtoSoftware Virto Bulk File Download 5.5.44 for SharePoint 2019. The Virto.SharePoint.FileD...
CVE-2024-33880MEDIUM5.3An issue was discovered in VirtoSoftware Virto Bulk File Download 5.5.44 for SharePoint 2019. It discloses full pathname...
CVE-2024-33879CRITICAL9.8An issue was discovered in VirtoSoftware Virto Bulk File Download 5.5.44 for SharePoint 2019. The Virto.SharePoint.FileD...
CVE-2024-6287HIGH7.8Incorrect Calculation vulnerability in Renesas arm-trusted-firmware allows Local Execution of Code. When checking whet...
CVE-2024-6285MEDIUM6.7Integer Underflow (Wrap or Wraparound) vulnerability in Renesas arm-trusted-firmware. An integer underflow in image rang...
CVE-2024-33687HIGH7.5Insufficient verification of data authenticity issue exists in NJ Series CPU Unit all versions and NX Series CPU Unit al...
CVE-2024-4748HIGH7.8The CRUDDIY project is vulnerable to shell command injection via sending a crafted POST request to the application serve...
CVE-2024-39292MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: um: Add winch to winch_handlers before registering ...
CVE-2024-39291HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: Fix buffer size in gfx_v9_4_3_init_ cp_...
CVE-2024-38667HIGH7.8In the Linux kernel, the following vulnerability has been resolved: riscv: prevent pt_regs corruption for secondary idl...
CVE-2024-38664HIGH7.8In the Linux kernel, the following vulnerability has been resolved: drm: zynqmp_dpsub: Always register bridge We must ...
CVE-2024-38663MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: fix list corruption from resetting io s...
CVE-2024-38384HIGH7.8In the Linux kernel, the following vulnerability has been resolved: blk-cgroup: fix list corruption from reorder of WRI...
CVE-2024-37825MEDIUM5.4An issue in EnvisionWare Computer Access & Reservation Control SelfCheck v1.0 (fixed in OneStop 3.2.0.27184 Hotfix May 2...
CVE-2024-37026MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/xe: Only use reserved BCS instances for usm mig...
CVE-2024-37021MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: fpga: manager: add owner module and take its refcou...
CVE-2024-36479MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: fpga: bridge: add owner module and take its refcoun...
CVE-2024-35247MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: fpga: region: add owner module and take its refcoun...
CVE-2024-34030MEDIUM4.7In the Linux kernel, the following vulnerability has been resolved: PCI: of_property: Return error for int_map allocati...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now