CVEs from 2024

6,606 normalized CVEs published or assigned in this year.

Total
6,606
critical
critical 174
high
high 1,069
medium
medium 2,083
low
low 49
% Critical
2.6%
% with KEV
2.5%
% with exploit
3.4%

Top vendors

Top products

  • mbed_tls 15
  • operations_analytics_log_analysis 14
  • surveillance_station 12
  • checkmk 10
  • office 8
  • profilegrid 8
  • office_long_term_servicing_channel 6
  • propertyhive 5
0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2024-35910 medium 5.8 5.8 2y ago In the Linux kernel, the following vulnerability has been resolved: tcp: properly terminate timers for kernel sockets We had various syzbot reports about tcp timers firing after the corresponding n…
CVE-2024-32587 medium 5.8 5.8 2y ago Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in EnvialoSimple EnvíaloSimple allows Reflected XSS.This issue affects EnvíaloSimple: from n/a throu…
CVE-2024-32547 medium 5.8 5.8 2y ago Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Max Bond Code Insert Manager (Q2W3 Inc Manager) allows Reflected XSS.This issue affects Code Inse…
CVE-2024-31122 medium 5.8 5.8 2y ago Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Prism IT Systems User Rights Access Manager allows Reflected XSS.This issue affects User Rights A…
CVE-2024-36894 medium 5.6 5.6 2y ago In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Fix race between aio_cancel() and AIO request complete FFS based applications can utilize the aio_cancel() cal…
CVE-2024-33655 medium 5.5 18d ago Moderate: unbound security update
CVE-2024-51394 medium 5.5 5.5 24d ago Buffer Overflow vulnerability in Ardupiot Copter Latest commit 92693e023793133e49a035daf37c14433e484778 allows a local attacker to cause a denial of service via the AP_MSP::loop, AP_MSP, AP_MSP.cpp c…
CVE-2024-26766 medium 5.5 4mo ago In the Linux kernel, the following vulnerability has been resolved: IB/hfi1: Fix sdma.h tx->num_descs off-by-one error Unfortunately the commit `fd8958efe877` introduced another error causing the `…
CVE-2024-58083 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-58068 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-56709 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-58075 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-56662 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-56675 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-58062 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-58088 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-53680 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-58077 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-58057 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-58015 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-56739 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-56645 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-53241 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-50195 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-56603 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-56690 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-54456 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-57987 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-52332 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-53229 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-53216 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-57986 medium 5.5 5.5 7mo ago Moderate: kernel security update
CVE-2024-50294 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-49570 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-56786 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-46689 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-57989 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-53170 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-57993 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-58012 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-57988 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-53052 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-47727 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-57998 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-50060 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-47679 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-49864 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-57995 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-53090 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-57990 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-53119 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-53135 medium 5.5 7mo ago Moderate: kernel security update
CVE-2024-57981 medium 5.5 5.5 7mo ago Moderate: kernel security update
CVE-2024-45777 medium 5.5 7mo ago Moderate: grub2 security update
CVE-2024-13176 medium 5.5 9mo ago Moderate: mysql:8.4 security update
CVE-2024-36357 medium 5.5 9mo ago Moderate: kernel security update
CVE-2024-47252 medium 5.5 9mo ago Insufficient escaping of user-supplied data in mod_ssl in Apache HTTP Server 2.4.63 and earlier allows an untrusted SSL/TLS client to insert escape characters into log files in some configurations. …
CVE-2024-36350 medium 5.5 10mo ago Moderate: kernel security update
CVE-2024-47081 medium 5.5 10mo ago RHSA-2025:14999: resource-agents security update (Moderate)
CVE-2024-57980 medium 5.5 10mo ago Moderate: kernel security update
CVE-2024-52615 medium 5.5 11mo ago Moderate: avahi security update
CVE-2024-13175 medium 5.5 5.5 11mo ago Authorization Bypass Through User-Controlled Key vulnerability in Vidco Software VOC TESTER allows Forceful Browsing. This issue affects VOC TESTER: before 12.41.0.
CVE-2024-50379 medium 5.5 11mo ago Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability during JSP compilation in Apache Tomcat permits an RCE on case insensitive file systems when the default servlet is enabled for write (…
CVE-2024-23337 medium 5.5 11mo ago jq is a command-line JSON processor. In versions up to and including 1.7.1, an integer overflow arises when assigning value using an index of 2147483647, the signed integer limit. This causes a denia…
CVE-2024-54661 medium 5.5 11mo ago readline.sh in socat before1.8.0.2 relies on the /tmp/$USER/stderr2 file.
CVE-2024-53064 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: idpf: fix idpf_vc_core_init error path In an event where the platform running the device control plane is rebooted, reset is dete…
CVE-2024-45332 medium 5.5 1y ago RHSA-2025:10991: microcode_ctl security update (Moderate)
CVE-2024-43420 medium 5.5 1y ago RHSA-2025:10991: microcode_ctl security update (Moderate)
CVE-2024-47834 medium 5.5 1y ago GStreamer is a library for constructing graphs of media-handling components. An Use-After-Free read vulnerability has been discovered affecting the processing of CodecPrivate elements in Matroska str…
CVE-2024-47542 medium 5.5 1y ago Moderate: gstreamer1-plugins-base security update
CVE-2024-49935 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: ACPI: PAD: fix crash in exit_round_robin() The kernel occasionally crashes in cpumask_clear_cpu(), which is called within exit_ro…
CVE-2024-46839 medium 5.5 1y ago RHSA-2025:6966: kernel security update (Moderate)
CVE-2024-53224 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: RDMA/mlx5: Move events notifier registration to be after device registration Move pkey change work initialization and cleanup fro…
CVE-2024-50228 medium 5.5 1y ago RHSA-2025:6966: kernel security update (Moderate)
CVE-2024-43910 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: bpf: add missing check_func_arg_reg_off() to prevent out-of-bounds memory accesses Currently, it's possible to pass in a modified…
CVE-2024-36968 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix div-by-zero in l2cap_le_flowctl_init() l2cap_le_flowctl_init() can cause both div-by-zero and an integer ov…
CVE-2024-54460 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: Bluetooth: iso: Fix circular lock in iso_listen_bis This fixes the circular locking dependency warning below, by releasing the so…
CVE-2024-58005 medium 5.5 5.5 1y ago Important: kernel security update
CVE-2024-47700 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: ext4: check stripe size compatibility on remount as well We disable stripe size in __ext4_fill_super if it is not a multiple of t…
CVE-2024-57890 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: RDMA/uverbs: Prevent integer overflow issue In the expression "cmd.wqe_size * cmd.wr_count", both variables are u32 values that c…
CVE-2024-52949 medium 5.5 1y ago Moderate: iptraf-ng security update
CVE-2024-10224 medium 5.5 1y ago Moderate: perl-Module-ScanDeps security update
CVE-2024-40956 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Fix possible Use-After-Free in irq_process_work_list Use list_for_each_entry_safe() to allow iterating through t…
CVE-2024-56642 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: tipc: Fix use-after-free of kernel socket in cleanup_bearer(). syzkaller reported a use-after-free of UDP kernel socket in cleanu…
CVE-2024-53085 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: tpm: Lock TPM chip in tpm_pm_suspend() first Setting TPM_CHIP_FLAG_SUSPENDED in the end of tpm_pm_suspend() can be racy according…
CVE-2024-53096 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: mm: resolve faulty mmap_region() error path behaviour The mmap_region() function is somewhat terrifying, with spaghetti-like cont…
CVE-2024-47775 medium 5.5 1y ago GStreamer is a library for constructing graphs of media-handling components. An OOB-read vulnerability has been found in the parse_ds64 function within gstwavparse.c. The parse_ds64 function does not…
CVE-2024-47774 medium 5.5 1y ago GStreamer is a library for constructing graphs of media-handling components. An OOB-read vulnerability has been identified in the gst_avi_subtitle_parse_gab2_chunk function within gstavisubtitle.c. T…
CVE-2024-47776 medium 5.5 1y ago GStreamer is a library for constructing graphs of media-handling components. An OOB-read has been discovered in gst_wavparse_cue_chunk within gstwavparse.c. The vulnerability happens due to a discrep…
CVE-2024-47777 medium 5.5 1y ago GStreamer is a library for constructing graphs of media-handling components. An OOB-read vulnerability has been identified in the gst_wavparse_smpl_chunk function within gstwavparse.c. This function …
CVE-2024-47778 medium 5.5 1y ago GStreamer is a library for constructing graphs of media-handling components. An OOB-read vulnerability has been discovered in gst_wavparse_adtl_chunk within gstwavparse.c. This vulnerability arises d…
CVE-2024-42321 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: net: flow_dissector: use DEBUG_NET_WARN_ON_ONCE The following splat is easy to reproduce upstream as well as in -stable kernels. …
CVE-2024-36880 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: Bluetooth: qca: add missing firmware sanity checks Add the missing sanity checks when parsing the firmware files before downloadi…
CVE-2024-57843 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: virtio-net: fix overflow inside virtnet_rq_alloc When the frag just got a page, then may lead to regression on VM. Specially if t…
CVE-2024-57884 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: mm: vmscan: account for free pages to prevent infinite Loop in throttle_direct_reclaim() The task sometimes continues looping in …
CVE-2024-57852 medium 5.5 1y ago In the Linux kernel, the following vulnerability has been resolved: firmware: qcom: scm: smc: Handle missing SCM device Commit ca61d6836e6f ("firmware: qcom: scm: fix a NULL-pointer dereference") m…
CVE-2024-12747 medium 5.5 1y ago Moderate: rsync security update
CVE-2024-12088 medium 5.5 1y ago Moderate: rsync security update
CVE-2024-44952 medium 5.5 1y ago RHSA-2025:6966: kernel security update (Moderate)
CVE-2024-49967 medium 5.5 1y ago RHSA-2025:6966: kernel security update (Moderate)