CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-27436
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Stop parsing channels bits when all channels are found. If a usb audio …

May 17, 2024
CVE-2024-27435
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: nvme: fix reconnection fail due to reserved tag allocation We found a issue on production …

May 17, 2024
CVE-2024-27434
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: wifi: iwlwifi: mvm: don't set the MFP flag for the GTK The firmware doesn't need …

May 17, 2024
CVE-2024-27433
7.8 HIGH

In the Linux kernel, the following vulnerability has been resolved: clk: mediatek: mt7622-apmixedsys: Fix an error handling path in clk_mt8135_apmixed_probe() 'clk_data' is allocated with mtk_devm_alloc_clk_data(). …

May 17, 2024
CVE-2024-27432
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net: ethernet: mtk_eth_soc: fix PPE hanging issue A patch to resolve an issue was found …

May 17, 2024
CVE-2023-52660
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: media: rkisp1: Fix IRQ handling due to shared interrupts The driver requests the interrupts as …

May 17, 2024
CVE-2023-52659
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: x86/mm: Ensure input to pfn_to_kaddr() is treated as a 64-bit type On 64-bit platforms, the …

May 17, 2024
CVE-2024-5055
7.5 HIGH

Uncontrolled resource consumption vulnerability in XAMPP Windows, versions 7.3.2 and earlier. This vulnerability exists when XAMPP attempts to process many incomplete HTTP requests, resulting in …

May 17, 2024
CVE-2024-5044
3.7 LOW

A vulnerability was found in Emlog Pro 2.3.4. It has been classified as problematic. This affects an unknown part of the component Cookie Handler. The …

May 17, 2024
CVE-2024-5043
4.7 MEDIUM

A vulnerability was found in Emlog Pro 2.3.4 and classified as critical. Affected by this issue is some unknown functionality of the file admin/setting.php. The …

May 17, 2024
CVE-2024-27431
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: cpumap: Zero-initialise xdp_rxq_info struct before running XDP program When running an XDP program that is …

May 17, 2024
CVE-2024-27430

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

May 17, 2024
CVE-2024-27429

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

May 17, 2024
CVE-2024-27428

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

May 17, 2024
CVE-2024-27427

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

May 17, 2024
CVE-2024-27426

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

May 17, 2024
CVE-2024-27425

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

May 17, 2024
CVE-2024-27424

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

May 17, 2024
CVE-2024-27423

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

May 17, 2024
CVE-2024-27422

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

May 17, 2024
CVE-2024-27421

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

May 17, 2024
CVE-2024-27420

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

May 17, 2024
CVE-2024-27419
4.7 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: netrom: Fix data-races around sysctl_net_busy_read We need to protect the reader reading the sysctl value …

May 17, 2024
CVE-2024-27418
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: net: mctp: take ownership of skb in mctp_local_output Currently, mctp_local_output only takes ownership of skb …

May 17, 2024
CVE-2024-27417
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: ipv6: fix potential "struct net" leak in inet6_rtm_getaddr() It seems that if userspace provides a …

May 17, 2024
CVE-2024-27416
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_event: Fix handling of HCI_EV_IO_CAPA_REQUEST If we received HCI_EV_IO_CAPA_REQUEST while HCI_OP_READ_REMOTE_EXT_FEATURES is yet to …

May 17, 2024
CVE-2024-27415
4.7 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: netfilter: bridge: confirm multicast packets before passing them up the stack conntrack nf_confirm logic cannot …

May 17, 2024
CVE-2024-27414
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: rtnetlink: fix error logic of IFLA_BRIDGE_FLAGS writing back In the commit d73ef2d69c0d ("rtnetlink: let rtnl_bridge_setlink …

May 17, 2024
CVE-2024-27413
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: efi/capsule-loader: fix incorrect allocation size gcc-14 notices that the allocation with sizeof(void) on 32-bit architectures …

May 17, 2024
CVE-2024-27412
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: power: supply: bq27xxx-i2c: Do not free non existing IRQ The bq27xxx i2c-client may not have …

May 17, 2024
CVE-2024-27411
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: drm/nouveau: keep DMA buffers required for suspend/resume Nouveau deallocates a few buffers post GPU init …

May 17, 2024
CVE-2024-27410
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: wifi: nl80211: reject iftype change with mesh ID change It's currently possible to change the …

May 17, 2024
CVE-2024-27409
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma: HDMA: Add sync read before starting the DMA transfer in remote setup The …

May 17, 2024
CVE-2024-27408
4.7 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: dmaengine: dw-edma: eDMA: Add sync read before starting the DMA transfer in remote setup The …

May 17, 2024
CVE-2024-27407
8.4 HIGH

In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fixed overflow check in mi_enum_attr()

May 17, 2024
CVE-2024-27406
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: lib/Kconfig.debug: TEST_IOV_ITER depends on MMU Trying to run the iov_iter unit test on a nommu …

May 17, 2024
CVE-2024-27405
7.5 HIGH

In the Linux kernel, the following vulnerability has been resolved: usb: gadget: ncm: Avoid dropping datagrams of properly parsed NTBs It is observed sometimes when …

May 17, 2024
CVE-2024-27404
4.7 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: mptcp: fix data races on remote_id Similar to the previous patch, address the data race …

May 17, 2024
CVE-2024-27403
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: netfilter: nft_flow_offload: reset dst in route object after setting up flow dst is transferred to …

May 17, 2024
CVE-2024-27402
5.8 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: phonet/pep: fix racy skb_queue_empty() use The receive queues are protected by their respective spin-lock, not …

May 17, 2024
CVE-2023-52658
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: Revert "net/mlx5: Block entering switchdev mode with ns inconsistency" This reverts commit 662404b24a4c4d839839ed25e3097571f5938b9b. The revert …

May 17, 2024
CVE-2023-52657
5.5 MEDIUM

In the Linux kernel, the following vulnerability has been resolved: Revert "drm/amd/pm: resolve reboot exception for si oland" This reverts commit e490d60a2f76bff636c68ce4fe34c1b6c34bbd86. This causes hangs …

May 17, 2024
CVE-2024-35174
5.3 MEDIUM

Missing Authorization vulnerability in Flothemes Flo Forms.This issue affects Flo Forms: from n/a through 1.0.42.

May 17, 2024
CVE-2024-35173

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

May 17, 2024
CVE-2024-5052
7.5 HIGH

Denial of Service (DoS) vulnerability for Cerberus Enterprise 8.0.10.3 web administration. The vulnerability exists when the web server, default port 10001, attempts to process a …

May 17, 2024
CVE-2024-34809
4.3 MEDIUM

Cross-Site Request Forgery (CSRF) vulnerability in Extend Themes EmpowerWP.This issue affects EmpowerWP: from n/a through 1.0.21.

May 17, 2024
CVE-2024-34807
4.3 MEDIUM

Cross-Site Request Forgery (CSRF) vulnerability in CodeBard Fast Custom Social Share by CodeBard fast-custom-social-share-by-codebard.This issue affects Fast Custom Social Share by CodeBard: from n/a through …

May 17, 2024
CVE-2024-34806
4.3 MEDIUM

Cross-Site Request Forgery (CSRF) vulnerability in Creative Motion Clearfy Cache.This issue affects Clearfy Cache: from n/a through 2.2.1.

May 17, 2024
CVE-2024-34756
4.3 MEDIUM

Cross-Site Request Forgery (CSRF) vulnerability in CRM Perks Integration for Contact Form 7 HubSpot.This issue affects Integration for Contact Form 7 HubSpot: from n/a through …

May 17, 2024
CVE-2024-34755
4.3 MEDIUM

Cross-Site Request Forgery (CSRF) vulnerability in CRM Perks Integration for Contact Form 7 and Salesforce.This issue affects Integration for Contact Form 7 and Salesforce: from …

May 17, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.