2024 CVE Vulnerabilities

39,241 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-28969MEDIUM4.3Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an inter...
CVE-2024-28968MEDIUM5.4Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for internal...
CVE-2024-28967MEDIUM5.4Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an inter...
CVE-2024-28966MEDIUM5.4Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an inter...
CVE-2024-28965MEDIUM5.4Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an inter...
CVE-2024-37849CRITICAL9.8A SQL Injection vulnerability in itsourcecode Billing System 1.0 allows a local attacker to execute arbitrary code in pr...
CVE-2024-37309MEDIUM5.3CrateDB is a distributed SQL database. A high-risk vulnerability has been identified in versions prior to 5.7.2 where th...
CVE-2024-37308MEDIUM5.4The Cooked Pro recipe plugin for WordPress is vulnerable to Persistent Cross-Site Scripting (XSS) via the `_recipe_setti...
CVE-2024-36647MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in Church CRM v5.8.0 allows attackers to execute arbitrary web scripts...
CVE-2024-25052MEDIUM4.4IBM Jazz Reporting Service 7.0.3 stores user credentials in plain clear text which can be read by an admin user. IBM X-F...
CVE-2024-22333LOW3.3IBM Maximo Asset Management 7.6.1.3 and IBM Maximo Application Suite 8.10 and 8.11 allows web pages to be stored locally...
CVE-2024-36396HIGH8.8Verint - CWE-434: Unrestricted Upload of File with Dangerous Type
CVE-2024-36395MEDIUM6.1Verint - CWE-80: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)
CVE-2024-32860HIGH8.2Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A hi...
CVE-2024-32859HIGH8.2Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A hi...
CVE-2024-32858HIGH8.2Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A hi...
CVE-2024-34130MEDIUM5.5Acrobat Mobile Sign Android versions 24.4.2.33155 and earlier are affected by an Incorrect Authorization vulnerability t...
CVE-2024-34129HIGH7.5Acrobat Mobile Sign Android versions 24.4.2.33155 and earlier are affected by an Improper Limitation of a Pathname to a ...
CVE-2024-34116HIGH7.1Creative Cloud Desktop versions 6.1.0.587 and earlier are affected by an Uncontrolled Search Path Element vulnerability ...
CVE-2024-34115HIGH7.8Substance3D - Stager versions 2.1.4 and earlier are affected by an out-of-bounds write vulnerability that could result i...
CVE-2024-34113MEDIUM5.5ColdFusion versions 2023u7, 2021u13 and earlier are affected by a Weak Cryptography for Passwords vulnerability that cou...
CVE-2024-34112HIGH7.5ColdFusion versions 2023u7, 2021u13 and earlier are affected by an Improper Access Control vulnerability that could resu...
CVE-2024-32856MEDIUM6Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A hi...
CVE-2024-30472MEDIUM5.5Telemetry Dashboard v1.0.0.8 for Dell ThinOS 2402 contains a sensitive information disclosure vulnerability. An unauthen...
CVE-2024-30300CRITICAL9.8Adobe Framemaker Publishing Server versions 2020.3, 2022.2 and earlier are affected by an Information Exposure vulnerabi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now