2024 CVE Vulnerabilities
39,241 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-28969 | MEDIUM | 4.3 | 0.4% | Jun 13, 2024 | Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an inter... |
| CVE-2024-28968 | MEDIUM | 5.4 | 0.3% | Jun 13, 2024 | Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for internal... |
| CVE-2024-28967 | MEDIUM | 5.4 | 0.3% | Jun 13, 2024 | Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an inter... |
| CVE-2024-28966 | MEDIUM | 5.4 | 0.3% | Jun 13, 2024 | Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an inter... |
| CVE-2024-28965 | MEDIUM | 5.4 | 0.3% | Jun 13, 2024 | Dell SCG, versions prior to 5.24.00.00, contain an Improper Access Control vulnerability in the SCG exposed for an inter... |
| CVE-2024-37849 | CRITICAL | 9.8 | 0.7% | Jun 13, 2024 | A SQL Injection vulnerability in itsourcecode Billing System 1.0 allows a local attacker to execute arbitrary code in pr... |
| CVE-2024-37309 | MEDIUM | 5.3 | 0.7% | Jun 13, 2024 | CrateDB is a distributed SQL database. A high-risk vulnerability has been identified in versions prior to 5.7.2 where th... |
| CVE-2024-37308 | MEDIUM | 5.4 | 0.4% | Jun 13, 2024 | The Cooked Pro recipe plugin for WordPress is vulnerable to Persistent Cross-Site Scripting (XSS) via the `_recipe_setti... |
| CVE-2024-36647 | MEDIUM | 5.4 | 0.3% | Jun 13, 2024 | A stored cross-site scripting (XSS) vulnerability in Church CRM v5.8.0 allows attackers to execute arbitrary web scripts... |
| CVE-2024-25052 | MEDIUM | 4.4 | 0.2% | Jun 13, 2024 | IBM Jazz Reporting Service 7.0.3 stores user credentials in plain clear text which can be read by an admin user. IBM X-F... |
| CVE-2024-22333 | LOW | 3.3 | 0.2% | Jun 13, 2024 | IBM Maximo Asset Management 7.6.1.3 and IBM Maximo Application Suite 8.10 and 8.11 allows web pages to be stored locally... |
| CVE-2024-36396 | HIGH | 8.8 | 0.4% | Jun 13, 2024 | Verint - CWE-434: Unrestricted Upload of File with Dangerous Type |
| CVE-2024-36395 | MEDIUM | 6.1 | 0.3% | Jun 13, 2024 | Verint - CWE-80: Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) |
| CVE-2024-32860 | HIGH | 8.2 | 0.2% | Jun 13, 2024 | Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A hi... |
| CVE-2024-32859 | HIGH | 8.2 | 0.2% | Jun 13, 2024 | Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A hi... |
| CVE-2024-32858 | HIGH | 8.2 | 0.2% | Jun 13, 2024 | Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A hi... |
| CVE-2024-34130 | MEDIUM | 5.5 | 0.3% | Jun 13, 2024 | Acrobat Mobile Sign Android versions 24.4.2.33155 and earlier are affected by an Incorrect Authorization vulnerability t... |
| CVE-2024-34129 | HIGH | 7.5 | 0.3% | Jun 13, 2024 | Acrobat Mobile Sign Android versions 24.4.2.33155 and earlier are affected by an Improper Limitation of a Pathname to a ... |
| CVE-2024-34116 | HIGH | 7.1 | 0.3% | Jun 13, 2024 | Creative Cloud Desktop versions 6.1.0.587 and earlier are affected by an Uncontrolled Search Path Element vulnerability ... |
| CVE-2024-34115 | HIGH | 7.8 | 0.4% | Jun 13, 2024 | Substance3D - Stager versions 2.1.4 and earlier are affected by an out-of-bounds write vulnerability that could result i... |
| CVE-2024-34113 | MEDIUM | 5.5 | 0.3% | Jun 13, 2024 | ColdFusion versions 2023u7, 2021u13 and earlier are affected by a Weak Cryptography for Passwords vulnerability that cou... |
| CVE-2024-34112 | HIGH | 7.5 | 23.7% | Jun 13, 2024 | ColdFusion versions 2023u7, 2021u13 and earlier are affected by an Improper Access Control vulnerability that could resu... |
| CVE-2024-32856 | MEDIUM | 6 | 0.1% | Jun 13, 2024 | Dell Client Platform BIOS contains an Improper Input Validation vulnerability in an externally developed component. A hi... |
| CVE-2024-30472 | MEDIUM | 5.5 | 1.2% | Jun 13, 2024 | Telemetry Dashboard v1.0.0.8 for Dell ThinOS 2402 contains a sensitive information disclosure vulnerability. An unauthen... |
| CVE-2024-30300 | CRITICAL | 9.8 | 0.7% | Jun 13, 2024 | Adobe Framemaker Publishing Server versions 2020.3, 2022.2 and earlier are affected by an Information Exposure vulnerabi... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now