2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-51948MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51947MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51946MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51945MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51944MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51942MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-10904MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-30154MEDIUM5.7HCL SX is vulnerable to cross-site request forgery vulnerability which could allow an attacker to execute malicious and ...
CVE-2024-53384MEDIUM5.1A DOM Clobbering vulnerability in tsup v8.3.4 allows attackers to execute arbitrary code via a crafted script in the imp...
CVE-2024-51091MEDIUM5.4Cross Site Scripting vulnerability in seajs v.2.2.3 allows a remote attacker to execute arbitrary code via the seajs pac...
CVE-2024-57240MEDIUM5.4A Cross-Site Scripting (XSS) vulnerability in the Rendering Engine component in Apryse WebViewer v11.1 and earlier allow...
CVE-2024-53388HIGH8.8A DOM Clobbering vulnerability in mavo v0.3.2 allows attackers to execute arbitrary code via supplying a crafted HTML el...
CVE-2024-53387HIGH8.8A DOM Clobbering vulnerability in umeditor v1.2.3 allows attackers to execute arbitrary code via supplying a crafted HTM...
CVE-2024-45782HIGH7.8A flaw was found in the HFS filesystem. When reading an HFS volume's name at grub_fs_mount(), the HFS filesystem driver ...
CVE-2024-45778MEDIUM5.5A stack overflow flaw was found when reading a BFS file system. A crafted BFS filesystem may lead to an uncontrolled loo...
CVE-2024-55570MEDIUM5.4/api/user/users in the web GUI for the Cubro EXA48200 network packet broker (build 20231025055018) fixed in V5.0R14.5P4-...
CVE-2024-55532CRITICAL9.8Improper Neutralization of Formula Elements in Export CSV feature of Apache Ranger in Apache Ranger Version < 2.6.0. Use...
CVE-2024-43169MEDIUM6.5IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a user to download a malicious file...
CVE-2024-41771HIGH7.5IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a remote attacker to download tempo...
CVE-2024-41770HIGH7.5IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a remote attacker to download tempo...
CVE-2024-8262CRITICAL9.8Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Proliz Software OBS allo...
CVE-2024-8261HIGH7.5Authorization Bypass Through User-Controlled Key vulnerability in Proliz Software OBS allows Exploiting Incorrectly Conf...
CVE-2024-45780MEDIUM6.7A flaw was found in grub2. When reading tar files, grub2 allocates an internal buffer for the file name. However, it fai...
CVE-2024-45779MEDIUM6An integer overflow flaw was found in the BFS file system driver in grub2. When reading a file with an indirect extent m...
CVE-2024-54179MEDIUM5.4IBM Business Automation Workflow and IBM Business Automation Workflow Enterprise Service Bus 24.0.0, 24.0.1 and earlier ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now