2024 CVE Vulnerabilities

39,242 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-29830HIGH8An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allows an authenticated attac...
CVE-2024-29829HIGH8An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allows an authenticated attac...
CVE-2024-29828HIGH8An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allows an authenticated attac...
CVE-2024-29827HIGH8.8An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allows an unauthenticated att...
CVE-2024-29826HIGH8.8An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allows an unauthenticated att...
CVE-2024-29825HIGH8.8An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allows an unauthenticated att...
CVE-2024-29824HIGH8.8An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allows an unauthenticated att...
CVE-2024-29823HIGH8.8An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allows an unauthenticated att...
CVE-2024-29822HIGH8.8An unspecified SQL Injection vulnerability in Core server of Ivanti EPM 2022 SU5 and prior allows an unauthenticated att...
CVE-2024-22060MEDIUM4.9An unrestricted file upload vulnerability in web component of Ivanti Neurons for ITSM allows a remote, authenticated, hi...
CVE-2024-22059HIGH8.8A SQL injection vulnerability in web component of Ivanti Neurons for ITSM allows a remote authenticated user to read/mod...
CVE-2024-22058HIGH7.8A buffer overflow allows a low privilege user on the local machine that has the EPM Agent installed to execute arbitrary...
CVE-2024-1275CRITICAL9.1Use of Default Cryptographic Key vulnerability in Baxter Welch Allyn Connex Spot Monitor may allow Configuration/Environ...
CVE-2024-36120HIGH7.8javascript-deobfuscator removes common JavaScript obfuscation techniques. In affected versions crafted payloads targetin...
CVE-2024-35142HIGH7.8IBM Security Verify Access Docker 10.0.0 through 10.0.6 could allow a local user to escalate their privileges due to exe...
CVE-2024-35140HIGH7.8IBM Security Verify Access Docker 10.0.0 through 10.0.6 could allow a local user to escalate their privileges due to imp...
CVE-2024-28736HIGH7.1An issue in Debezium Community debezium-ui v.2.5 allows a local attacker to execute arbitrary code via the refresh page ...
CVE-2024-5565HIGH8.1The Vanna library uses a prompt function to present the user with visualized results, it is possible to alter the prompt...
CVE-2024-36108CRITICAL9.8casgate is an Open Source Identity and Access Management system. In affected versions `casgate` allows remote unauthenti...
CVE-2024-1980Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-6876. Reason: This candidate is a r...
CVE-2024-31908MEDIUM5.4IBM Planning Analytics Local 2.0 and 2.1 is vulnerable to stored cross-site scripting. This vulnerability allows users t...
CVE-2024-31907MEDIUM5.4IBM Planning Analytics Local 2.0 and 2.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed...
CVE-2024-31889MEDIUM5.4IBM Planning Analytics Local 2.0 and 2.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed...
CVE-2024-5538Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-5484Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now