2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-2947HIGH7.3A flaw was found in Cockpit. Deleting a sosreport with a crafted name via the Cockpit web interface can lead to a comman...
CVE-2024-28713CRITICAL9.8An issue in Mblog Blog system v.3.5.0 allows an attacker to execute arbitrary code via a crafted file to the theme manag...
CVE-2024-27719MEDIUM6.1A cross site scripting (XSS) vulnerability in rems FAQ Management System v.1.0 allows a remote attacker to obtain sensit...
CVE-2024-25971MEDIUM6.5Dell PowerProtect Data Manager, version 19.15, contains an XML External Entity Injection vulnerability. A remote high pr...
CVE-2024-25963HIGH7.5Dell PowerScale OneFS, versions 8.2.2.x through 9.5.0.x contains a use of a broken cryptographic algorithm vulnerability...
CVE-2024-25960HIGH7.8Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains a cleartext transmission of sensitive information vulner...
CVE-2024-25955HIGH8.8Dell vApp Manager, versions prior to 9.2.4.9 contain a Command Injection Vulnerability. An authorized attacker could pot...
CVE-2024-25954HIGH7.5Dell PowerScale OneFS, versions 9.5.0.x through 9.7.0.x, contain an insufficient session expiration vulnerability. A rem...
CVE-2024-25953MEDIUM6Dell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability....
CVE-2024-25952MEDIUM6Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an UNIX symbolic link (symlink) following vulnerability....
CVE-2024-25946HIGH8.8Dell vApp Manager, versions prior to 9.2.4.9 contain a Command Injection Vulnerability. An authorized attacker could pot...
CVE-2024-25961MEDIUM6.7Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.x contains an improper privilege management vulnerability. A local ...
CVE-2024-25959MEDIUM5.5Dell PowerScale OneFS versions 9.4.0.x through 9.7.0.x contains an insertion of sensitive information into log file vuln...
CVE-2024-3042CRITICAL9.1A vulnerability was found in SourceCodester Simple Subscription Website 1.0 and classified as critical. This issue affec...
CVE-2024-3041CRITICAL9.8A vulnerability has been found in Netentsec NS-ASG Application Security Gateway 6.3 and classified as critical. This vul...
CVE-2024-3040CRITICAL9.8A vulnerability, which was classified as critical, was found in Netentsec NS-ASG Application Security Gateway 6.3. This ...
CVE-2024-3039CRITICAL9.8A vulnerability classified as critical has been found in Shanghai Brad Technology BladeX 3.4.0. Affected is an unknown f...
CVE-2024-31140MEDIUM4.9In JetBrains TeamCity before 2024.03 server administrators could remove arbitrary files from the server by installing to...
CVE-2024-31139HIGH8.1In JetBrains TeamCity before 2024.03 xXE was possible in the Maven build steps detector
CVE-2024-31138MEDIUM5.4In JetBrains TeamCity before 2024.03 xSS was possible via Agent Distribution settings
CVE-2024-31137MEDIUM6.1In JetBrains TeamCity before 2024.03 reflected XSS was possible via Space connection configuration
CVE-2024-31136HIGH7.4In JetBrains TeamCity before 2024.03 2FA could be bypassed by providing a special URL parameter
CVE-2024-31135MEDIUM6.1In JetBrains TeamCity before 2024.03 open redirect was possible on the login page
CVE-2024-31134MEDIUM6.5In JetBrains TeamCity before 2024.03 authenticated users without administrative permissions could register other users w...
CVE-2024-30612HIGH8.1Tenda AC10U v15.03.06.48 has a stack overflow vulnerability in the deviceId, limitSpeed, limitSpeedUp parameter from for...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now