2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-26031MEDIUM5.4Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-26030MEDIUM5.4Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-26028MEDIUM5.4Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-21652CRITICAL9.8Argo CD is a declarative, GitOps continuous delivery tool for Kubernetes. Prior to versions 2.8.13, 2.9.9, and 2.10.4, a...
CVE-2024-20768MEDIUM5.4Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-20764MEDIUM5.5Animate versions 24.0, 23.0.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclos...
CVE-2024-20763MEDIUM5.5Animate versions 24.0, 23.0.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclos...
CVE-2024-20762MEDIUM5.5Animate versions 24.0, 23.0.3 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclos...
CVE-2024-20761HIGH7.8Animate versions 24.0, 23.0.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbi...
CVE-2024-20760MEDIUM5.4Adobe Experience Manager versions 6.5.19 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-20754HIGH7.8Lightroom Desktop versions 7.1.2 and earlier are affected by an Untrusted Search Path vulnerability that could result in...
CVE-2024-28054HIGH7.4Amavis before 2.12.3 and 2.13.x before 2.13.1, in part because of its use of MIME-tools, has an Interpretation Conflict ...
CVE-2024-27914MEDIUM6.1GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an...
CVE-2024-27104MEDIUM4.8GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an...
CVE-2024-27098CRITICAL9.6GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an...
CVE-2024-27096MEDIUM6.5GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an...
CVE-2024-2390HIGH7.8 As a part of Tenable’s vulnerability disclosure program, a vulnerability in a Nessus plugin was identified and reported...
CVE-2024-2229HIGH7.8 CWE-502: Deserialization of Untrusted Data vulnerability exists that could cause remote code execution when a malicious...
CVE-2024-2052HIGH7.5 CWE-552: Files or Directories Accessible to External Parties vulnerability exists that could allow unauthenticated file...
CVE-2024-2051CRITICAL9.8 CWE-307: Improper Restriction of Excessive Authentication Attempts vulnerability exists that could cause account takeov...
CVE-2024-2050HIGH8.2 CWE-79: Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’) vulnerability exists when ...
CVE-2024-27937MEDIUM4.3GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an...
CVE-2024-27930MEDIUM6.5GLPI is a Free Asset and IT Management Software package, Data center management, ITIL Service Desk, licenses tracking an...
CVE-2024-20757MEDIUM5.5Bridge versions 13.0.5, 14.0.1 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclo...
CVE-2024-20756HIGH7.8Bridge versions 13.0.5, 14.0.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arb...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now