2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-54853MEDIUM5.4A Stored Cross-Site Scripting (XSS) vulnerability was identified affecting Skybox Change Manager versions 13.2.170 and e...
CVE-2024-48394HIGH7.8A Time-of-Check to Time-of-Use (TOCTOU) vulnerability has been identified in the driver of the NDD Print solution, which...
CVE-2024-7596MEDIUM6.5Proposed Generic UDP Encapsulation (GUE) (IETF Draft) do not validate or verify the source of a network packet allowing ...
CVE-2024-7595MEDIUM6.5GRE and GRE6 Protocols (RFC2784) do not validate or verify the source of a network packet allowing an attacker to spoof ...
CVE-2024-56135MEDIUM6.8Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. Thi...
CVE-2024-56134MEDIUM6.8Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. Thi...
CVE-2024-56133MEDIUM6.8Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. Thi...
CVE-2024-56132MEDIUM6.8Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. Thi...
CVE-2024-56131MEDIUM6.8Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. Thi...
CVE-2024-42207MEDIUM6HCL iAutomate is affected by a session fixation vulnerability.  An attacker could hijack a victim's session ID from thei...
CVE-2024-39564HIGH8.7This is a similar, but different vulnerability than the issue reported as CVE-2024-39549. A double-free vulnerability i...
CVE-2024-9097MEDIUM4.3ManageEngine Endpoint Central versions before 11.3.2440.09 are vulnerable to IDOR vulnerability which allows the attacke...
CVE-2024-2878HIGH7.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.7 prior to 16.9.7, starting from 16...
CVE-2024-52365MEDIUM5.4IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21...
CVE-2024-52364MEDIUM5.4IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21...
CVE-2024-49348MEDIUM6.5IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21...
CVE-2024-3976MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 14.0 prior to 16.9.7, starting from 16...
CVE-2024-9631HIGH7.5An issue was discovered in GitLab CE/EE affecting all versions starting from 13.6 prior to 17.2.9, starting from 17.3 pr...
CVE-2024-5528MEDIUM5.4An issue was discovered in GitLab CE/EE affecting all versions prior to 16.11.6, starting from 17.0 prior to 17.0.4, and...
CVE-2024-49352HIGH7.1IBM Cognos Analytics 11.2.0, 11.2.1, 11.2.2, 11.2.3, 11.2.4, 12.0.0, 12.0.1, 12.0.2, 12.0.3, and 12.0.4 is vulnerable to...
CVE-2024-6356MEDIUM4.4An issue was discovered in GitLab EE affecting all versions starting from 16.0 prior to 17.0.6, starting from 17.1 prior...
CVE-2024-1539MEDIUM5.3An issue has been discovered in GitLab EE affecting all versions starting from 15.2 prior to 16.9.7, starting from 16.10...
CVE-2024-13829MEDIUM5.3The WordPress form builder plugin for contact forms, surveys and quizzes – Tripetto plugin for WordPress is vulnerable t...
CVE-2024-53966MEDIUM5.4Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-53965MEDIUM5.4Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerabilit...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now