2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-53964MEDIUM5.4Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-53963MEDIUM5.4Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerabilit...
CVE-2024-53962MEDIUM5.4Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t...
CVE-2024-48445CRITICAL9.8An issue in compop.ca ONLINE MALL v.3.5.3 allows a remote attacker to execute arbitrary code via the rid, tid, et, and t...
CVE-2024-11468HIGH7.8Omnissa Horizon Client for macOS contains a Local privilege escalation (LPE) Vulnerability due to a flaw in the installa...
CVE-2024-11467HIGH7.8Omnissa Horizon Client for macOS contains a Local privilege escalation (LPE) Vulnerability due to a logic flaw. Successf...
CVE-2024-8125MEDIUM5.4Improper Validation of Specified Type of Input vulnerability in OpenText™ Content Management (Extended ECM) allows Param...
CVE-2024-53994MEDIUM4.3Discourse is an open source platform for community discussion. In affected versions users who disable chat in preference...
CVE-2024-53851MEDIUM6.5Discourse is an open source platform for community discussion. In affected versions the endpoint for generating inline o...
CVE-2024-53266MEDIUM5.4Discourse is an open source platform for community discussion. In affected versions with some combinations of plugins, a...
CVE-2024-13723HIGH7.2The "NagVis" component within Checkmk is vulnerable to remote code execution. An authenticated attacker with administrat...
CVE-2024-13722MEDIUM5.4The "NagVis" component within Checkmk is vulnerable to reflected cross-site scripting. An attacker can craft a malicious...
CVE-2024-56328MEDIUM6.1Discourse is an open source platform for community discussion. An attacker can execute arbitrary JavaScript on users' br...
CVE-2024-56197MEDIUM4.9Discourse is an open source platform for community discussion. PM titles and metadata can be read by other users when th...
CVE-2024-55948HIGH8.2Discourse is an open source platform for community discussion. In affected versions an attacker can make craft an XHR re...
CVE-2024-45658MEDIUM5.3IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 could allow a remote attacker to obtain sensiti...
CVE-2024-45657MEDIUM6.7IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 could allow a local privileged user to perform ...
CVE-2024-43187HIGH7.5IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 transmits sensitive or security-critical data i...
CVE-2024-40700MEDIUM6.1IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 is vulnerable to cross-site scripting. This vul...
CVE-2024-35138MEDIUM6.5IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 is vulnerable to cross-site request forgery whi...
CVE-2024-48019MEDIUM5.4Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Files or Directories Accessible to Exter...
CVE-2024-45659MEDIUM5.3IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 could allow a remote attacker to obtain sensiti...
CVE-2024-9644CRITICAL9.8The Four-Faith F3x36 router using firmware v2.0.0 is vulnerable to an authentication bypass vulnerability in the admini...
CVE-2024-9643CRITICAL9.8The Four-Faith F3x36 router using firmware v2.0.0 is vulnerable to authentication bypass due to hard-coded credentials i...
CVE-2024-23690HIGH7.2The end-of-life Netgear FVS336Gv2 and FVS336Gv3 are affected by a command injection vulnerability in the Telnet interfac...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now