2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-22455 | MEDIUM | 4.6 | 0.3% | Feb 14, 2024 | Dell Mobility - E-Lab Navigator, version(s) 3.1.9, 3.2.0, contain(s) an Authorization Bypass Through User-Controlled Key... |
| CVE-2024-25125 | MEDIUM | 5.3 | 29.6% | Feb 14, 2024 | Digdag is an open source tool that to build, run, schedule, and monitor complex pipelines of tasks across various platfo... |
| CVE-2024-24699 | MEDIUM | 6.5 | 1.7% | Feb 14, 2024 | Business logic error in some Zoom clients may allow an authenticated user to conduct information disclosure via network ... |
| CVE-2024-24698 | MEDIUM | 4.4 | 0.5% | Feb 14, 2024 | Improper authentication in some Zoom clients may allow a privileged user to conduct a disclosure of information via loca... |
| CVE-2024-24697 | HIGH | 7.8 | 0.3% | Feb 14, 2024 | Untrusted search path in some Zoom 32 bit Windows clients may allow an authenticated user to conduct an escalation of pr... |
| CVE-2024-24696 | MEDIUM | 6.5 | 0.8% | Feb 14, 2024 | Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Wind... |
| CVE-2024-24695 | MEDIUM | 6.5 | 0.8% | Feb 14, 2024 | Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Wind... |
| CVE-2024-24691 | CRITICAL | 9.8 | 1.7% | Feb 14, 2024 | Improper input validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Wind... |
| CVE-2024-24690 | MEDIUM | 6.5 | 0.6% | Feb 14, 2024 | Improper input validation in some Zoom clients may allow an authenticated user to conduct a denial of service via networ... |
| CVE-2024-1485 | CRITICAL | 9.3 | 0.9% | Feb 14, 2024 | A flaw was found in the decompression function of registry-support. This issue can be triggered if an unauthenticated re... |
| CVE-2024-25121 | HIGH | 7.1 | 0.5% | Feb 13, 2024 | TYPO3 is an open source PHP based web content management system released under the GNU GPL. In affected versions of TYPO... |
| CVE-2024-25120 | MEDIUM | 4.3 | 0.5% | Feb 13, 2024 | TYPO3 is an open source PHP based web content management system released under the GNU GPL. The TYPO3-specific `t3://` U... |
| CVE-2024-25119 | MEDIUM | 4.9 | 0.4% | Feb 13, 2024 | TYPO3 is an open source PHP based web content management system released under the GNU GPL. The plaintext value of `$GLO... |
| CVE-2024-25118 | MEDIUM | 6.5 | 0.6% | Feb 13, 2024 | TYPO3 is an open source PHP based web content management system released under the GNU GPL. Password hashes were being r... |
| CVE-2024-24142 | CRITICAL | 9.8 | 1.1% | Feb 13, 2024 | Sourcecodester School Task Manager 1.0 allows SQL Injection via the 'subject' parameter. |
| CVE-2024-25122 | MEDIUM | 6.1 | 0.5% | Feb 13, 2024 | sidekiq-unique-jobs is an open source project which prevents simultaneous Sidekiq jobs with the same unique arguments to... |
| CVE-2024-24814 | HIGH | 7.5 | 1.3% | Feb 13, 2024 | mod_auth_openidc is an OpenID Certified™ authentication and authorization module for the Apache 2.x HTTP server that imp... |
| CVE-2024-24751 | HIGH | 8.8 | 0.5% | Feb 13, 2024 | sf_event_mgt is an event management and registration extension for the TYPO3 CMS based on ExtBase and Fluid. In affected... |
| CVE-2024-1378 | CRITICAL | 9.1 | 2.3% | Feb 13, 2024 | A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol... |
| CVE-2024-1374 | CRITICAL | 9.1 | 2.6% | Feb 13, 2024 | A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol... |
| CVE-2024-1372 | CRITICAL | 9.1 | 2.3% | Feb 13, 2024 | A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol... |
| CVE-2024-1369 | CRITICAL | 9.1 | 2.3% | Feb 13, 2024 | A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol... |
| CVE-2024-1359 | CRITICAL | 9.1 | 2.3% | Feb 13, 2024 | A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol... |
| CVE-2024-1355 | CRITICAL | 9.1 | 2.4% | Feb 13, 2024 | A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol... |
| CVE-2024-1354 | HIGH | 8 | 1.7% | Feb 13, 2024 | A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor rol... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now