2024 CVE Vulnerabilities
39,217 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-49350 | HIGH | 7.5 | 0.3% | May 29, 2025 | IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9 and 12.... |
| CVE-2024-51392 | HIGH | 8.8 | 0.4% | May 29, 2025 | An issue in OpenKnowledgeMaps Headstart v7 allows a remote attacker to escalate privileges via the url parameter of the ... |
| CVE-2024-22654 | HIGH | 7.5 | 0.4% | May 29, 2025 | tcpreplay v4.4.4 was discovered to contain an infinite loop via the tcprewrite function at get.c. |
| CVE-2024-52588 | HIGH | 7.5 | 0.5% | May 29, 2025 | Strapi is an open-source content management system. Prior to version 4.25.2, inputting a local domain into the Webhooks ... |
| CVE-2024-51453 | HIGH | 7.5 | 0.4% | May 28, 2025 | IBM Sterling Secure Proxy 6.2.0.0 through 6.2.0.1 could allow a remote attacker to traverse directories on the system. A... |
| CVE-2024-38341 | HIGH | 7.5 | 0.2% | May 28, 2025 | IBM Sterling Secure Proxy 6.0.0.0 through 6.0.3.1, 6.1.0.0 through 6.1.0.0, and 6.2.0.0 through 6.2.0.1 uses weaker than... |
| CVE-2024-13966 | HIGH | 7.3 | 0.3% | May 27, 2025 | ZKTeco BioTime allows unauthenticated attackers to enumerate usernames and log in as any user with a password unchanged ... |
| CVE-2024-49196 | HIGH | 7.5 | 0.4% | May 27, 2025 | An issue was discovered in the GPU in Samsung Mobile Processor Exynos 1480 and 2400. Type confusion leads to a Denial of... |
| CVE-2024-38866 | HIGH | 7.5 | 0.3% | May 27, 2025 | Improper neutralization of input in Nagvis before version 1.9.47 which can lead to livestatus injection |
| CVE-2024-9163 | HIGH | 7.5 | 0.4% | May 23, 2025 | A business logic error in GitLab CE/EE affecting all versions starting from 12.1 prior to 17.10.7, 17.11 prior to 17.11.... |
| CVE-2024-7803 | HIGH | 7.5 | 0.5% | May 23, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions from 11.6 before 17.10.7, 17.11 before 17.11.3, and ... |
| CVE-2024-13945 | HIGH | 8.4 | 0.4% | May 23, 2025 | Stored Absolute Path Traversal vulnerabilities in ASPECT could expose sensitive data if administrator credentials becom... |
| CVE-2024-51553 | HIGH | 7 | 0.3% | May 22, 2025 | Predictable filename vulnerabilities in ASPECT may expose sensitive information to a potential attacker if administrator... |
| CVE-2024-51552 | HIGH | 7.1 | 0.3% | May 22, 2025 | Weak password storage vulnerabilities exist in ASPECT if administrator credentials become compromisedThis issue affects ... |
| CVE-2024-48848 | HIGH | 7 | 0.3% | May 22, 2025 | Large content vulnerabilities are present in ASPECT exposing a device to disk overutilization on a system if administrat... |
| CVE-2024-41199 | HIGH | 7.2 | 0.5% | May 22, 2025 | An issue in Ocuco Innovation - JOBMANAGER.EXE v2.10.24.16 allows attackers to bypass authentication and escalate privile... |
| CVE-2024-40462 | HIGH | 7.8 | 0.2% | May 22, 2025 | An issue in Ocuco Innovation v.2.10.24.51 allows a local attacker to escalate privileges via the SETTINGSVATIGATOR.EXE c... |
| CVE-2024-40461 | HIGH | 7.8 | 0.2% | May 22, 2025 | An issue in Ocuco Innovation v.2.10.24.51 allows a local attacker to escalate privileges via the STOCKORDERENTRY.EXE com... |
| CVE-2024-40460 | HIGH | 7.8 | 0.2% | May 22, 2025 | An issue in Ocuco Innovation v.2.10.24.51 allows a local attacker to escalate privileges via the JOBENTRY.EXE |
| CVE-2024-40459 | HIGH | 7.8 | 0.2% | May 22, 2025 | An issue in Ocuco Innovation APPMANAGER.EXE v.2.10.24.51 allows a local attacker to escalate privileges via the applicat... |
| CVE-2024-40458 | HIGH | 7.8 | 0.2% | May 22, 2025 | An issue in Ocuco Innovation Tracking.exe v.2.10.24.51 allows a local attacker to escalate privileges via the modificati... |
| CVE-2024-13957 | HIGH | 7.6 | 0.2% | May 22, 2025 | SSRF Server Side Request Forgery vulnerabilities exist in ASPECT if administrator credentials become compromisedThis iss... |
| CVE-2024-13956 | HIGH | 8.8 | 0.4% | May 22, 2025 | SSL Verification Bypass vulnerabilities exist in ASPECT if administrator credentials become compromisedThis issue affect... |
| CVE-2024-13952 | HIGH | 8.7 | 0.4% | May 22, 2025 | Predictable filename vulnerabilities in ASPECT may expose sensitive information to a potential attacker if administrator... |
| CVE-2024-13951 | HIGH | 7.6 | 0.2% | May 22, 2025 | One way hash with predictable salt vulnerabilities in ASPECT may expose sensitive information to a potential attackerThi... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now