2024 CVE Vulnerabilities

39,223 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-13170HIGH7.5An out-of-bounds write in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Upd...
CVE-2024-13169HIGH7.8An out-of-bounds read in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Upda...
CVE-2024-13168HIGH7.5An out-of-bounds write in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Upd...
CVE-2024-13167HIGH7.5An out-of-bounds write in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Upd...
CVE-2024-13166HIGH7.5An out-of-bounds write in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Upd...
CVE-2024-13165HIGH7.5An out-of-bounds write in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Upd...
CVE-2024-13164HIGH7.8An uninitialized resource in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security ...
CVE-2024-13163HIGH7.8Deserialization of untrusted data in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 S...
CVE-2024-13162HIGH7.2SQL injection in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allow...
CVE-2024-13161HIGH7.5Absolute path traversal in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Up...
CVE-2024-13160HIGH7.5Absolute path traversal in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Up...
CVE-2024-13159HIGH7.5Absolute path traversal in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Up...
CVE-2024-13158HIGH7.2An unbounded resource search path in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 S...
CVE-2024-12747MEDIUM5.6A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rs...
CVE-2024-12088HIGH7.5A flaw was found in rsync. When using the `--safe-links` option, the rsync client fails to properly verify if a symbolic...
CVE-2024-12087HIGH7.5A path traversal vulnerability exists in rsync. It stems from behavior enabled by the `--inc-recursive` option, a defaul...
CVE-2024-12086MEDIUM6.8A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's mach...
CVE-2024-12085HIGH7.5A flaw was found in rsync which could be triggered when rsync compares file checksums. This flaw allows an attacker to m...
CVE-2024-53563MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in Arcadyan Meteor 2 CPE FG360 Firmware ETV2.10 allows attackers to ex...
CVE-2024-53561HIGH8.7A remote code execution (RCE) vulnerability in Arcadyan Meteor 2 CPE FG360 Firmware ETV2.10 allows attackers to execute ...
CVE-2024-52898MEDIUM6.2IBM MQ 9.3 LTS, 9.3 CD, 9.4 LTS, and 9.4 CD web console could allow a local user to obtain sensitive information when a ...
CVE-2024-45627MEDIUM5.9In Apache Linkis <1.7.0, due to the lack of effective filtering of parameters, an attacker configuring malicious Mysql J...
CVE-2024-13181CRITICAL9.8Path Traversal in Ivanti Avalanche before version 6.4.7 allows a remote unauthenticated attacker to bypass authenticatio...
CVE-2024-13180HIGH7.5Path Traversal in Ivanti Avalanche before version 6.4.7 allows a remote unauthenticated attacker to leak sensitive infor...
CVE-2024-13179CRITICAL9.8Path Traversal in Ivanti Avalanche before version 6.4.7 allows a remote unauthenticated attacker to bypass authenticatio...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now