2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-47498 | HIGH | 7.1 | 0.3% | Oct 11, 2024 | An Unimplemented or Unsupported Feature in UI vulnerability in the CLI of Juniper Networks Junos OS Evolved on QFX5000 S... |
| CVE-2024-47497 | HIGH | 8.7 | 0.6% | Oct 11, 2024 | An Uncontrolled Resource Consumption vulnerability in the http daemon (httpd) of Juniper Networks Junos OS on SRX Series... |
| CVE-2024-47495 | HIGH | 8.4 | 0.2% | Oct 11, 2024 | An Authorization Bypass Through User-Controlled Key vulnerability allows a locally authenticated attacker with shell acc... |
| CVE-2024-47494 | HIGH | 8.2 | 0.4% | Oct 11, 2024 | A Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability in the AgentD process of Juniper Networks Junos OS all... |
| CVE-2024-47493 | HIGH | 7.1 | 0.4% | Oct 11, 2024 | A Missing Release of Memory after Effective Lifetime vulnerability in the Packet Forwarding Engine (PFE) of the Juniper ... |
| CVE-2024-47491 | HIGH | 8.2 | 0.6% | Oct 11, 2024 | An Improper Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Ju... |
| CVE-2024-47490 | HIGH | 8.2 | 0.6% | Oct 11, 2024 | An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in the Packet Forwarding Engine (PF... |
| CVE-2024-44729 | HIGH | 7.5 | 0.6% | Oct 11, 2024 | Incorrect access control in the component app/src/server.js of Mirotalk before commit 9de226 allows unauthenticated atta... |
| CVE-2024-39563 | HIGH | 7.3 | 1.3% | Oct 11, 2024 | A Command Injection vulnerability in Juniper Networks Junos Space allows an unauthenticated, network-based attacker send... |
| CVE-2024-39547 | HIGH | 8.7 | 0.9% | Oct 11, 2024 | An Improper Handling of Exceptional Conditions vulnerability in the rpd-server of Juniper Networks Junos OS and Junos OS... |
| CVE-2024-39526 | HIGH | 7.1 | 0.4% | Oct 11, 2024 | An Improper Handling of Exceptional Conditions vulnerability in packet processing of Juniper Networks Junos OS on MX Ser... |
| CVE-2024-33582 | HIGH | 7.8 | 0.2% | Oct 11, 2024 | A DLL hijack vulnerability was reported in Lenovo Service Framework that could allow a local attacker to execute code wi... |
| CVE-2024-33581 | HIGH | 7.8 | 0.2% | Oct 11, 2024 | A DLL hijack vulnerability was reported in Lenovo PC Manager AI intelligent scenario that could allow a local attacker t... |
| CVE-2024-33580 | HIGH | 7.8 | 0.2% | Oct 11, 2024 | A DLL hijack vulnerability was reported in Lenovo Personal Cloud that could allow a local attacker to execute code with ... |
| CVE-2024-33579 | HIGH | 7.8 | 0.2% | Oct 11, 2024 | A DLL hijack vulnerability was reported in Lenovo Baiying that could allow a local attacker to execute code with elevate... |
| CVE-2024-33578 | HIGH | 7.8 | 0.2% | Oct 11, 2024 | A DLL hijack vulnerability was reported in Lenovo Leyun that could allow a local attacker to execute code with elevated ... |
| CVE-2024-45403 | HIGH | 7.5 | 0.6% | Oct 11, 2024 | h2o is an HTTP server with support for HTTP/1.x, HTTP/2 and HTTP/3. When h2o is configured as a reverse proxy and HTTP/3... |
| CVE-2024-45397 | HIGH | 7.5 | 0.4% | Oct 11, 2024 | h2o is an HTTP server with support for HTTP/1.x, HTTP/2 and HTTP/3. When an HTTP request using TLS/1.3 early data on top... |
| CVE-2024-45396 | HIGH | 7.5 | 0.6% | Oct 11, 2024 | Quicly is an IETF QUIC protocol implementation. Quicly up to commtit d720707 is susceptible to a denial-of-service attac... |
| CVE-2024-9002 | HIGH | 7.8 | 0.2% | Oct 11, 2024 | CWE-269: Improper Privilege Management vulnerability exists that could cause unauthorized access, loss of confidentialit... |
| CVE-2024-8531 | HIGH | 7.2 | 0.4% | Oct 11, 2024 | CWE-347: Improper Verification of Cryptographic Signature vulnerability exists that could compromise the Data Center Exp... |
| CVE-2024-9855 | HIGH | 7.2 | 0.6% | Oct 11, 2024 | A vulnerability was found in 07FLYCMS, 07FLY-CMS and 07FlyCRM 1.3.8. It has been declared as critical. Affected by this ... |
| CVE-2024-9164 | HIGH | 8.8 | 0.9% | Oct 11, 2024 | An issue was discovered in GitLab EE affecting all versions starting from 12.5 prior to 17.2.9, starting from 17.3, prio... |
| CVE-2024-8970 | HIGH | 8.8 | 0.6% | Oct 11, 2024 | An issue was discovered in GitLab CE/EE affecting all versions starting from 11.6 prior to 17.2.9, starting from 17.3 pr... |
| CVE-2024-45317 | HIGH | 7.5 | 0.6% | Oct 11, 2024 | A Server-Side Request Forgery (SSRF) vulnerability in SMA1000 appliance firmware versions 12.4.3-02676 and earlier allow... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now