2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-32010 | HIGH | 7.8 | 0.1% | Nov 11, 2025 | A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application i... |
| CVE-2024-32009 | HIGH | 7.8 | 0.1% | Nov 11, 2025 | A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application i... |
| CVE-2024-32008 | HIGH | 7.8 | 0.1% | Nov 11, 2025 | A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP12 Update 2). The affected application i... |
| CVE-2024-57695 | HIGH | 7.7 | 0.2% | Nov 11, 2025 | An issue in Agnitum Outpost Security Suite 7.5.3 (3942.608.1810) and 7.6 (3984.693.1842) allows a local attacker to exec... |
| CVE-2024-47118 | HIGH | 7.5 | 0.3% | Nov 7, 2025 | IBM Db2 10.5.0 through 10.5.11, 11.1.0 through 11.1.4.7, 11.5.0 through 11.5.9, and 12.1.0 through 12.1.3 for Linux, UNI... |
| CVE-2024-12125 | HIGH | 7.5 | 0.2% | Nov 6, 2025 | A flaw was found in the 3scale Developer Portal. When creating or updating an account in the Developer Portal UI it is p... |
| CVE-2024-25621 | HIGH | 7.8 | 0.1% | Nov 6, 2025 | containerd is an open-source container runtime. Versions 0.1.0 through 1.7.28, 2.0.0-beta.0 through 2.0.6, 2.1.0-beta.0 ... |
| CVE-2024-56426 | HIGH | 7.5 | 0.3% | Nov 4, 2025 | An issue was discovered in Samsung Mobile Processor and Wearable Processor Exynos 980, 990, 850, 1080, 2100, 1280, 2200,... |
| CVE-2024-13998 | MEDIUM | 6.5 | 1.0% | Nov 3, 2025 | Nagios XI versions prior to 2024R1.1.3, under certain circumstances, disclose sensitive user account information (includ... |
| CVE-2024-13997 | HIGH | 7.2 | 1.1% | Nov 3, 2025 | Nagios XI versions prior to 2024R1.1.3 contain a privilege escalation vulnerability in which an authenticated administra... |
| CVE-2024-51317 | MEDIUM | 6.5 | 0.4% | Nov 3, 2025 | An issue in NetSurf v.3.11 allows a remote attacker to execute arbitrary code via the dom_node_normalize function |
| CVE-2024-13992 | MEDIUM | 5.4 | 0.5% | Oct 31, 2025 | Nagios XI versions prior to < 2024R1.1 is vulnerable to a cross-site scripting (XSS) when a user visits the "missing pag... |
| CVE-2024-58273 | HIGH | 7.8 | 0.3% | Oct 30, 2025 | Nagios Log Server versions prior to 2024R1.0.2 contain a local privilege escalation vulnerability that allows an attacke... |
| CVE-2024-58272 | — | — | — | Oct 30, 2025 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority as it is a duplicate of CVE-2... |
| CVE-2024-14009 | HIGH | 7.2 | 1.2% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.0.1 contain a privilege escalation vulnerability in the System Profile component. The... |
| CVE-2024-14008 | HIGH | 7.2 | 2.4% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.3.2 contain a remote command execution vulnerability in the WinRM Configuration Wizar... |
| CVE-2024-14006 | MEDIUM | 6.1 | 0.5% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.2.2 contain a host header injection vulnerability. The application trusts the user-su... |
| CVE-2024-14005 | HIGH | 8.8 | 4.0% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.2 contain a command injection vulnerability in the Docker Wizard. Insufficient valida... |
| CVE-2024-14004 | HIGH | 8.8 | 1.1% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.2 contain a privilege escalation vulnerability related to NagVis configuration handli... |
| CVE-2024-14003 | CRITICAL | 9.8 | 2.3% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.2 are vulnerable to remote code execution (RCE) through its NRDP (Nagios Remote Data ... |
| CVE-2024-14002 | MEDIUM | 5.5 | 1.3% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.1.4 contain a local file inclusion (LFI) vulnerability via its NagVis integration. An... |
| CVE-2024-14001 | MEDIUM | 5.4 | 0.6% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.1.3 are vulnerable to cross-site scripting (XSS) via the Executive Summary Report com... |
| CVE-2024-14000 | MEDIUM | 5.4 | 0.6% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.1.3 are vulnerable to cross-site scripting (XSS) via the Capacity Planning Report com... |
| CVE-2024-13999 | CRITICAL | 9.8 | 1.9% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.1.3, under certain circumstances, disclose the server's Active Directory (AD) or LDAP... |
| CVE-2024-13996 | CRITICAL | 9.8 | 1.1% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.1.3 did not invalidate all other active sessions for a user when that user's password... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now