2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-39531 | HIGH | 8.7 | 0.4% | Jul 11, 2024 | An Improper Handling of Values vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved ... |
| CVE-2024-39904 | HIGH | 8.8 | 0.7% | Jul 11, 2024 | VNote is a note-taking platform. Prior to 3.18.1, a code execution vulnerability existed in VNote, which allowed an atta... |
| CVE-2024-39530 | HIGH | 7.5 | 0.5% | Jul 11, 2024 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the chassis management daemon (chassisd) of Jun... |
| CVE-2024-39529 | HIGH | 8.7 | 0.5% | Jul 11, 2024 | A Use of Externally-Controlled Format String vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Jun... |
| CVE-2024-39524 | HIGH | 8.5 | 0.3% | Jul 11, 2024 | An Improper Neutralization of Special Elements vulnerability in Juniper Networks Junos OS Evolved commands allows a loca... |
| CVE-2024-39523 | HIGH | 8.5 | 0.3% | Jul 11, 2024 | An Improper Neutralization of Special Elements vulnerability in Juniper Networks Junos OS Evolved commands allows a loca... |
| CVE-2024-39522 | HIGH | 8.5 | 0.3% | Jul 11, 2024 | An Improper Neutralization of Special Elements vulnerability in Juniper Networks Junos OS Evolved commands allows a loca... |
| CVE-2024-39521 | HIGH | 8.5 | 0.3% | Jul 11, 2024 | An Improper Neutralization of Special Elements vulnerability in Juniper Networks Junos OS Evolved commands allows a loca... |
| CVE-2024-39520 | HIGH | 8.5 | 0.3% | Jul 11, 2024 | An Improper Neutralization of Special Elements vulnerability in Juniper Networks Junos OS Evolved commands allows a loca... |
| CVE-2024-39519 | HIGH | 7.1 | 0.2% | Jul 11, 2024 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper N... |
| CVE-2024-32753 | HIGH | 7 | 0.4% | Jul 11, 2024 | Under certain circumstances the camera may be susceptible to known vulnerabilities associated with the JQuery versions p... |
| CVE-2024-38536 | HIGH | 7.5 | 0.9% | Jul 11, 2024 | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. A ... |
| CVE-2024-38535 | HIGH | 7.5 | 1.2% | Jul 11, 2024 | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Su... |
| CVE-2024-38534 | HIGH | 7.5 | 0.9% | Jul 11, 2024 | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Cr... |
| CVE-2024-37151 | HIGH | 7.5 | 0.6% | Jul 11, 2024 | Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. M... |
| CVE-2024-28872 | HIGH | 8.1 | 0.3% | Jul 11, 2024 | The TLS certificate validation code is flawed. An attacker can obtain a TLS certificate from the Stork server and use it... |
| CVE-2024-6407 | HIGH | 7.5 | 0.4% | Jul 11, 2024 | CWE-200: Information Exposure vulnerability exists that could cause disclosure of credentials when a specially crafted m... |
| CVE-2024-5681 | HIGH | 7.8 | 0.2% | Jul 11, 2024 | CWE-20: Improper Input Validation vulnerability exists that could cause local denial-of-service, privilege escalation, a... |
| CVE-2024-5679 | HIGH | 7.1 | 0.1% | Jul 11, 2024 | CWE-787: Out-of-Bounds Write vulnerability exists that could cause local denial-of-service, or kernel memory leak when a... |
| CVE-2024-2602 | HIGH | 7.8 | 0.3% | Jul 11, 2024 | CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could r... |
| CVE-2024-6666 | HIGH | 8.8 | 0.5% | Jul 11, 2024 | The WP ERP plugin for WordPress is vulnerable to SQL Injection via the ‘vendor_id’ and 'status' parameter in all version... |
| CVE-2024-1845 | HIGH | 8.8 | 0.3% | Jul 11, 2024 | The VikRentCar Car Rental Management System WordPress plugin before 1.3.2 does not have CSRF checks in some places, whic... |
| CVE-2024-22280 | HIGH | 8.1 | 0.5% | Jul 11, 2024 | VMware Aria Automation does not apply correct input validation which allows for SQL-injection in the product. An authent... |
| CVE-2024-6676 | HIGH | 8.8 | 0.4% | Jul 11, 2024 | A vulnerability has been found in witmy my-springsecurity-plus up to 2024-07-03 and classified as critical. Affected by ... |
| CVE-2024-6447 | HIGH | 7.2 | 0.5% | Jul 11, 2024 | The FULL – Cliente plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the license plan parameter in a... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now