2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-6151 | HIGH | 7.8 | 0.2% | Jul 10, 2024 | Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Virtual Delivery Agent for Windows ... |
| CVE-2024-6148 | HIGH | 8.8 | 0.4% | Jul 10, 2024 | Bypass of GACS Policy Configuration settings in Citrix Workspace app for HTML5 |
| CVE-2024-39693 | HIGH | 7.5 | 0.5% | Jul 10, 2024 | Next.js is a React framework. A Denial of Service (DoS) condition was identified in Next.js. Exploitation of the bug can... |
| CVE-2024-37149 | HIGH | 8.8 | 21.2% | Jul 10, 2024 | GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses track... |
| CVE-2024-37148 | HIGH | 8.1 | 20.4% | Jul 10, 2024 | GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses track... |
| CVE-2024-6235 | HIGH | 8.8 | 21.3% | Jul 10, 2024 | Sensitive information disclosure in NetScaler Console |
| CVE-2024-5491 | HIGH | 7.5 | 0.8% | Jul 10, 2024 | Denial of Service in NetScaler ADC and NetScaler Gateway in NetScaler |
| CVE-2024-32469 | HIGH | 7.1 | 0.4% | Jul 10, 2024 | Decidim is a participatory democracy framework. The pagination feature used in searches and filters is subject to potent... |
| CVE-2024-37115 | HIGH | 7.5 | 0.6% | Jul 10, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Automattic Newspack Blocks.This issue affect... |
| CVE-2024-37110 | HIGH | 7.5 | 0.6% | Jul 10, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Membership Software WishList Member X.This i... |
| CVE-2024-32759 | HIGH | 7.7 | 0.4% | Jul 10, 2024 | Under certain circumstances the Software House C●CURE 9000 installer will utilize weak credentials. |
| CVE-2024-3325 | HIGH | 7.2 | 0.6% | Jul 10, 2024 | Vulnerability in Jaspersoft JasperReport Servers.This issue affects JasperReport Servers: from 8.0.4 through 9.0.0. |
| CVE-2024-40332 | HIGH | 8.8 | 0.2% | Jul 10, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/moneyRecord_deal.php... |
| CVE-2024-40331 | HIGH | 8.8 | 0.3% | Jul 10, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/dbBakMySQL_deal.php?... |
| CVE-2024-40334 | HIGH | 8.8 | 0.3% | Jul 10, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/serverFile_deal.php?... |
| CVE-2024-40333 | HIGH | 8.8 | 0.6% | Jul 10, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/softBak_deal.php?mud... |
| CVE-2024-40329 | HIGH | 8.8 | 0.3% | Jul 10, 2024 | idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/softBak_deal.php?mud... |
| CVE-2024-28828 | HIGH | 8.8 | 0.2% | Jul 10, 2024 | Cross-Site request forgery in Checkmk < 2.3.0p8, < 2.2.0p29, < 2.1.0p45, and <= 2.0.0p39 (EOL) could lead to 1-click com... |
| CVE-2024-28827 | HIGH | 7.8 | 0.2% | Jul 10, 2024 | Incorrect permissions on the Checkmk Windows Agent's data directory in Checkmk < 2.3.0p8, < 2.2.0p29, < 2.1.0p45, and <=... |
| CVE-2024-3799 | HIGH | 8.7 | 14.6% | Jul 10, 2024 | Insecure handling of POST header parameter body included in requests being sent to an instance of the open-source projec... |
| CVE-2024-3798 | HIGH | 8.7 | 0.5% | Jul 10, 2024 | Insecure handling of GET header parameter file included in requests being sent to an instance of the open-source project... |
| CVE-2024-6421 | HIGH | 7.5 | 0.5% | Jul 10, 2024 | An unauthenticated remote attacker can read out sensitive device information through a incorrectly configured FTP servic... |
| CVE-2024-39492 | HIGH | 7 | 0.2% | Jul 10, 2024 | In the Linux kernel, the following vulnerability has been resolved: mailbox: mtk-cmdq: Fix pm_runtime_get_sync() warnin... |
| CVE-2024-39927 | HIGH | 8.2 | 0.6% | Jul 10, 2024 | Out-of-bounds write vulnerability exists in Ricoh MFPs and printers. If a remote attacker sends a specially crafted requ... |
| CVE-2024-36451 | HIGH | 8.8 | 0.6% | Jul 10, 2024 | Improper handling of insufficient permissions or privileges vulnerability exists in ajaxterm module of Webmin prior to 2... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now