2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-21308 | HIGH | 8.8 | 1.6% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-21303 | HIGH | 8.8 | 1.5% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-20701 | HIGH | 8.8 | 1.6% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-27783 | HIGH | 8.8 | 0.3% | Jul 9, 2024 | Multiple cross-site request forgery (CSRF) weaknesses [CWE-352] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an ... |
| CVE-2024-23663 | HIGH | 8.8 | 0.6% | Jul 9, 2024 | An improper access control in Fortinet FortiExtender 4.1.1 - 4.1.9, 4.2.0 - 4.2.6, 5.3.2, 7.0.0 - 7.0.4, 7.2.0 - 7.2.4 a... |
| CVE-2024-6615 | HIGH | 8.8 | 0.4% | Jul 9, 2024 | Memory safety bugs present in Firefox 127 and Thunderbird 127. Some of these bugs showed evidence of memory corruption a... |
| CVE-2024-6609 | HIGH | 8.8 | 0.6% | Jul 9, 2024 | When almost out-of-memory an elliptic curve key which was never allocated could have been freed again. This vulnerabilit... |
| CVE-2024-6607 | HIGH | 8.8 | 0.6% | Jul 9, 2024 | It was possible to prevent a user from exiting pointerlock when pressing escape and to overlay customValidity notificati... |
| CVE-2024-6606 | HIGH | 8.2 | 0.4% | Jul 9, 2024 | Clipboard code failed to check the index on an array access. This could have led to an out-of-bounds read. This vulnerab... |
| CVE-2024-6605 | HIGH | 8.8 | 0.4% | Jul 9, 2024 | Firefox Android allowed immediate interaction with permission prompts. This could be used for tapjacking. This vulnerabi... |
| CVE-2024-6604 | HIGH | 7.5 | 0.5% | Jul 9, 2024 | Memory safety bugs present in Firefox 127, Firefox ESR 115.12, and Thunderbird 115.12. Some of these bugs showed evidenc... |
| CVE-2024-6603 | HIGH | 7.4 | 0.5% | Jul 9, 2024 | In an out-of-memory scenario an allocation could fail but free would have been called on the pointer afterwards leading ... |
| CVE-2024-39697 | HIGH | 8.6 | 0.7% | Jul 9, 2024 | phonenumber is a library for parsing, formatting and validating international phone numbers. Since 0.3.4, the phonenumbe... |
| CVE-2024-38363 | HIGH | 8.5 | 0.7% | Jul 9, 2024 | Airbyte is a data integration platform for ELT pipelines. Airbyte connection builder docker image is vulnerable to RCE v... |
| CVE-2024-37952 | HIGH | 8.8 | 0.4% | Jul 9, 2024 | Improper Privilege Management vulnerability in themeenergy BookYourTravel allows Privilege Escalation.This issue affects... |
| CVE-2024-37520 | HIGH | 8.8 | 0.6% | Jul 9, 2024 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2024-37513 | HIGH | 8.8 | 0.6% | Jul 9, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Themewinter WPCafe allow... |
| CVE-2024-22271 | HIGH | 8.2 | 0.4% | Jul 9, 2024 | In Spring Cloud Function framework, versions 4.1.x prior to 4.1.2, 4.0.x prior to 4.0.8 an application is vulnerable to ... |
| CVE-2024-39888 | HIGH | 8.7 | 0.2% | Jul 9, 2024 | A vulnerability has been identified in Mendix Encryption (All versions >= V10.0.0 < V10.0.2). Affected versions of the m... |
| CVE-2024-39874 | HIGH | 7.5 | 0.4% | Jul 9, 2024 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application ... |
| CVE-2024-39873 | HIGH | 7.5 | 0.4% | Jul 9, 2024 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application ... |
| CVE-2024-39870 | HIGH | 7.8 | 0.2% | Jul 9, 2024 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected applications... |
| CVE-2024-39868 | HIGH | 7.3 | 0.4% | Jul 9, 2024 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected devices do not p... |
| CVE-2024-39867 | HIGH | 7.3 | 0.4% | Jul 9, 2024 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected devices do not p... |
| CVE-2024-39866 | HIGH | 8.8 | 0.2% | Jul 9, 2024 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now