2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-52529 | MEDIUM | 5.8 | 0.5% | Nov 25, 2024 | Cilium is a networking, observability, and security solution with an eBPF-based dataplane. For users with the following ... |
| CVE-2024-51723 | MEDIUM | 4.6 | 0.3% | Nov 25, 2024 | A Stored Cross-Site Scripting (XSS) vulnerability in the Management Console of BlackBerry AtHoc version 7.15 could allow... |
| CVE-2024-32468 | MEDIUM | 5.4 | 0.3% | Nov 25, 2024 | Deno is a runtime for JavaScript and TypeScript written in rust. Several cross-site scripting vulnerabilities existed in... |
| CVE-2024-8272 | HIGH | 7.8 | 0.2% | Nov 25, 2024 | The com.uaudio.bsd.helper service, responsible for handling privileged operations, fails to implement critical client va... |
| CVE-2024-7915 | HIGH | 7.8 | 0.2% | Nov 25, 2024 | The application Sensei Mac Cleaner contains a local privilege escalation vulnerability, allowing an attacker to perform ... |
| CVE-2024-52787 | CRITICAL | 9.1 | 0.8% | Nov 25, 2024 | An issue in the upload_documents method of libre-chat v0.0.6 allows attackers to execute a path traversal via supplying ... |
| CVE-2024-45756 | HIGH | 7.2 | 0.5% | Nov 25, 2024 | An issue was discovered in Centreon centreon-open-tickets 24.10.x before 24.10.0, 24.04.x before 24.04.2, 23.10.x before... |
| CVE-2024-45755 | HIGH | 7.2 | 0.5% | Nov 25, 2024 | An issue was discovered in Centreon centreon-dsm-server 24.10.x before 24.10.0, 24.04.x before 24.04.3, 23.10.x before 2... |
| CVE-2024-11672 | MEDIUM | 4.3 | 0.5% | Nov 25, 2024 | Incorrect authorization in the add permission component in Devolutions Remote Desktop Manager 2024.2.21 and earlier on W... |
| CVE-2024-11671 | MEDIUM | 5.4 | 0.5% | Nov 25, 2024 | Improper authentication in SQL data source MFA validation in Devolutions Remote Desktop Manager 2024.3.17 and earlier on... |
| CVE-2024-11670 | MEDIUM | 5.4 | 0.6% | Nov 25, 2024 | Incorrect authorization in the permission validation component of Devolutions Remote Desktop Manager 2024.2.21 and earli... |
| CVE-2024-27134 | HIGH | 7 | 0.1% | Nov 25, 2024 | Excessive directory permissions in MLflow leads to local privilege escalation when using spark_udf. This behavior can be... |
| CVE-2024-11498 | HIGH | 7.5 | 0.6% | Nov 25, 2024 | There exists a stack buffer overflow in libjxl. A specifically-crafted file can cause the JPEG XL decoder to use large a... |
| CVE-2024-11403 | CRITICAL | 9.8 | 0.6% | Nov 25, 2024 | There exists an out of bounds read/write in LibJXL versions prior to commit 9cc451b91b74ba470fd72bd48c121e9f33d24c99. Th... |
| CVE-2024-11664 | CRITICAL | 9.8 | 1.9% | Nov 25, 2024 | A vulnerability, which was classified as critical, has been found in eNMS up to 4.2. Affected by this issue is the funct... |
| CVE-2024-11663 | CRITICAL | 9.8 | 0.9% | Nov 25, 2024 | A vulnerability classified as critical was found in Codezips E-Commerce Site 1.0. Affected by this vulnerability is an u... |
| CVE-2024-9666 | MEDIUM | 4.7 | 0.4% | Nov 25, 2024 | A vulnerability was found in the Keycloak Server. The Keycloak Server is vulnerable to a denial of service (DoS) attack ... |
| CVE-2024-11662 | MEDIUM | 6.3 | 0.5% | Nov 25, 2024 | A vulnerability was found in welliamcao OpsManage 3.0.1/3.0.2/3.0.3/3.0.4/3.0.5. It has been rated as critical. This iss... |
| CVE-2024-11661 | CRITICAL | 9.8 | 0.8% | Nov 25, 2024 | A vulnerability was found in Codezips Free Exam Hall Seating Management System 1.0. It has been declared as problematic.... |
| CVE-2024-10492 | LOW | 2.7 | 0.7% | Nov 25, 2024 | A vulnerability was found in Keycloak. A user with high privileges could read sensitive information from a Vault file th... |
| CVE-2024-10451 | MEDIUM | 5.9 | 0.9% | Nov 25, 2024 | A flaw was found in Keycloak. This issue occurs because sensitive runtime values, such as passwords, may be captured dur... |
| CVE-2024-10270 | MEDIUM | 6.5 | 1.3% | Nov 25, 2024 | A vulnerability was found in the Keycloak-services package. If untrusted data is passed to the SearchQueryUtils method, ... |
| CVE-2024-6538 | MEDIUM | 5.3 | 0.6% | Nov 25, 2024 | A flaw was found in OpenShift Console. A Server Side Request Forgery (SSRF) attack can happen if an attacker supplies al... |
| CVE-2024-11660 | MEDIUM | 5.4 | 0.6% | Nov 25, 2024 | A vulnerability was found in code-projects Farmacia 1.0. It has been classified as problematic. This affects an unknown ... |
| CVE-2024-11659 | HIGH | 7.2 | 27.8% | Nov 25, 2024 | A vulnerability was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118 and classified as critical. Aff... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now