2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-52529MEDIUM5.8Cilium is a networking, observability, and security solution with an eBPF-based dataplane. For users with the following ...
CVE-2024-51723MEDIUM4.6A Stored Cross-Site Scripting (XSS) vulnerability in the Management Console of BlackBerry AtHoc version 7.15 could allow...
CVE-2024-32468MEDIUM5.4Deno is a runtime for JavaScript and TypeScript written in rust. Several cross-site scripting vulnerabilities existed in...
CVE-2024-8272HIGH7.8The com.uaudio.bsd.helper service, responsible for handling privileged operations, fails to implement critical client va...
CVE-2024-7915HIGH7.8The application Sensei Mac Cleaner contains a local privilege escalation vulnerability, allowing an attacker to perform ...
CVE-2024-52787CRITICAL9.1An issue in the upload_documents method of libre-chat v0.0.6 allows attackers to execute a path traversal via supplying ...
CVE-2024-45756HIGH7.2An issue was discovered in Centreon centreon-open-tickets 24.10.x before 24.10.0, 24.04.x before 24.04.2, 23.10.x before...
CVE-2024-45755HIGH7.2An issue was discovered in Centreon centreon-dsm-server 24.10.x before 24.10.0, 24.04.x before 24.04.3, 23.10.x before 2...
CVE-2024-11672MEDIUM4.3Incorrect authorization in the add permission component in Devolutions Remote Desktop Manager 2024.2.21 and earlier on W...
CVE-2024-11671MEDIUM5.4Improper authentication in SQL data source MFA validation in Devolutions Remote Desktop Manager 2024.3.17 and earlier on...
CVE-2024-11670MEDIUM5.4Incorrect authorization in the permission validation component of Devolutions Remote Desktop Manager 2024.2.21 and earli...
CVE-2024-27134HIGH7Excessive directory permissions in MLflow leads to local privilege escalation when using spark_udf. This behavior can be...
CVE-2024-11498HIGH7.5There exists a stack buffer overflow in libjxl. A specifically-crafted file can cause the JPEG XL decoder to use large a...
CVE-2024-11403CRITICAL9.8There exists an out of bounds read/write in LibJXL versions prior to commit 9cc451b91b74ba470fd72bd48c121e9f33d24c99. Th...
CVE-2024-11664CRITICAL9.8A vulnerability, which was classified as critical, has been found in eNMS up to 4.2. Affected by this issue is the funct...
CVE-2024-11663CRITICAL9.8A vulnerability classified as critical was found in Codezips E-Commerce Site 1.0. Affected by this vulnerability is an u...
CVE-2024-9666MEDIUM4.7A vulnerability was found in the Keycloak Server. The Keycloak Server is vulnerable to a denial of service (DoS) attack ...
CVE-2024-11662MEDIUM6.3A vulnerability was found in welliamcao OpsManage 3.0.1/3.0.2/3.0.3/3.0.4/3.0.5. It has been rated as critical. This iss...
CVE-2024-11661CRITICAL9.8A vulnerability was found in Codezips Free Exam Hall Seating Management System 1.0. It has been declared as problematic....
CVE-2024-10492LOW2.7A vulnerability was found in Keycloak. A user with high privileges could read sensitive information from a Vault file th...
CVE-2024-10451MEDIUM5.9A flaw was found in Keycloak. This issue occurs because sensitive runtime values, such as passwords, may be captured dur...
CVE-2024-10270MEDIUM6.5A vulnerability was found in the Keycloak-services package. If untrusted data is passed to the SearchQueryUtils method, ...
CVE-2024-6538MEDIUM5.3A flaw was found in OpenShift Console. A Server Side Request Forgery (SSRF) attack can happen if an attacker supplies al...
CVE-2024-11660MEDIUM5.4A vulnerability was found in code-projects Farmacia 1.0. It has been classified as problematic. This affects an unknown ...
CVE-2024-11659HIGH7.2A vulnerability was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118 and classified as critical. Aff...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now