2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-7420 | MEDIUM | 6.5 | 0.2% | Aug 15, 2024 | The Insert PHP Code Snippet plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and ... |
| CVE-2024-6533 | MEDIUM | 5.4 | 0.4% | Aug 15, 2024 | Directus v10.13.0 allows an authenticated external attacker to execute arbitrary JavaScript on the client. This is possi... |
| CVE-2024-25024 | MEDIUM | 5.5 | 0.1% | Aug 15, 2024 | IBM QRadar Suite Software 1.10.12.0 through 1.10.23.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 stores u... |
| CVE-2024-7809 | MEDIUM | 5.3 | 0.8% | Aug 15, 2024 | A vulnerability was found in SourceCodester Online Graduate Tracer System 1.0. It has been declared as problematic. Affe... |
| CVE-2024-7625 | MEDIUM | 5.8 | 0.3% | Aug 15, 2024 | In HashiCorp Nomad and Nomad Enterprise from 0.6.1 up to 1.6.13, 1.7.10, and 1.8.2, the archive unpacking process is vul... |
| CVE-2024-43368 | MEDIUM | 6.5 | 0.5% | Aug 14, 2024 | The Trix editor, versions prior to 2.1.4, is vulnerable to XSS when pasting malicious code. This vulnerability is a bypa... |
| CVE-2024-7793 | MEDIUM | 5.4 | 0.4% | Aug 14, 2024 | A vulnerability was found in SourceCodester Task Progress Tracker 1.0. It has been declared as problematic. Affected by ... |
| CVE-2024-42353 | MEDIUM | 6.1 | 0.5% | Aug 14, 2024 | WebOb provides objects for HTTP requests and responses. When WebOb normalizes the HTTP Location header to include the re... |
| CVE-2024-7507 | MEDIUM | 6.5 | 0.5% | Aug 14, 2024 | CVE-2024-7507 IMPACT A denial-of-service vulnerability exists in the affected products. This vulnerability occurs when... |
| CVE-2024-37529 | MEDIUM | 6.5 | 0.5% | Aug 14, 2024 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 could allow an authenticated user to cau... |
| CVE-2024-35152 | MEDIUM | 6.5 | 0.6% | Aug 14, 2024 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 could allow an authenticated user to cause a deni... |
| CVE-2024-35136 | MEDIUM | 6.5 | 0.6% | Aug 14, 2024 | IBM Db2 for Linux, UNIX and Windows (includes DB2 Connect Server) federated server 10.5, 11.1, and 11.5 is vulnerable to... |
| CVE-2024-31882 | MEDIUM | 6.5 | 0.6% | Aug 14, 2024 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 is vulnerable to a denial of service, un... |
| CVE-2024-5916 | MEDIUM | 4.4 | 0.2% | Aug 14, 2024 | An information exposure vulnerability in Palo Alto Networks PAN-OS software enables a local system administrator to unin... |
| CVE-2024-42441 | MEDIUM | 6.7 | 0.2% | Aug 14, 2024 | Incorrect privilege assignment in the installer for Zoom Workplace Desktop App for macOS, Zoom Meeting SDK for macOS and... |
| CVE-2024-42440 | MEDIUM | 6.7 | 0.2% | Aug 14, 2024 | Improper privilege management in the installer for Zoom Workplace Desktop App for macOS, Zoom Meeting SDK for macOS and ... |
| CVE-2024-42439 | MEDIUM | 6.5 | 0.2% | Aug 14, 2024 | Untrusted search path in the installer for Zoom Workplace Desktop App for macOS and Zoom Meeting SDK for macOS before 6.... |
| CVE-2024-42438 | MEDIUM | 6.5 | 0.6% | Aug 14, 2024 | Buffer overflow in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an authenticated user ... |
| CVE-2024-42437 | MEDIUM | 6.5 | 0.6% | Aug 14, 2024 | Buffer overflow in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an authenticated user ... |
| CVE-2024-42436 | MEDIUM | 6.5 | 0.6% | Aug 14, 2024 | Buffer overflow in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an authenticated user ... |
| CVE-2024-42435 | MEDIUM | 4.9 | 0.5% | Aug 14, 2024 | Sensitive information disclosure in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a pri... |
| CVE-2024-42434 | MEDIUM | 4.9 | 0.5% | Aug 14, 2024 | Missing authorization in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged use... |
| CVE-2024-39824 | MEDIUM | 4.9 | 0.5% | Aug 14, 2024 | Missing authorization in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged use... |
| CVE-2024-39823 | MEDIUM | 4.9 | 0.5% | Aug 14, 2024 | Missing authorization in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow a privileged use... |
| CVE-2024-39822 | MEDIUM | 6.5 | 0.5% | Aug 14, 2024 | Sensitive information exposure in some Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers may allow an auth... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now