2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-51949MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51948MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51947MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51946MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51945MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51944MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-51942MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-10904MEDIUM4.8There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot...
CVE-2024-30154MEDIUM5.7HCL SX is vulnerable to cross-site request forgery vulnerability which could allow an attacker to execute malicious and ...
CVE-2024-53384MEDIUM5.1A DOM Clobbering vulnerability in tsup v8.3.4 allows attackers to execute arbitrary code via a crafted script in the imp...
CVE-2024-51091MEDIUM5.4Cross Site Scripting vulnerability in seajs v.2.2.3 allows a remote attacker to execute arbitrary code via the seajs pac...
CVE-2024-57240MEDIUM5.4A Cross-Site Scripting (XSS) vulnerability in the Rendering Engine component in Apryse WebViewer v11.1 and earlier allow...
CVE-2024-45778MEDIUM5.5A stack overflow flaw was found when reading a BFS file system. A crafted BFS filesystem may lead to an uncontrolled loo...
CVE-2024-55570MEDIUM5.4/api/user/users in the web GUI for the Cubro EXA48200 network packet broker (build 20231025055018) fixed in V5.0R14.5P4-...
CVE-2024-43169MEDIUM6.5IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a user to download a malicious file...
CVE-2024-45780MEDIUM6.7A flaw was found in grub2. When reading tar files, grub2 allocates an internal buffer for the file name. However, it fai...
CVE-2024-45779MEDIUM6An integer overflow flaw was found in the BFS file system driver in grub2. When reading a file with an indirect extent m...
CVE-2024-54179MEDIUM5.4IBM Business Automation Workflow and IBM Business Automation Workflow Enterprise Service Bus 24.0.0, 24.0.1 and earlier ...
CVE-2024-53025MEDIUM5.5Transient DOS can occur while processing UCI command.
CVE-2024-43056MEDIUM6.5Transient DOS during hypervisor virtual I/O operation in a virtual machine.
CVE-2024-43051MEDIUM5.5Information disclosure while deriving keys for a session for any Widevine use case.
CVE-2024-38426MEDIUM5.3While processing the authentication message in UE, improper authentication may lead to information disclosure.
CVE-2024-24778MEDIUM6.5Improper privilege management in a REST interface allowed registered users to access unauthorized resources if the resou...
CVE-2024-10925MEDIUM5.3A vulnerability in GitLab-EE affecting all versions from 16.2 prior to 17.7.6, 17.8 prior to 17.8.4, and 17.9 prior to 1...
CVE-2024-8186MEDIUM5.4An issue has been discovered in GitLab CE/EE affecting all versions from 16.6 before 17.7.6, 17.8 before 17.8.4, and 17....

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now