2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-51949 | MEDIUM | 4.8 | 0.2% | Mar 3, 2025 | There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot... |
| CVE-2024-51948 | MEDIUM | 4.8 | 0.2% | Mar 3, 2025 | There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot... |
| CVE-2024-51947 | MEDIUM | 4.8 | 0.2% | Mar 3, 2025 | There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot... |
| CVE-2024-51946 | MEDIUM | 4.8 | 0.2% | Mar 3, 2025 | There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot... |
| CVE-2024-51945 | MEDIUM | 4.8 | 0.2% | Mar 3, 2025 | There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot... |
| CVE-2024-51944 | MEDIUM | 4.8 | 0.2% | Mar 3, 2025 | There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot... |
| CVE-2024-51942 | MEDIUM | 4.8 | 0.2% | Mar 3, 2025 | There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot... |
| CVE-2024-10904 | MEDIUM | 4.8 | 0.2% | Mar 3, 2025 | There is a stored Cross-site Scripting vulnerability in ArcGIS Server for versions 11.3 and below that may allow a remot... |
| CVE-2024-30154 | MEDIUM | 5.7 | 0.1% | Mar 3, 2025 | HCL SX is vulnerable to cross-site request forgery vulnerability which could allow an attacker to execute malicious and ... |
| CVE-2024-53384 | MEDIUM | 5.1 | 0.2% | Mar 3, 2025 | A DOM Clobbering vulnerability in tsup v8.3.4 allows attackers to execute arbitrary code via a crafted script in the imp... |
| CVE-2024-51091 | MEDIUM | 5.4 | 0.4% | Mar 3, 2025 | Cross Site Scripting vulnerability in seajs v.2.2.3 allows a remote attacker to execute arbitrary code via the seajs pac... |
| CVE-2024-57240 | MEDIUM | 5.4 | 0.2% | Mar 3, 2025 | A Cross-Site Scripting (XSS) vulnerability in the Rendering Engine component in Apryse WebViewer v11.1 and earlier allow... |
| CVE-2024-45778 | MEDIUM | 5.5 | 0.3% | Mar 3, 2025 | A stack overflow flaw was found when reading a BFS file system. A crafted BFS filesystem may lead to an uncontrolled loo... |
| CVE-2024-55570 | MEDIUM | 5.4 | 0.3% | Mar 3, 2025 | /api/user/users in the web GUI for the Cubro EXA48200 network packet broker (build 20231025055018) fixed in V5.0R14.5P4-... |
| CVE-2024-43169 | MEDIUM | 6.5 | 0.2% | Mar 3, 2025 | IBM Engineering Requirements Management DOORS Next 7.0.2, 7.0.3, and 7.1 could allow a user to download a malicious file... |
| CVE-2024-45780 | MEDIUM | 6.7 | 0.3% | Mar 3, 2025 | A flaw was found in grub2. When reading tar files, grub2 allocates an internal buffer for the file name. However, it fai... |
| CVE-2024-45779 | MEDIUM | 6 | 0.3% | Mar 3, 2025 | An integer overflow flaw was found in the BFS file system driver in grub2. When reading a file with an indirect extent m... |
| CVE-2024-54179 | MEDIUM | 5.4 | 0.3% | Mar 3, 2025 | IBM Business Automation Workflow and IBM Business Automation Workflow Enterprise Service Bus 24.0.0, 24.0.1 and earlier ... |
| CVE-2024-53025 | MEDIUM | 5.5 | 0.1% | Mar 3, 2025 | Transient DOS can occur while processing UCI command. |
| CVE-2024-43056 | MEDIUM | 6.5 | 0.1% | Mar 3, 2025 | Transient DOS during hypervisor virtual I/O operation in a virtual machine. |
| CVE-2024-43051 | MEDIUM | 5.5 | 0.1% | Mar 3, 2025 | Information disclosure while deriving keys for a session for any Widevine use case. |
| CVE-2024-38426 | MEDIUM | 5.3 | 0.2% | Mar 3, 2025 | While processing the authentication message in UE, improper authentication may lead to information disclosure. |
| CVE-2024-24778 | MEDIUM | 6.5 | 0.6% | Mar 3, 2025 | Improper privilege management in a REST interface allowed registered users to access unauthorized resources if the resou... |
| CVE-2024-10925 | MEDIUM | 5.3 | 0.3% | Mar 3, 2025 | A vulnerability in GitLab-EE affecting all versions from 16.2 prior to 17.7.6, 17.8 prior to 17.8.4, and 17.9 prior to 1... |
| CVE-2024-8186 | MEDIUM | 5.4 | 0.3% | Mar 3, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions from 16.6 before 17.7.6, 17.8 before 17.8.4, and 17.... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now