2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-35175 | MEDIUM | 5.3 | 0.3% | May 14, 2024 | sshpiper is a reverse proxy for sshd. Starting in version 1.0.50 and prior to version 1.3.0, the way the proxy protocol ... |
| CVE-2024-4562 | MEDIUM | 5.4 | 0.4% | May 14, 2024 | In WhatsUp Gold versions released before 2023.1.2 , an SSRF vulnerability exists in Whatsup Gold's Issue exists in ... |
| CVE-2024-4561 | MEDIUM | 5.3 | 0.4% | May 14, 2024 | In WhatsUp Gold versions released before 2023.1.2 , a blind SSRF vulnerability exists in Whatsup Gold's FaviconContro... |
| CVE-2024-3044 | MEDIUM | 6.5 | 1.0% | May 14, 2024 | Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a d... |
| CVE-2024-0862 | MEDIUM | 5 | 0.2% | May 14, 2024 | The Proofpoint Encryption endpoint of Proofpoint Enterprise Protection contains a Server-Side Request Forgery vulnerabil... |
| CVE-2024-4775 | MEDIUM | 5.9 | 0.2% | May 14, 2024 | An iterator stop condition was missing when handling WASM code in the built-in profiler, potentially leading to invalid ... |
| CVE-2024-4774 | MEDIUM | 6.5 | 0.4% | May 14, 2024 | The `ShmemCharMapHashEntry()` code was susceptible to potentially undefined behavior by bypassing the move semantics for... |
| CVE-2024-4772 | MEDIUM | 5.9 | 0.2% | May 14, 2024 | An HTTP digest authentication nonce value was generated using `rand()` which could lead to predictable values. This vuln... |
| CVE-2024-4769 | MEDIUM | 5.9 | 0.4% | May 14, 2024 | When importing resources using Web Workers, error messages would distinguish the difference between `application/javascr... |
| CVE-2024-4768 | MEDIUM | 6.1 | 0.5% | May 14, 2024 | A bug in popup notifications' interaction with WebAuthn made it easier for an attacker to trick a user into granting per... |
| CVE-2024-4767 | MEDIUM | 4.3 | 0.5% | May 14, 2024 | If the `browser.privatebrowsing.autostart` preference is enabled, IndexedDB files were not properly deleted when the win... |
| CVE-2024-4766 | MEDIUM | 4.3 | 0.4% | May 14, 2024 | Different techniques existed to obscure the fullscreen notification in Firefox for Android. These could have led to pot... |
| CVE-2024-30059 | MEDIUM | 5.5 | 0.6% | May 14, 2024 | Microsoft Intune for Android Mobile Application Management Tampering Vulnerability |
| CVE-2024-30054 | MEDIUM | 6.5 | 1.7% | May 14, 2024 | Microsoft Power BI Client JavaScript SDK Information Disclosure Vulnerability |
| CVE-2024-30053 | MEDIUM | 5.4 | 1.0% | May 14, 2024 | Azure Migrate Cross-Site Scripting Vulnerability |
| CVE-2024-30050 | MEDIUM | 5.4 | 11.5% | May 14, 2024 | Windows Mark of the Web Security Feature Bypass Vulnerability |
| CVE-2024-30048 | MEDIUM | 4.1 | 1.0% | May 14, 2024 | Dynamics 365 Customer Insights Spoofing Vulnerability |
| CVE-2024-30047 | MEDIUM | 4.1 | 1.0% | May 14, 2024 | Dynamics 365 Customer Insights Spoofing Vulnerability |
| CVE-2024-30046 | MEDIUM | 5.9 | 1.7% | May 14, 2024 | Visual Studio Denial of Service Vulnerability |
| CVE-2024-30045 | MEDIUM | 6.3 | 1.2% | May 14, 2024 | .NET and Visual Studio Remote Code Execution Vulnerability |
| CVE-2024-30041 | MEDIUM | 5.4 | 0.7% | May 14, 2024 | Microsoft Bing Search Spoofing Vulnerability |
| CVE-2024-30039 | MEDIUM | 5.5 | 0.7% | May 14, 2024 | Windows Remote Access Connection Manager Information Disclosure Vulnerability |
| CVE-2024-30037 | MEDIUM | 5.5 | 5.3% | May 14, 2024 | Windows Common Log File System Driver Elevation of Privilege Vulnerability |
| CVE-2024-30036 | MEDIUM | 6.5 | 2.3% | May 14, 2024 | Windows Deployment Services Information Disclosure Vulnerability |
| CVE-2024-30034 | MEDIUM | 5.5 | 6.9% | May 14, 2024 | Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now