2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-35175MEDIUM5.3sshpiper is a reverse proxy for sshd. Starting in version 1.0.50 and prior to version 1.3.0, the way the proxy protocol ...
CVE-2024-4562MEDIUM5.4 In WhatsUp Gold versions released before 2023.1.2 , an SSRF vulnerability exists in Whatsup Gold's Issue exists in ...
CVE-2024-4561MEDIUM5.3 In WhatsUp Gold versions released before 2023.1.2 , a blind SSRF vulnerability exists in Whatsup Gold's FaviconContro...
CVE-2024-3044MEDIUM6.5Unchecked script execution in Graphic on-click binding in affected LibreOffice versions allows an attacker to create a d...
CVE-2024-0862MEDIUM5The Proofpoint Encryption endpoint of Proofpoint Enterprise Protection contains a Server-Side Request Forgery vulnerabil...
CVE-2024-4775MEDIUM5.9An iterator stop condition was missing when handling WASM code in the built-in profiler, potentially leading to invalid ...
CVE-2024-4774MEDIUM6.5The `ShmemCharMapHashEntry()` code was susceptible to potentially undefined behavior by bypassing the move semantics for...
CVE-2024-4772MEDIUM5.9An HTTP digest authentication nonce value was generated using `rand()` which could lead to predictable values. This vuln...
CVE-2024-4769MEDIUM5.9When importing resources using Web Workers, error messages would distinguish the difference between `application/javascr...
CVE-2024-4768MEDIUM6.1A bug in popup notifications' interaction with WebAuthn made it easier for an attacker to trick a user into granting per...
CVE-2024-4767MEDIUM4.3If the `browser.privatebrowsing.autostart` preference is enabled, IndexedDB files were not properly deleted when the win...
CVE-2024-4766MEDIUM4.3Different techniques existed to obscure the fullscreen notification in Firefox for Android. These could have led to pot...
CVE-2024-30059MEDIUM5.5Microsoft Intune for Android Mobile Application Management Tampering Vulnerability
CVE-2024-30054MEDIUM6.5Microsoft Power BI Client JavaScript SDK Information Disclosure Vulnerability
CVE-2024-30053MEDIUM5.4Azure Migrate Cross-Site Scripting Vulnerability
CVE-2024-30050MEDIUM5.4Windows Mark of the Web Security Feature Bypass Vulnerability
CVE-2024-30048MEDIUM4.1Dynamics 365 Customer Insights Spoofing Vulnerability
CVE-2024-30047MEDIUM4.1Dynamics 365 Customer Insights Spoofing Vulnerability
CVE-2024-30046MEDIUM5.9Visual Studio Denial of Service Vulnerability
CVE-2024-30045MEDIUM6.3.NET and Visual Studio Remote Code Execution Vulnerability
CVE-2024-30041MEDIUM5.4Microsoft Bing Search Spoofing Vulnerability
CVE-2024-30039MEDIUM5.5Windows Remote Access Connection Manager Information Disclosure Vulnerability
CVE-2024-30037MEDIUM5.5Windows Common Log File System Driver Elevation of Privilege Vulnerability
CVE-2024-30036MEDIUM6.5Windows Deployment Services Information Disclosure Vulnerability
CVE-2024-30034MEDIUM5.5Windows Cloud Files Mini Filter Driver Information Disclosure Vulnerability

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now