2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-7037 | — | — | 1.1% | Oct 9, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-39525 | HIGH | 8.7 | 0.4% | Oct 9, 2024 | An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Ju... |
| CVE-2024-39516 | HIGH | 8.7 | 0.4% | Oct 9, 2024 | An Out-of-Bounds Read vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS E... |
| CVE-2024-39515 | HIGH | 8.7 | 0.4% | Oct 9, 2024 | An Improper Validation of Consistency within Input vulnerability in the routing protocol daemon (rpd) of Juniper Network... |
| CVE-2024-38818 | MEDIUM | 6.7 | 0.3% | Oct 9, 2024 | VMware NSX contains a local privilege escalation vulnerability. An authenticated malicious actor may exploit this vuln... |
| CVE-2024-38817 | MEDIUM | 6.7 | 0.5% | Oct 9, 2024 | VMware NSX contains a command injection vulnerability. A malicious actor with access to the NSX Edge CLI terminal may ... |
| CVE-2024-38815 | MEDIUM | 4.3 | 0.3% | Oct 9, 2024 | VMware NSX contains a content spoofing vulnerability. An unauthenticated malicious actor may be able to craft a URL an... |
| CVE-2024-30118 | MEDIUM | 5.7 | 0.3% | Oct 9, 2024 | HCL Connections is vulnerable to an information disclosure vulnerability which could allow a user to obtain sensitive in... |
| CVE-2024-7038 | — | — | 0.3% | Oct 9, 2024 | Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| CVE-2024-47833 | MEDIUM | 6.5 | 0.2% | Oct 9, 2024 | Taipy is an open-source Python library for easy, end-to-end application development for data scientists and machine lear... |
| CVE-2024-47832 | CRITICAL | 9.8 | 0.4% | Oct 9, 2024 | ssoready is a single sign on provider implemented via docker. Affected versions are vulnerable to XML signature bypass a... |
| CVE-2024-47828 | MEDIUM | 6.5 | 0.3% | Oct 9, 2024 | ampache is a web based audio/video streaming application and file manager. A CSRF attack can be performed in order to de... |
| CVE-2024-47816 | MEDIUM | 6.4 | 0.3% | Oct 9, 2024 | ImportDump is a mediawiki extension designed to automate user import requests. A user's local actor ID is stored in the ... |
| CVE-2024-47815 | MEDIUM | 6 | 0.4% | Oct 9, 2024 | IncidentReporting is a MediaWiki extension for moving incident reports from wikitext to database tables. There are a var... |
| CVE-2024-47812 | MEDIUM | 6 | 0.4% | Oct 9, 2024 | ImportDump is an extension for mediawiki designed to automate user import requests. Anyone who can edit the interface st... |
| CVE-2024-3656 | HIGH | 8.1 | 2.8% | Oct 9, 2024 | A flaw was found in Keycloak. Certain endpoints in Keycloak's admin REST API allow low-privilege users to access adminis... |
| CVE-2024-47813 | LOW | 2.9 | 0.2% | Oct 9, 2024 | Wasmtime is an open source runtime for WebAssembly. Under certain concurrent event orderings, a `wasmtime::Engine`'s int... |
| CVE-2024-47763 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | Wasmtime is an open source runtime for WebAssembly. Wasmtime's implementation of WebAssembly tail calls combined with st... |
| CVE-2024-9473 | HIGH | 7.8 | 0.3% | Oct 9, 2024 | A privilege escalation vulnerability in the Palo Alto Networks GlobalProtect app on Windows allows a locally authenticat... |
| CVE-2024-9471 | MEDIUM | 4.7 | 0.3% | Oct 9, 2024 | A privilege escalation (PE) vulnerability in the XML API of Palo Alto Networks PAN-OS software enables an authenticated ... |
| CVE-2024-9470 | MEDIUM | 5.3 | 0.4% | Oct 9, 2024 | A vulnerability in Cortex XSOAR allows the disclosure of incident data to users who do not have the privilege to view th... |
| CVE-2024-9469 | MEDIUM | 5.5 | 0.2% | Oct 9, 2024 | A problem with a detection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices enables a user with W... |
| CVE-2024-9468 | HIGH | 7.5 | 0.4% | Oct 9, 2024 | A memory corruption vulnerability in Palo Alto Networks PAN-OS software allows an unauthenticated attacker to crash PAN-... |
| CVE-2024-9467 | MEDIUM | 6.1 | 0.6% | Oct 9, 2024 | A reflected XSS vulnerability in Palo Alto Networks Expedition enables execution of malicious JavaScript in the context ... |
| CVE-2024-9466 | MEDIUM | 6.5 | 11.2% | Oct 9, 2024 | A cleartext storage of sensitive information vulnerability in Palo Alto Networks Expedition allows an authenticated atta... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now