2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-49348 | MEDIUM | 6.5 | 0.2% | Feb 5, 2025 | IBM Cloud Pak for Business Automation 18.0.0, 18.0.1, 18.0.2, 19.0.1, 19.0.2, 19.0.3, 20.0.1, 20.0.2, 20.0.3, 21.0.1, 21... |
| CVE-2024-3976 | MEDIUM | 6.5 | 0.5% | Feb 5, 2025 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 14.0 prior to 16.9.7, starting from 16... |
| CVE-2024-5528 | MEDIUM | 5.4 | 0.4% | Feb 5, 2025 | An issue was discovered in GitLab CE/EE affecting all versions prior to 16.11.6, starting from 17.0 prior to 17.0.4, and... |
| CVE-2024-6356 | MEDIUM | 4.4 | 0.2% | Feb 5, 2025 | An issue was discovered in GitLab EE affecting all versions starting from 16.0 prior to 17.0.6, starting from 17.1 prior... |
| CVE-2024-1539 | MEDIUM | 5.3 | 0.3% | Feb 5, 2025 | An issue has been discovered in GitLab EE affecting all versions starting from 15.2 prior to 16.9.7, starting from 16.10... |
| CVE-2024-13829 | MEDIUM | 5.3 | 0.4% | Feb 5, 2025 | The WordPress form builder plugin for contact forms, surveys and quizzes – Tripetto plugin for WordPress is vulnerable t... |
| CVE-2024-53966 | MEDIUM | 5.4 | 0.4% | Feb 5, 2025 | Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2024-53965 | MEDIUM | 5.4 | 0.4% | Feb 5, 2025 | Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerabilit... |
| CVE-2024-53964 | MEDIUM | 5.4 | 0.4% | Feb 5, 2025 | Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2024-53963 | MEDIUM | 5.4 | 0.4% | Feb 5, 2025 | Adobe Experience Manager versions 6.5.21 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerabilit... |
| CVE-2024-53962 | MEDIUM | 5.4 | 0.4% | Feb 5, 2025 | Adobe Experience Manager versions 6.5.21 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability t... |
| CVE-2024-8125 | MEDIUM | 5.4 | 0.3% | Feb 4, 2025 | Improper Validation of Specified Type of Input vulnerability in OpenText™ Content Management (Extended ECM) allows Param... |
| CVE-2024-53994 | MEDIUM | 4.3 | 0.3% | Feb 4, 2025 | Discourse is an open source platform for community discussion. In affected versions users who disable chat in preference... |
| CVE-2024-53851 | MEDIUM | 6.5 | 0.4% | Feb 4, 2025 | Discourse is an open source platform for community discussion. In affected versions the endpoint for generating inline o... |
| CVE-2024-53266 | MEDIUM | 5.4 | 0.3% | Feb 4, 2025 | Discourse is an open source platform for community discussion. In affected versions with some combinations of plugins, a... |
| CVE-2024-13722 | MEDIUM | 5.4 | 0.5% | Feb 4, 2025 | The "NagVis" component within Checkmk is vulnerable to reflected cross-site scripting. An attacker can craft a malicious... |
| CVE-2024-56328 | MEDIUM | 6.1 | 0.3% | Feb 4, 2025 | Discourse is an open source platform for community discussion. An attacker can execute arbitrary JavaScript on users' br... |
| CVE-2024-56197 | MEDIUM | 4.9 | 0.3% | Feb 4, 2025 | Discourse is an open source platform for community discussion. PM titles and metadata can be read by other users when th... |
| CVE-2024-45658 | MEDIUM | 5.3 | 0.4% | Feb 4, 2025 | IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 could allow a remote attacker to obtain sensiti... |
| CVE-2024-45657 | MEDIUM | 6.7 | 0.1% | Feb 4, 2025 | IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 could allow a local privileged user to perform ... |
| CVE-2024-40700 | MEDIUM | 6.1 | 0.3% | Feb 4, 2025 | IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 is vulnerable to cross-site scripting. This vul... |
| CVE-2024-35138 | MEDIUM | 6.5 | 0.2% | Feb 4, 2025 | IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 is vulnerable to cross-site request forgery whi... |
| CVE-2024-48019 | MEDIUM | 5.4 | 0.9% | Feb 4, 2025 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Files or Directories Accessible to Exter... |
| CVE-2024-45659 | MEDIUM | 5.3 | 0.3% | Feb 4, 2025 | IBM Security Verify Access Appliance and Container 10.0.0 through 10.0.8 could allow a remote attacker to obtain sensiti... |
| CVE-2024-11623 | MEDIUM | 4.8 | 0.3% | Feb 4, 2025 | Authentik project is vulnerable to Stored XSS attacks through uploading crafted SVG files that are used as application i... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now