2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-6678 | HIGH | 8.8 | 2.0% | Sep 12, 2024 | An issue was discovered in GitLab CE/EE affecting all versions starting from 8.14 prior to 17.1.7, starting from 17.2 pr... |
| CVE-2024-4472 | MEDIUM | 5.5 | 0.2% | Sep 12, 2024 | An issue was discovered in GitLab CE/EE affecting all versions starting from 16.5 prior to 17.1.7, starting from 17.2 pr... |
| CVE-2024-45383 | MEDIUM | 5 | 1.5% | Sep 12, 2024 | A mishandling of IRP requests vulnerability exists in the HDAudBus_DMA interface of Microsoft High Definition Audio Bus ... |
| CVE-2024-45303 | MEDIUM | 6.1 | 0.2% | Sep 12, 2024 | Discourse Calendar plugin adds the ability to create a dynamic calendar in the first post of a topic to Discourse. Rende... |
| CVE-2024-45182 | MEDIUM | 5.5 | 0.2% | Sep 12, 2024 | An issue was discovered in WibuKey64.sys in WIBU-SYSTEMS WibuKey before v6.70 and fixed in v.6.70 An improper bounds che... |
| CVE-2024-45181 | HIGH | 7.8 | 0.2% | Sep 12, 2024 | An issue was discovered in WibuKey64.sys in WIBU-SYSTEMS WibuKey before v6.70 and fixed in v.6.70. An improper bounds ch... |
| CVE-2024-36066 | LOW | 3.1 | 0.2% | Sep 12, 2024 | The CMP CLI client in KeyFactor EJBCA before 8.3.1 has only 6 octets of salt, and is thus not compliant with the securit... |
| CVE-2024-34336 | MEDIUM | 5.3 | 0.4% | Sep 12, 2024 | User enumeration vulnerability in ORDAT FOSS-Online before v2.24.01 allows attackers to determine if an account exists i... |
| CVE-2024-34335 | MEDIUM | 6.1 | 0.3% | Sep 12, 2024 | ORDAT FOSS-Online before version 2.24.01 was discovered to contain a reflected cross-site scripting (XSS) vulnerability ... |
| CVE-2024-34334 | HIGH | 7.5 | 0.5% | Sep 12, 2024 | ORDAT FOSS-Online before v2.24.01 was discovered to contain a SQL injection vulnerability via the forgot password functi... |
| CVE-2024-25270 | MEDIUM | 4.3 | 0.4% | Sep 12, 2024 | An issue in Mirapolis LMS 4.6.XX allows authenticated users to exploit an Insecure Direct Object Reference (IDOR) vulner... |
| CVE-2024-8696 | CRITICAL | 9.8 | 1.2% | Sep 12, 2024 | A remote code execution (RCE) vulnerability via crafted extension publisher-url/additional-urls could be abused by a mal... |
| CVE-2024-8695 | CRITICAL | 9.8 | 1.3% | Sep 12, 2024 | A remote code execution (RCE) vulnerability via crafted extension description/changelog could be abused by a malicious e... |
| CVE-2024-41629 | MEDIUM | 5.5 | 0.2% | Sep 12, 2024 | An issue in Texas Instruments Fusion Digital Power Designer v.7.10.1 allows a local attacker to obtain sensitive informa... |
| CVE-2024-8754 | HIGH | 8.1 | 0.4% | Sep 12, 2024 | An issue has been discovered in GitLab EE/CE affecting all versions from 16.9.7 prior to 17.1.7, 17.2 prior to 17.2.5, a... |
| CVE-2024-8640 | HIGH | 8.8 | 1.0% | Sep 12, 2024 | An issue has been discovered in GitLab EE affecting all versions starting from 16.11 prior to 17.1.7, from 17.2 prior to... |
| CVE-2024-8635 | MEDIUM | 6.5 | 0.6% | Sep 12, 2024 | A server-side request forgery issue has been discovered in GitLab EE affecting all versions starting from 16.8 prior to ... |
| CVE-2024-8631 | HIGH | 7.2 | 0.5% | Sep 12, 2024 | A privilege escalation issue has been discovered in GitLab EE affecting all versions starting from 16.6 prior to 17.1.7,... |
| CVE-2024-8124 | HIGH | 7.5 | 39.6% | Sep 12, 2024 | An issue was discovered in GitLab CE/EE affecting all versions starting from 16.4 prior to 17.1.7, starting from 17.2 pr... |
| CVE-2024-6840 | MEDIUM | 6.6 | 0.4% | Sep 12, 2024 | An improper authorization flaw exists in the Ansible Automation Controller. This flaw allows an attacker using the k8S A... |
| CVE-2024-6446 | LOW | 3.5 | 0.4% | Sep 12, 2024 | An issue has been discovered in GitLab affecting all versions starting from 17.1 to 17.1.7, 17.2 prior to 17.2.5 and 17.... |
| CVE-2024-6389 | MEDIUM | 4.3 | 0.4% | Sep 12, 2024 | An issue was discovered in GitLab-CE/EE affecting all versions starting with 17.0 before 17.1.7, 17.2 before 17.2.5, and... |
| CVE-2024-5435 | MEDIUM | 6.5 | 0.4% | Sep 12, 2024 | An issue has been discovered discovered in GitLab EE/CE affecting all versions starting from 15.10 before 17.1.7, all ve... |
| CVE-2024-4660 | HIGH | 7.5 | 0.5% | Sep 12, 2024 | An issue has been discovered in GitLab EE affecting all versions starting from 11.2 before 17.1.7, all versions starting... |
| CVE-2024-4612 | MEDIUM | 6.1 | 0.4% | Sep 12, 2024 | An issue has been discovered in GitLab EE affecting all versions starting from 12.9 before 17.1.7, 17.2 before 17.2.5, a... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now