2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-2743 | CRITICAL | 9.1 | 0.4% | Sep 12, 2024 | An issue was discovered in GitLab-EE starting with version 13.3 before 17.1.7, 17.2 before 17.2.5, and 17.3 before 17.3.... |
| CVE-2024-6702 | MEDIUM | 4.8 | 0.2% | Sep 12, 2024 | Pega Platform versions 8.1 to Infinity 24.1.2 are affected by an HTML Injection issue with Stage. |
| CVE-2024-6701 | MEDIUM | 4.8 | 0.2% | Sep 12, 2024 | Pega Platform versions 8.1 to Infinity 24.1.2 are affected by an XSS issue with case type. |
| CVE-2024-6700 | MEDIUM | 4.8 | 0.2% | Sep 12, 2024 | Pega Platform versions 8.1 to Infinity 24.1.2 are affected by an XSS issue with App name. |
| CVE-2024-6658 | MEDIUM | 6.8 | 0.6% | Sep 12, 2024 | Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows OS Command Injection.This is... |
| CVE-2024-6510 | HIGH | 7.8 | 0.1% | Sep 12, 2024 | Local Privilege Escalation in AVG Internet Security v24 on Windows allows a local unprivileged user to escalate privileg... |
| CVE-2024-45826 | HIGH | 8.8 | 11.2% | Sep 12, 2024 | CVE-2024-45826 IMPACT Due to improper input validation, a path traversal and remote code execution vulnerability exists ... |
| CVE-2024-45825 | HIGH | 7.5 | 0.5% | Sep 12, 2024 | CVE-2024-45825 IMPACT A denial-of-service vulnerability exists in the affected products. The vulnerability occurs when a... |
| CVE-2024-45823 | CRITICAL | 9.8 | 0.5% | Sep 12, 2024 | CVE-2024-45823 IMPACT An authentication bypass vulnerability exists in the affected product. The vulnerability exists... |
| CVE-2024-42484 | MEDIUM | 6.5 | 0.4% | Sep 12, 2024 | ESP-NOW Component provides a connectionless Wi-Fi communication protocol. An Out-of-Bound (OOB) vulnerability was discov... |
| CVE-2024-42483 | MEDIUM | 6.5 | 0.3% | Sep 12, 2024 | ESP-NOW Component provides a connectionless Wi-Fi communication protocol. An replay attacks vulnerability was discovered... |
| CVE-2024-45824 | CRITICAL | 9.8 | 1.3% | Sep 12, 2024 | CVE-2024-45824 IMPACT A remote code vulnerability exists in the affected products. The vulnerability occurs when chai... |
| CVE-2024-40457 | CRITICAL | 9.1 | 0.7% | Sep 12, 2024 | No-IP Dynamic Update Client (DUC) v3.x uses cleartext credentials that may occur on a command line or in a file. NOTE: t... |
| CVE-2024-28991 | HIGH | 8 | 3.1% | Sep 12, 2024 | SolarWinds Access Rights Manager (ARM) was found to be susceptible to a remote code execution vulnerability. If exploite... |
| CVE-2024-28990 | HIGH | 8.8 | 0.5% | Sep 12, 2024 | SolarWinds Access Rights Manager (ARM) was found to contain a hard-coded credential authentication bypass vulnerability.... |
| CVE-2024-45857 | HIGH | 7.8 | 0.2% | Sep 12, 2024 | Deserialization of untrusted data can occur in versions 2.4.0 or newer of the Cleanlab project, enabling a maliciously c... |
| CVE-2024-45856 | MEDIUM | 5.4 | 0.5% | Sep 12, 2024 | A cross-site scripting (XSS) vulnerability exists in all versions of the MindsDB platform, enabling the execution of a J... |
| CVE-2024-45855 | HIGH | 7.5 | 0.5% | Sep 12, 2024 | Deserialization of untrusted data can occur in versions 23.10.2.0 and newer of the MindsDB platform, enabling a maliciou... |
| CVE-2024-45854 | HIGH | 7.5 | 0.5% | Sep 12, 2024 | Deserialization of untrusted data can occur in versions 23.10.3.0 and newer of the MindsDB platform, enabling a maliciou... |
| CVE-2024-45853 | HIGH | 7.5 | 0.5% | Sep 12, 2024 | Deserialization of untrusted data can occur in versions 23.10.2.0 and newer of the MindsDB platform, enabling a maliciou... |
| CVE-2024-45852 | HIGH | 8.8 | 0.7% | Sep 12, 2024 | Deserialization of untrusted data can occur in versions 23.3.2.0 and newer of the MindsDB platform, enabling a malicious... |
| CVE-2024-45851 | HIGH | 8.8 | 0.9% | Sep 12, 2024 | An arbitrary code execution vulnerability exists in versions 23.10.5.0 up to 24.7.4.1 of the MindsDB platform, when the ... |
| CVE-2024-45850 | HIGH | 8.8 | 0.9% | Sep 12, 2024 | An arbitrary code execution vulnerability exists in versions 23.10.5.0 up to 24.7.4.1 of the MindsDB platform, when the ... |
| CVE-2024-45849 | HIGH | 8.8 | 0.9% | Sep 12, 2024 | An arbitrary code execution vulnerability exists in versions 23.10.5.0 up to 24.7.4.1 of the MindsDB platform, when the ... |
| CVE-2024-45848 | HIGH | 8.8 | 0.8% | Sep 12, 2024 | An arbitrary code execution vulnerability exists in versions 23.12.4.0 up to 24.7.4.1 of the MindsDB platform, when the ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now