2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-37084 | HIGH | 8.8 | 35.2% | Jul 25, 2024 | In Spring Cloud Data Flow versions prior to 2.11.4, a malicious user who has access to the Skipper server api can use a... |
| CVE-2024-41707 | MEDIUM | 5.4 | 0.3% | Jul 25, 2024 | An issue was discovered in Archer Platform 6 before 2024.06. Authenticated users can achieve HTML content injection. A r... |
| CVE-2024-41706 | MEDIUM | 5.4 | 0.3% | Jul 25, 2024 | A stored XSS issue was discovered in Archer Platform 6 before version 2024.06. A remote authenticated malicious Archer u... |
| CVE-2024-41705 | MEDIUM | 5.4 | 0.3% | Jul 25, 2024 | A stored XSS issue was discovered in Archer Platform 6.8 before 2024.06. A remote authenticated malicious Archer user co... |
| CVE-2024-6972 | MEDIUM | 6.5 | 0.2% | Jul 25, 2024 | In affected versions of Octopus Server under certain circumstances it is possible for sensitive variables to be printed ... |
| CVE-2024-4811 | LOW | 2.2 | 0.2% | Jul 25, 2024 | In affected versions of Octopus Server under certain conditions, a user with specific role assignments can access restri... |
| CVE-2024-7057 | MEDIUM | 4.3 | 0.4% | Jul 25, 2024 | An information disclosure vulnerability in GitLab CE/EE affecting all versions starting from 16.7 prior to 17.0.5, start... |
| CVE-2024-7047 | MEDIUM | 5.4 | 0.3% | Jul 25, 2024 | A cross site scripting vulnerability exists in GitLab CE/EE affecting all versions from 16.6 prior to 17.0.5, 17.1 prior... |
| CVE-2024-7091 | MEDIUM | 5 | 0.3% | Jul 24, 2024 | An issue was discovered in GitLab CE/EE affecting all versions starting from 15.6 prior to 17.0.5, starting from 17.1 pr... |
| CVE-2024-7060 | MEDIUM | 6.5 | 0.3% | Jul 24, 2024 | An information disclosure vulnerability in GitLab CE/EE in project/group exports affecting all versions from 15.4 prior ... |
| CVE-2024-5067 | MEDIUM | 4.9 | 0.5% | Jul 24, 2024 | An issue was discovered in GitLab EE affecting all versions starting from 16.11 prior to 17.0.5, starting from 17.1 prio... |
| CVE-2024-0231 | LOW | 2.7 | 0.3% | Jul 24, 2024 | A resource misdirection vulnerability in GitLab CE/EE versions 12.0 prior to 17.0.5, 17.1 prior to 17.1.3, and 17.2 prio... |
| CVE-2024-7081 | CRITICAL | 9.8 | 0.6% | Jul 24, 2024 | A vulnerability was found in itsourcecode Tailoring Management System 1.0. It has been rated as critical. Affected by th... |
| CVE-2024-41466 | HIGH | 7.5 | 0.6% | Jul 24, 2024 | Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the page parameter at i... |
| CVE-2024-41465 | HIGH | 7.5 | 0.6% | Jul 24, 2024 | Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the funcpara1 parameter... |
| CVE-2024-41464 | HIGH | 7.5 | 0.6% | Jul 24, 2024 | Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the mitInterface parame... |
| CVE-2024-41463 | HIGH | 7.5 | 0.5% | Jul 24, 2024 | Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the entrys parameter at... |
| CVE-2024-41462 | HIGH | 7.5 | 0.6% | Jul 24, 2024 | Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the page parameter at i... |
| CVE-2024-41461 | CRITICAL | 9.8 | 0.6% | Jul 24, 2024 | Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the list1 parameter at ... |
| CVE-2024-41460 | CRITICAL | 9.8 | 0.6% | Jul 24, 2024 | Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the entrys parameter at... |
| CVE-2024-41459 | CRITICAL | 9.8 | 0.6% | Jul 24, 2024 | Tenda FH1201 v1.2.0.14 was discovered to contain a stack-based buffer overflow vulnerability via the PPPOEPassword param... |
| CVE-2024-41136 | HIGH | 8.8 | 0.9% | Jul 24, 2024 | An authenticated command injection vulnerability exists in the HPE Aruba Networking EdgeConnect SD-WAN gateways Command ... |
| CVE-2024-7080 | HIGH | 7.5 | 1.0% | Jul 24, 2024 | A vulnerability was found in SourceCodester Insurance Management System 1.0. It has been declared as problematic. Affect... |
| CVE-2024-41551 | CRITICAL | 9.8 | 0.4% | Jul 24, 2024 | CampCodes Supplier Management System v1.0 is vulnerable to SQL injection via Supply_Management_System/admin/view_order_i... |
| CVE-2024-41550 | HIGH | 7.2 | 0.5% | Jul 24, 2024 | CampCodes Supplier Management System v1.0 is vulnerable to SQL injection via Supply_Management_System/admin/view_invoice... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now