2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-14008 | HIGH | 7.2 | 2.4% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.3.2 contain a remote command execution vulnerability in the WinRM Configuration Wizar... |
| CVE-2024-14005 | HIGH | 8.8 | 4.0% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.2 contain a command injection vulnerability in the Docker Wizard. Insufficient valida... |
| CVE-2024-14004 | HIGH | 8.8 | 1.1% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.2 contain a privilege escalation vulnerability related to NagVis configuration handli... |
| CVE-2024-13995 | HIGH | 8.8 | 1.3% | Oct 30, 2025 | Nagios XI versions prior to 2024R1.1.2 may (confirmed in 2024R1.1 and 2024R1.1.1) disclose sensitive user account inform... |
| CVE-2024-14012 | HIGH | 7.3 | 0.1% | Oct 29, 2025 | Potential privilege escalation issue in Revenera InstallShield version 2023 R1 running a renamed Setup.exe on Windows. W... |
| CVE-2024-58274 | HIGH | 8.3 | 19.1% | Oct 22, 2025 | Hikvision CSMP (Comprehensive Security Management Platform) iSecure Center through 2024-08-01 allows execution of a comm... |
| CVE-2024-55568 | HIGH | 7.5 | 0.5% | Oct 20, 2025 | An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 128... |
| CVE-2024-56143 | HIGH | 8.2 | 0.4% | Oct 16, 2025 | Strapi is an open-source headless content management system. In versions from 5.0.0 to before 5.5.2, the lookup operator... |
| CVE-2024-13991 | HIGH | 8.7 | 0.5% | Oct 15, 2025 | Huijietong Cloud Video Platform contains a path traversal vulnerability that allows an unauthenticated attacker can supp... |
| CVE-2024-50571 | HIGH | 7.2 | 0.5% | Oct 14, 2025 | A heap-based buffer overflow vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.2, FortiAnalyzer 7.4.0 through 7.... |
| CVE-2024-48891 | HIGH | 7 | 0.5% | Oct 14, 2025 | An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability [CWE-78] in ... |
| CVE-2024-56804 | HIGH | 8.8 | 0.3% | Oct 3, 2025 | An SQL injection vulnerability has been reported to affect Video Station. If a remote attacker gains a user account, the... |
| CVE-2024-58267 | HIGH | 8 | 0.2% | Oct 2, 2025 | A vulnerability has been identified within Rancher Manager whereby the SAML authentication from the Rancher CLI tool is... |
| CVE-2024-58260 | HIGH | 7.6 | 0.5% | Oct 2, 2025 | A vulnerability has been identified within Rancher Manager where a missing server-side validation on the `.username` fie... |
| CVE-2024-55017 | HIGH | 7.5 | 0.3% | Sep 30, 2025 | Account Takeover in Corezoid 6.6.0 in the OAuth2 implementation via an open redirect in the redirect_uri parameter allow... |
| CVE-2024-57412 | HIGH | 7.5 | 0.3% | Sep 29, 2025 | An issue in SunOS Omnios v5.11 allows attackers to cause a Denial of Service (DoS) via repeatedly sending crafted TCP pa... |
| CVE-2024-43192 | HIGH | 8.8 | 0.2% | Sep 27, 2025 | IBM Storage TS4500 Library 1.11.0.0 and 2.11.0.0 is vulnerable to cross-site request forgery which could allow an attack... |
| CVE-2024-48014 | HIGH | 7.5 | 0.3% | Sep 25, 2025 | Dell BSAFE Micro Edition Suite, versions prior to 5.0.2.3 contain an Out-of-bounds Write vulnerability. An unauthenticat... |
| CVE-2024-48851 | HIGH | 7.5 | 0.5% | Sep 18, 2025 | Improper Validation of Specified Type of Input vulnerability in ABB FLXEON.A remote code execution is possible due to an... |
| CVE-2024-48842 | HIGH | 7.3 | 0.2% | Sep 17, 2025 | Use of Hard-coded Credentials vulnerability in ABB FLXEON.This issue affects FLXEON: through 9.3.5 and newer versions |
| CVE-2024-13174 | HIGH | 8.6 | 0.3% | Sep 16, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in E1 Informatics Web... |
| CVE-2024-12913 | HIGH | 8.8 | 0.2% | Sep 16, 2025 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Megatek Communicat... |
| CVE-2024-12367 | HIGH | 8.6 | 0.3% | Sep 16, 2025 | Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Vegagrup Software Vega Maste... |
| CVE-2024-45432 | HIGH | 7.5 | 0.7% | Sep 12, 2025 | OpenSynergy BlueSDK (aka Blue SDK) through 6.x mishandles a function call. The specific flaw exists within the BlueSDK B... |
| CVE-2024-45671 | HIGH | 7.5 | 0.2% | Sep 10, 2025 | IBM Security Verify Information Queue 10.0.5, 10.0.6, 10.0.7, and 10.0.8 uses weaker than expected cryptographic algor... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now