2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-39557 | HIGH | 7.1 | 0.2% | Jul 10, 2024 | An Uncontrolled Resource Consumption vulnerability in the Layer 2 Address Learning Daemon (l2ald) of Juniper Network... |
| CVE-2024-39556 | HIGH | 7 | 0.1% | Jul 10, 2024 | A Stack-Based Buffer Overflow vulnerability in Juniper Networks Junos OS and Juniper Networks Junos OS Evolved may allow... |
| CVE-2024-39555 | HIGH | 8.7 | 0.5% | Jul 10, 2024 | An Improper Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (RPD) of Juniper Networks Ju... |
| CVE-2024-39554 | HIGH | 8.2 | 0.4% | Jul 10, 2024 | A Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') vulnerability the Routin... |
| CVE-2024-39518 | HIGH | 8.7 | 0.4% | Jul 10, 2024 | A Heap-based Buffer Overflow vulnerability in the telemetry sensor process (sensord) of Juniper Networks Junos OS on MX2... |
| CVE-2024-39517 | HIGH | 7.1 | 0.2% | Jul 10, 2024 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the Layer 2 Address Learning Daemon (l2ald) on ... |
| CVE-2024-39514 | HIGH | 7.1 | 0.2% | Jul 10, 2024 | An Improper Check or Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Ne... |
| CVE-2024-39513 | MEDIUM | 6.8 | 0.1% | Jul 10, 2024 | An Improper Input Validation vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved al... |
| CVE-2024-39512 | HIGH | 7 | 0.2% | Jul 10, 2024 | An Improper Physical Access Control vulnerability in the console port control of Juniper Networks Junos OS Evolved allow... |
| CVE-2024-39511 | MEDIUM | 6.8 | 0.1% | Jul 10, 2024 | An Improper Input Validation vulnerability in the 802.1X Authentication (dot1x) Daemon of Juniper Networks Junos OS allo... |
| CVE-2024-6664 | — | — | — | Jul 10, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2024-6663 | — | — | — | Jul 10, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2024-6286 | HIGH | 7.8 | 0.4% | Jul 10, 2024 | Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Citrix Workspace app for Windows |
| CVE-2024-6236 | HIGH | 7.5 | 0.7% | Jul 10, 2024 | Denial of Service in NetScaler Console (formerly NetScaler ADM), NetScaler Agent, and NetScaler SDX |
| CVE-2024-6151 | HIGH | 7.8 | 0.2% | Jul 10, 2024 | Local Privilege escalation allows a low-privileged user to gain SYSTEM privileges in Virtual Delivery Agent for Windows ... |
| CVE-2024-6150 | MEDIUM | 4.3 | 0.2% | Jul 10, 2024 | A non-admin user can cause short-term disruption in Target VM availability in Citrix Provisioning |
| CVE-2024-6149 | MEDIUM | 6.1 | 0.2% | Jul 10, 2024 | Redirection of users to a vulnerable URL in Citrix Workspace app for HTML5 |
| CVE-2024-6148 | HIGH | 8.8 | 0.4% | Jul 10, 2024 | Bypass of GACS Policy Configuration settings in Citrix Workspace app for HTML5 |
| CVE-2024-39693 | HIGH | 7.5 | 0.5% | Jul 10, 2024 | Next.js is a React framework. A Denial of Service (DoS) condition was identified in Next.js. Exploitation of the bug can... |
| CVE-2024-38354 | MEDIUM | 6.1 | 0.4% | Jul 10, 2024 | CodiMD allows realtime collaborative markdown notes on all platforms. The notebook feature of Hackmd.io permits the rend... |
| CVE-2024-38353 | MEDIUM | 5.3 | 1.2% | Jul 10, 2024 | CodiMD allows realtime collaborative markdown notes on all platforms. CodiMD before 2.5.4 is missing authentication and ... |
| CVE-2024-37310 | CRITICAL | 9 | 0.7% | Jul 10, 2024 | EVerest is an EV charging software stack. An integer overflow in the "v2g_incoming_v2gtp" function in the v2g_server.cpp... |
| CVE-2024-37149 | HIGH | 8.8 | 21.2% | Jul 10, 2024 | GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses track... |
| CVE-2024-37148 | HIGH | 8.1 | 20.4% | Jul 10, 2024 | GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses track... |
| CVE-2024-25077 | CRITICAL | 9.8 | 0.4% | Jul 10, 2024 | An issue was discovered on Renesas SmartBond DA14691, DA14695, DA14697, and DA14699 devices. The Nonce used for on-the-f... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now