2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-25076MEDIUM6.8An issue was discovered on Renesas SmartBond DA14691, DA14695, DA14697, and DA14699 devices. The bootrom function respon...
CVE-2024-6649MEDIUM6.5A vulnerability has been found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0 and classified as pro...
CVE-2024-6235HIGH8.8Sensitive information disclosure in NetScaler Console
CVE-2024-5913MEDIUM6.8An improper input validation vulnerability in Palo Alto Networks PAN-OS software enables an attacker with the ability to...
CVE-2024-5912MEDIUM6.8An improper file signature check in Palo Alto Networks Cortex XDR agent may allow an attacker to bypass the Cortex XDR a...
CVE-2024-5911MEDIUM4.9An arbitrary file upload vulnerability in Palo Alto Networks Panorama software enables an authenticated read-write admin...
CVE-2024-5910CRITICAL9.8Missing authentication for a critical function in Palo Alto Networks Expedition can lead to an Expedition admin account ...
CVE-2024-5492MEDIUM6.1Open redirect vulnerability allows a remote unauthenticated attacker to redirect users to arbitrary websites in NetScale...
CVE-2024-5491HIGH7.5Denial of Service in NetScaler ADC and NetScaler Gateway in NetScaler
CVE-2024-37147MEDIUM4.3GLPI is an open-source asset and IT management software package that provides ITIL Service Desk features, licenses track...
CVE-2024-32469HIGH7.1Decidim is a participatory democracy framework. The pagination feature used in searches and filters is subject to potent...
CVE-2024-27095MEDIUM4.8Decidim is a participatory democracy framework. The admin panel is subject to potential XSS attach in case the attacker ...
CVE-2024-27090MEDIUM5.3Decidim is a participatory democracy framework, written in Ruby on Rails, originally developed for the Barcelona City go...
CVE-2024-6647MEDIUM5.1** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical has been found in Croogo up to 4.0.7. This affect...
CVE-2024-6646MEDIUM6.9A vulnerability was found in Netgear WN604 up to 20240710. It has been rated as problematic. Affected by this issue is s...
CVE-2024-6630Rejected reason: **REJECT** This CVE ID was issued in error and is a duplicate. Please use CVE-2024-6500 instead.
CVE-2024-37770CRITICAL9.114Finger v1.1 was discovered to contain a remote command execution (RCE) vulnerability in the fingerprint function. This...
CVE-2024-37504MEDIUM5.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Ninja Team FileBird Document Library.This is...
CVE-2024-37498MEDIUM5.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pauple Table & Contact Form 7 Database – Tab...
CVE-2024-37270MEDIUM5.3Insertion of Sensitive Information into Log File vulnerability in TrustedLogin TrustedLogin Vendor.This issue affects Tr...
CVE-2024-37205MEDIUM5.3Insertion of Sensitive Information into Log File vulnerability in SERVIT Software Solutions.This issue affects affiliate...
CVE-2024-37115HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Automattic Newspack Blocks.This issue affect...
CVE-2024-37113CRITICAL9.8Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Membership Software WishList Member X.This i...
CVE-2024-37110HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Membership Software WishList Member X.This i...
CVE-2024-32759HIGH7.7Under certain circumstances the Software House C●CURE 9000 installer will utilize weak credentials.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now