2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-40738 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2024-40737 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2024-40736 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2024-40735 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2024-40734 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2024-40733 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2024-40732 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2024-40731 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2024-40730 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2024-40729 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2024-40728 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2024-40727 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2024-40726 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2024-39698 | HIGH | 7.5 | 0.3% | Jul 9, 2024 | electron-updater allows for automatic updates for Electron apps. The file `packages/electron-updater/src/windowsExecutab... |
| CVE-2024-38972 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | A cross-site scripting (XSS) vulnerability in netbox v4.0.3 allows attackers to execute arbitrary web scripts or HTML vi... |
| CVE-2024-38971 | MEDIUM | 5.4 | 0.3% | Jul 9, 2024 | vaeThink 1.0.2 is vulnerable to stored Cross Site Scripting (XSS) in the system backend. |
| CVE-2024-38970 | MEDIUM | 4.9 | 0.4% | Jul 9, 2024 | vaeThink 1.0.2 is vulnerable to Information Disclosure via the system backend,access management administrator function. |
| CVE-2024-31957 | HIGH | 7.5 | 0.3% | Jul 9, 2024 | A vulnerability was discovered in Samsung Mobile Processors Exynos 2200 and Exynos 2400 where they lack a check for the ... |
| CVE-2024-28067 | LOW | 3.7 | 0.3% | Jul 9, 2024 | A vulnerability in Samsung Exynos Modem 5300 allows a Man-in-the-Middle (MITM) attacker to downgrade the security mode o... |
| CVE-2024-27362 | HIGH | 7.5 | 0.3% | Jul 9, 2024 | A vulnerability was discovered in Samsung Mobile Processors Exynos 1280, Exynos 2200, Exynos 1330, Exynos 1380, and Exyn... |
| CVE-2024-27360 | HIGH | 7.5 | 0.4% | Jul 9, 2024 | A vulnerability was discovered in Samsung Mobile Processors Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 12... |
| CVE-2024-27183 | MEDIUM | 6.1 | 0.3% | Jul 9, 2024 | XSS vulnerability in DJ-HelpfulArticles component for Joomla. |
| CVE-2024-6237 | MEDIUM | 6.5 | 0.9% | Jul 9, 2024 | A flaw was found in the 389 Directory Server. This flaw allows an unauthenticated user to cause a systematic server cras... |
| CVE-2024-5652 | MEDIUM | 5.5 | 0.4% | Jul 9, 2024 | In Docker Desktop on Windows before v4.31.0 allows a user in the docker-users group to cause a Windows Denial-of-Service... |
| CVE-2024-39171 | CRITICAL | 9.8 | 1.2% | Jul 9, 2024 | Directory Travel in PHPVibe v11.0.46 due to incomplete blacklist checksums and directory checks, which can lead to code ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now