2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-26184 | MEDIUM | 6.8 | 1.0% | Jul 9, 2024 | Secure Boot Security Feature Bypass Vulnerability |
| CVE-2024-21731 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | Improper handling of input could lead to an XSS vector in the StringHelper::truncate method. |
| CVE-2024-21730 | MEDIUM | 5.4 | 0.4% | Jul 9, 2024 | The fancyselect list field layout does not correctly escape inputs, leading to a self-XSS vector. |
| CVE-2024-21729 | MEDIUM | 6.1 | 0.4% | Jul 9, 2024 | Inadequate input validation leads to XSS vulnerabilities in the accessiblemedia field. |
| CVE-2024-21449 | HIGH | 8.8 | 1.6% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-21428 | HIGH | 8.8 | 1.8% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-21425 | HIGH | 8.8 | 1.6% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-21415 | HIGH | 8.8 | 1.8% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-21414 | HIGH | 8.8 | 1.9% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-21398 | HIGH | 8.8 | 1.9% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-21373 | HIGH | 8.8 | 1.8% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-21335 | HIGH | 8.8 | 1.8% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-21333 | HIGH | 8.8 | 1.8% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-21332 | HIGH | 8.8 | 1.8% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-21331 | HIGH | 8.8 | 1.6% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-21317 | HIGH | 8.8 | 1.6% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-21308 | HIGH | 8.8 | 1.6% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-21303 | HIGH | 8.8 | 1.5% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-20701 | HIGH | 8.8 | 1.6% | Jul 9, 2024 | SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
| CVE-2024-33509 | MEDIUM | 4.8 | 0.2% | Jul 9, 2024 | An improper certificate validation vulnerability [CWE-295] in FortiWeb 7.2.0 through 7.2.1, 7.0 all versions, 6.4 all ve... |
| CVE-2024-27785 | MEDIUM | 6.5 | 0.4% | Jul 9, 2024 | An improper neutralization of formula elements in a CSV File [CWE-1236] vulnerability in Fortinet FortiAIOps 2.0.0 may a... |
| CVE-2024-27784 | MEDIUM | 6.5 | 0.8% | Jul 9, 2024 | Multiple Exposure of sensitive information to an unauthorized actor weaknesses [CWE-200] vulnerability in Fortinet Forti... |
| CVE-2024-27783 | HIGH | 8.8 | 0.3% | Jul 9, 2024 | Multiple cross-site request forgery (CSRF) weaknesses [CWE-352] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an ... |
| CVE-2024-27782 | CRITICAL | 9.8 | 0.7% | Jul 9, 2024 | Multiple insufficient session expiration weaknesses [CWE-613] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an at... |
| CVE-2024-26015 | MEDIUM | 4.7 | 0.5% | Jul 9, 2024 | An incorrect parsing of numbers with different radices vulnerability [CWE-1389] in FortiProxy version 7.4.3 and below, v... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now