2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-38953 | MEDIUM | 6.1 | 0.3% | Jul 1, 2024 | phpok 6.4.003 contains a Cross Site Scripting (XSS) vulnerability in the ok_f() method under the framework/api/upload_co... |
| CVE-2024-24749 | HIGH | 7.5 | 0.8% | Jul 1, 2024 | GeoServer is an open source server that allows users to share and edit geospatial data. Prior to versions 2.23.5 and 2.2... |
| CVE-2024-6425 | CRITICAL | 9.1 | 0.5% | Jul 1, 2024 | Incorrect Provision of Specified Functionality vulnerability in MESbook 20221021.03 version. An unauthenticated remote a... |
| CVE-2024-6424 | HIGH | 8.2 | 0.5% | Jul 1, 2024 | External server-side request vulnerability in MESbook 20221021.03 version, which could allow a remote, unauthenticated a... |
| CVE-2024-6387 | HIGH | 8.1 | 99.5% | Jul 1, 2024 | A security regression (CVE-2006-5051) was discovered in OpenSSH's server (sshd). There is a race condition which can lea... |
| CVE-2024-4007 | HIGH | 8.8 | 1.5% | Jul 1, 2024 | Default credential in install package in ABB ASPECT; NEXUS Series; MATRIX Series version 3.07 allows attacker to login t... |
| CVE-2024-39853 | MEDIUM | 6.5 | 0.5% | Jul 1, 2024 | adolph_dudu ratio-swiper 0.0.2 was discovered to contain a prototype pollution via the function parse. This vulnerabilit... |
| CVE-2024-39018 | MEDIUM | 6.3 | 0.4% | Jul 1, 2024 | harvey-woo cat5th/key-serializer v0.2.5 was discovered to contain a prototype pollution via the function "query". This v... |
| CVE-2024-39017 | CRITICAL | 9.8 | 0.7% | Jul 1, 2024 | agreejs shared v0.0.1 was discovered to contain a prototype pollution via the function mergeInternalComponents. This vul... |
| CVE-2024-39016 | HIGH | 8.1 | 0.6% | Jul 1, 2024 | che3vinci c3/utils-1 1.0.131 was discovered to contain a prototype pollution via the function assign. This vulnerability... |
| CVE-2024-39015 | CRITICAL | 9.8 | 0.7% | Jul 1, 2024 | cafebazaar hod v0.4.14 was discovered to contain a prototype pollution via the function request. This vulnerability allo... |
| CVE-2024-39014 | CRITICAL | 9.8 | 0.7% | Jul 1, 2024 | ahilfoley cahil/utils v2.3.2 was discovered to contain a prototype pollution via the function set. This vulnerability al... |
| CVE-2024-39013 | CRITICAL | 9.8 | 0.8% | Jul 1, 2024 | 2o3t-utility v0.1.2 was discovered to contain a prototype pollution via the function extend. This vulnerability allows a... |
| CVE-2024-39008 | CRITICAL | 10 | 0.9% | Jul 1, 2024 | robinweser fast-loops v1.1.3 was discovered to contain a prototype pollution via the function objectMergeDeep. This vuln... |
| CVE-2024-39003 | HIGH | 7.3 | 0.5% | Jul 1, 2024 | amoyjs amoy common v1.0.10 was discovered to contain a prototype pollution via the function setValue. This vulnerability... |
| CVE-2024-39002 | MEDIUM | 6.3 | 0.5% | Jul 1, 2024 | rjrodger jsonic-next v2.12.1 was discovered to contain a prototype pollution via the function util.clone. This vulnerabi... |
| CVE-2024-39001 | MEDIUM | 6.3 | 0.8% | Jul 1, 2024 | ag-grid-enterprise v31.3.2 was discovered to contain a prototype pollution via the component _ModuleSupport.jsonApply. T... |
| CVE-2024-39000 | MEDIUM | 6.5 | 0.4% | Jul 1, 2024 | adolph_dudu ratio-swiper v0.0.2 was discovered to contain a prototype pollution via the function parse. This vulnerabili... |
| CVE-2024-38999 | CRITICAL | 10 | 0.7% | Jul 1, 2024 | jrburke requirejs v2.3.6 was discovered to contain a prototype pollution via the function s.contexts._.configure. This v... |
| CVE-2024-38998 | — | — | — | Jul 1, 2024 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2024-38997 | MEDIUM | 6.5 | 0.5% | Jul 1, 2024 | adolph_dudu ratio-swiper v0.0.2 was discovered to contain a prototype pollution via the function extendDefaults. This vu... |
| CVE-2024-38996 | CRITICAL | 9.8 | 1.2% | Jul 1, 2024 | ag-grid-community v31.3.2 and ag-grid-enterprise v31.3.2 were discovered to contain a prototype pollution via the _.merg... |
| CVE-2024-38994 | HIGH | 7.3 | 0.5% | Jul 1, 2024 | amoyjs amoy common v1.0.10 was discovered to contain a prototype pollution via the function extend. This vulnerability a... |
| CVE-2024-38993 | CRITICAL | 9.8 | 0.9% | Jul 1, 2024 | rjrodger jsonic-next v2.12.1 was discovered to contain a prototype pollution via the function empty. This vulnerability ... |
| CVE-2024-38992 | HIGH | 8.8 | 0.8% | Jul 1, 2024 | airvertco frappejs v0.0.11 was discovered to contain a prototype pollution via the function registerView. This vulnerabi... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now