2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-29177 | LOW | 2.7 | 0.3% | Jun 26, 2024 | Dell PowerProtect DD, versions prior to 8.0, LTS 7.13.1.0, LTS 7.10.1.30, LTS 7.7.5.40 contain a disclosure of temporary... |
| CVE-2024-29176 | HIGH | 8.8 | 0.6% | Jun 26, 2024 | Dell PowerProtect DD, version(s) 8.0, 7.13.1.0, 7.10.1.30, 7.7.5.40, contain(s) an Out-of-bounds Write vulnerability. A ... |
| CVE-2024-29175 | MEDIUM | 5.9 | 0.3% | Jun 26, 2024 | Dell PowerProtect Data Domain, versions prior to 7.13.0.0, LTS 7.7.5.40, LTS 7.10.1.30 contain an weak cryptographic alg... |
| CVE-2024-29174 | MEDIUM | 4.4 | 0.2% | Jun 26, 2024 | Dell Data Domain, versions prior to 7.13.0.0, LTS 7.7.5.30, LTS 7.10.1.20 contain an SQL Injection vulnerability. A loca... |
| CVE-2024-29173 | MEDIUM | 4.9 | 0.3% | Jun 26, 2024 | Dell PowerProtect DD, versions prior to 8.0, LTS 7.13.1.0, LTS 7.10.1.30, LTS 7.7.5.40 contain a Server-Side Request For... |
| CVE-2024-28973 | MEDIUM | 4.8 | 0.2% | Jun 26, 2024 | Dell PowerProtect DD, versions prior to 8.0, LTS 7.13.1.0, LTS 7.10.1.30, LTS 7.7.5.40 contain a Stored Cross-Site Scrip... |
| CVE-2024-5173 | MEDIUM | 5.4 | 0.3% | Jun 26, 2024 | The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Vi... |
| CVE-2024-24764 | MEDIUM | 4.8 | 0.3% | Jun 26, 2024 | October is a self-hosted CMS platform based on the Laravel PHP Framework. This issue affects authenticated administrator... |
| CVE-2024-5460 | HIGH | 8.1 | 0.5% | Jun 26, 2024 | A vulnerability in the default configuration of the Simple Network Management Protocol (SNMP) feature of Brocade Fabric... |
| CVE-2024-4869 | MEDIUM | 6.1 | 0.4% | Jun 26, 2024 | The WP Cookie Consent ( for GDPR, CCPA & ePrivacy ) plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi... |
| CVE-2024-38526 | HIGH | 7.2 | 3.8% | Jun 26, 2024 | pdoc provides API Documentation for Python Projects. Documentation generated with `pdoc --math` linked to JavaScript fil... |
| CVE-2024-38364 | LOW | 2.6 | 0.4% | Jun 26, 2024 | DSpace is an open source software is a turnkey repository application used by more than 2,000 organizations and institut... |
| CVE-2024-29954 | MEDIUM | 5.5 | 0.1% | Jun 26, 2024 | A vulnerability in a password management API in Brocade Fabric OS versions before v9.2.1, v9.2.0b, v9.1.1d, and v8.2.3e ... |
| CVE-2024-29953 | MEDIUM | 4.3 | 0.3% | Jun 26, 2024 | A vulnerability in the web interface in Brocade Fabric OS before v9.2.1, v9.2.0b, and v9.1.1d prints encoded session pas... |
| CVE-2024-6060 | CRITICAL | 9.3 | 0.2% | Jun 25, 2024 | An information disclosure vulnerability in Phloc Webscopes 7.0.0 allows local attackers with access to the log files to ... |
| CVE-2024-37742 | HIGH | 8.2 | 0.5% | Jun 25, 2024 | Insecure Access Control in Safe Exam Browser (SEB) = 3.5.0 on Windows. The vulnerability allows an attacker to share cli... |
| CVE-2024-35527 | CRITICAL | 9.8 | 0.7% | Jun 25, 2024 | An arbitrary file upload vulnerability in /fileupload/upload.cfm in Daemon PTY Limited FarCry Core framework before 7.2.... |
| CVE-2024-30931 | MEDIUM | 6.1 | 0.3% | Jun 25, 2024 | Stored Cross Site Scripting vulnerability in Emby Media Server Emby Media Server 4.8.3.0 allows a remote attacker to esc... |
| CVE-2024-30112 | MEDIUM | 5.4 | 0.3% | Jun 25, 2024 | HCL Connections is vulnerable to a cross-site scripting attack where an attacker may leverage this issue to execute arbi... |
| CVE-2024-5019 | HIGH | 7.5 | 0.8% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Arbitrary File Read issue exists in Wug.UI.Areas... |
| CVE-2024-5018 | HIGH | 7.5 | 0.8% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, an unauthenticated Path Traversal vulnerability exists Wug.UI.Areas.W... |
| CVE-2024-5017 | MEDIUM | 6.5 | 1.6% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, a path traversal vulnerability exists. A specially crafted unauthenti... |
| CVE-2024-5016 | HIGH | 7.2 | 22.4% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, Distributed Edition installations can be exploited by using a deseria... |
| CVE-2024-5015 | HIGH | 8.8 | 0.5% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, an authenticated SSRF vulnerability in Wug.UI.Areas.Wug.Controllers.S... |
| CVE-2024-5014 | MEDIUM | 6.5 | 0.5% | Jun 25, 2024 | In WhatsUp Gold versions released before 2023.1.3, a Server Side Request Forgery vulnerability exists in the GetASPRepor... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now