2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-21433HIGH7Windows Print Spooler Elevation of Privilege Vulnerability
CVE-2024-21432HIGH7Windows Update Stack Elevation of Privilege Vulnerability
CVE-2024-21431MEDIUM6.7Hypervisor-Protected Code Integrity (HVCI) Security Feature Bypass Vulnerability
CVE-2024-21430MEDIUM6.4Windows USB Attached SCSI (UAS) Protocol Remote Code Execution Vulnerability
CVE-2024-21429MEDIUM6.8Windows USB Hub Driver Remote Code Execution Vulnerability
CVE-2024-21427HIGH7.5Windows Kerberos Security Feature Bypass Vulnerability
CVE-2024-21426HIGH7.8Microsoft SharePoint Server Remote Code Execution Vulnerability
CVE-2024-21421HIGH7.5Azure SDK Spoofing Vulnerability
CVE-2024-21419MEDIUM5.4Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
CVE-2024-21418HIGH7.8Software for Open Networking in the Cloud (SONiC) Elevation of Privilege Vulnerability
CVE-2024-21411HIGH8.8Skype for Consumer Remote Code Execution Vulnerability
CVE-2024-21408MEDIUM5.5Windows Hyper-V Denial of Service Vulnerability
CVE-2024-21407HIGH8.1Windows Hyper-V Remote Code Execution Vulnerability
CVE-2024-21400CRITICAL9Microsoft Azure Kubernetes Service Confidential Container Elevation of Privilege Vulnerability
CVE-2024-21392HIGH7.5.NET and Visual Studio Denial of Service Vulnerability
CVE-2024-21390HIGH7.1Microsoft Authenticator Elevation of Privilege Vulnerability
CVE-2024-21334CRITICAL9.8Open Management Infrastructure (OMI) Remote Code Execution Vulnerability
CVE-2024-21330HIGH7.8Open Management Infrastructure (OMI) Elevation of Privilege Vulnerability
CVE-2024-20671MEDIUM5.5Microsoft Defender Security Feature Bypass Vulnerability
CVE-2024-27758HIGH8.4In RPyC before 6.0.0, when a server exposes a method that calls the attribute named __array__ for a client-provided netr...
CVE-2024-1529MEDIUM6.1Vulnerability in CMS Made Simple 2.2.14, which does not sufficiently encode user-controlled input, resulting in a Cross-...
CVE-2024-1528MEDIUM6.1CMS Made Simple version 2.2.14, does not sufficiently encode user-controlled input, resulting in a Cross-Site Scripting ...
CVE-2024-1527HIGH8.8Unrestricted file upload vulnerability in CMS Made Simple, affecting version 2.2.14. This vulnerability allows an authen...
CVE-2024-1304MEDIUM6.1Cross-site scripting vulnerability in Badger Meter Monitool that affects versions up to 4.6.3 and earlier. This vulnerab...
CVE-2024-1303MEDIUM6.5Incorrectly limiting the path to a restricted directory vulnerability in Badger Meter Monitool that affects versions up ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now