2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-9186 | HIGH | 8.6 | 2.2% | Nov 14, 2024 | The Recover WooCommerce Cart Abandonment, Newsletter, Email Marketing, Marketing Automation By FunnelKit WordPress plugi... |
| CVE-2024-5082 | HIGH | 7.1 | 1.9% | Nov 14, 2024 | A Remote Code Execution vulnerability has been discovered in Sonatype Nexus Repository 2. This issue affects Nexus Rep... |
| CVE-2024-40408 | HIGH | 7.3 | 0.3% | Nov 13, 2024 | Cybele Software Thinfinity Workspace before v7.0.2.113 was discovered to contain an access control issue in the Create P... |
| CVE-2024-40407 | HIGH | 7.5 | 0.4% | Nov 13, 2024 | A full path disclosure in Cybele Software Thinfinity Workspace before v7.0.2.113 allows attackers to obtain the root pat... |
| CVE-2024-40405 | HIGH | 8.1 | 0.4% | Nov 13, 2024 | Incorrect access control in Cybele Software Thinfinity Workspace before v7.0.3.109 allows attackers to gain access to a ... |
| CVE-2024-50955 | HIGH | 7.5 | 0.4% | Nov 13, 2024 | An issue in how XINJE XD5E-24R and XL5E-16T v3.5.3b handles TCP protocol messages allows attackers to cause a Denial of ... |
| CVE-2024-52554 | HIGH | 8.8 | 0.5% | Nov 13, 2024 | Jenkins Shared Library Version Override Plugin 17.v786074c9fce7 and earlier declares folder-scoped library overrides as ... |
| CVE-2024-52553 | HIGH | 8.8 | 0.6% | Nov 13, 2024 | Jenkins OpenId Connect Authentication Plugin 4.418.vccc7061f5b_6d and earlier does not invalidate the previous session o... |
| CVE-2024-52552 | HIGH | 8 | 0.7% | Nov 13, 2024 | Jenkins Authorize Project Plugin 1.7.2 and earlier evaluates a string containing the job name with JavaScript on the Aut... |
| CVE-2024-52551 | HIGH | 8 | 0.6% | Nov 13, 2024 | Jenkins Pipeline: Declarative Plugin 2.2214.vb_b_34b_2ea_9b_83 and earlier does not check whether the main (Jenkinsfile)... |
| CVE-2024-52550 | HIGH | 8 | 0.4% | Nov 13, 2024 | Jenkins Pipeline: Groovy Plugin 3990.vd281dd77a_388 and earlier, except 3975.3977.v478dd9e956c3 does not check whether t... |
| CVE-2024-40885 | HIGH | 8.7 | 0.1% | Nov 13, 2024 | Use after free in the UEFI firmware of some Intel(R) Server M20NTP BIOS may allow a privileged user to potentially enabl... |
| CVE-2024-39766 | HIGH | 7.3 | 0.2% | Nov 13, 2024 | Improper neutralization of special elements used in SQL command in some Intel(R) Neural Compressor software before versi... |
| CVE-2024-39368 | HIGH | 8.6 | 0.3% | Nov 13, 2024 | Improper neutralization of special elements used in an SQL command ('SQL Injection') in some Intel(R) Neural Compressor ... |
| CVE-2024-38668 | HIGH | 7.8 | 0.2% | Nov 13, 2024 | Uncontrolled search path for some Intel(R) Quartus(R) Prime Standard Edition software for Windows before version 23.1.1 ... |
| CVE-2024-38665 | HIGH | 8.4 | 0.2% | Nov 13, 2024 | Out-of-bounds write in some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable escalation o... |
| CVE-2024-38383 | HIGH | 7.8 | 0.2% | Nov 13, 2024 | Uncontrolled search path for some Intel(R) Quartus(R) Prime Pro Edition software for Windows before version 24.2 may all... |
| CVE-2024-36488 | HIGH | 7.8 | 0.2% | Nov 13, 2024 | Improper Access Control in some Intel(R) DSA before version 24.3.26.8 may allow an authenticated user to potentially ena... |
| CVE-2024-36294 | HIGH | 7.8 | 0.1% | Nov 13, 2024 | Insecure inherited permissions for some Intel(R) DSA software before version 24.3.26.8 may allow an authenticated user t... |
| CVE-2024-36282 | HIGH | 8.2 | 0.2% | Nov 13, 2024 | Improper input validation in the Intel(R) Server Board S2600ST Family BIOS and Firmware Update software all versions may... |
| CVE-2024-36276 | HIGH | 7.8 | 0.1% | Nov 13, 2024 | Insecure inherited permissions for some Intel(R) CIP software before version 2.4.10852 may allow an authenticated user t... |
| CVE-2024-36253 | HIGH | 7.8 | 0.2% | Nov 13, 2024 | Uncontrolled search path in the Intel(R) SDP Tool for Windows software all version may allow an authenticated user to po... |
| CVE-2024-36242 | HIGH | 8.8 | 0.2% | Nov 13, 2024 | Protection mechanism failure in the SPP for some Intel(R) Processors may allow an authenticated user to potentially enab... |
| CVE-2024-35201 | HIGH | 7.8 | 0.1% | Nov 13, 2024 | Incorrect default permissions in the Intel(R) SDP Tool for Windows software all versions may allow an authenticated user... |
| CVE-2024-34023 | HIGH | 8.4 | 0.2% | Nov 13, 2024 | Untrusted pointer dereference in some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable es... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now