2024 CVE Vulnerabilities

39,217 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-0852HIGH8.8The coreActivity: Activity Logging for WordPress plugin before 1.8.1 does not escape some request data when outputting i...
CVE-2024-0249HIGH7.1The Advanced Schedule Posts WordPress plugin through 2.1.8 does not sanitise and escape a parameter before outputting it...
CVE-2024-52880HIGH7.9An issue was discovered in Insyde InsydeH2O kernel 5.2 before version 05.29.50, kernel 5.3 before version 05.38.50, kern...
CVE-2024-52879HIGH7.5An issue was discovered in Insyde InsydeH2O kernel 5.2 before version 05.29.50, kernel 5.3 before version 05.38.50, kern...
CVE-2024-52878HIGH7.5An issue was discovered in Insyde InsydeH2O kernel 5.2 before version 05.29.50, kernel 5.3 before version 05.38.50, kern...
CVE-2024-52877HIGH7.5An issue was discovered in Insyde InsydeH2O kernel 5.2 before version 05.29.50, kernel 5.3 before version 05.38.50, kern...
CVE-2024-13914HIGH7.2The File Manager Advanced Shortcode plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, an...
CVE-2024-45067HIGH8.2Incorrect default permissions in some Intel(R) Gaudi(R) software installers before version 1.18 may allow an authenticat...
CVE-2024-55569HIGH7.5An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 980, 990, 850, 1080, 2100, 128...
CVE-2024-58101HIGH8.1Samsung Galaxy Buds and Galaxy Buds 2 audio devices are Bluetooth pairable by default without user input nor a way to st...
CVE-2024-10864HIGH7.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in OpenText Advanced ...
CVE-2024-54780HIGH8.8Netgate pfSense CE (prior to 2.8.0 beta release) and corresponding Plus builds are vulnerable to command injection in th...
CVE-2024-45333HIGH7.3Improper access control for some Intel(R) Data Center GPU Flex Series for Windows driver before version 31.0.101.4314 ma...
CVE-2024-36292HIGH8.2Improper buffer restrictions for some Intel(R) Data Center GPU Flex Series for Windows driver before version 31.0.101.43...
CVE-2024-36339HIGH7.3A DLL hijacking vulnerability in the AMD Optimizing CPU Libraries could allow an attacker to achieve privilege escalatio...
CVE-2024-36321HIGH7.3Unquoted search path within AIM-T Manageability Service can allow a local attacker to escalate privileges, potentially r...
CVE-2024-21960HIGH7.3Incorrect default permissions in the AMD Optimizing CPU Libraries (AOCL) installation directory could allow an attacker ...
CVE-2024-48766HIGH8.6NetAlertX 24.7.18 before 24.10.12 allows unauthenticated file reading because an HTTP client can ignore a redirect, and ...
CVE-2024-35281HIGH7.8An improper isolation or compartmentalization vulnerability [CWE-653] in FortiClientMac version 7.4.2 and below, version...
CVE-2024-42446HIGH7APTIOV contains a vulnerability in BIOS where an attacker may cause a Time-of-check Time-of-use (TOCTOU) Race Condition ...
CVE-2024-51445HIGH7.1A vulnerability has been identified in Polarion V2310 (All versions), Polarion V2404 (All versions < V2404.4). The affec...
CVE-2024-51444HIGH7.1A vulnerability has been identified in Polarion V2310 (All versions), Polarion V2404 (All versions < V2404.4). The appli...
CVE-2024-23815HIGH8.7A vulnerability has been identified in Desigo CC (All versions if access from Installed Clients to Desigo CC server is a...
CVE-2024-4981HIGH7.1A vulnerability was discovered in Pagure server. If a malicious user were to submit a git repository with symbolic links...
CVE-2024-8973HIGH7.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 17.1 prior to 17.9.8, from 17.10 prior...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now