2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-54780HIGH8.8Netgate pfSense CE (prior to 2.8.0 beta release) and corresponding Plus builds are vulnerable to command injection in th...
CVE-2024-45333HIGH7.3Improper access control for some Intel(R) Data Center GPU Flex Series for Windows driver before version 31.0.101.4314 ma...
CVE-2024-36292HIGH8.2Improper buffer restrictions for some Intel(R) Data Center GPU Flex Series for Windows driver before version 31.0.101.43...
CVE-2024-36339HIGH7.3A DLL hijacking vulnerability in the AMD Optimizing CPU Libraries could allow an attacker to achieve privilege escalatio...
CVE-2024-36321HIGH7.3Unquoted search path within AIM-T Manageability Service can allow a local attacker to escalate privileges, potentially r...
CVE-2024-21960HIGH7.3Incorrect default permissions in the AMD Optimizing CPU Libraries (AOCL) installation directory could allow an attacker ...
CVE-2024-48766HIGH8.6NetAlertX 24.7.18 before 24.10.12 allows unauthenticated file reading because an HTTP client can ignore a redirect, and ...
CVE-2024-35281HIGH7.8An improper isolation or compartmentalization vulnerability [CWE-653] in FortiClientMac version 7.4.2 and below, version...
CVE-2024-42446HIGH7APTIOV contains a vulnerability in BIOS where an attacker may cause a Time-of-check Time-of-use (TOCTOU) Race Condition ...
CVE-2024-51445HIGH7.1A vulnerability has been identified in Polarion V2310 (All versions), Polarion V2404 (All versions < V2404.4). The affec...
CVE-2024-51444HIGH7.1A vulnerability has been identified in Polarion V2310 (All versions), Polarion V2404 (All versions < V2404.4). The appli...
CVE-2024-23815HIGH8.7A vulnerability has been identified in Desigo CC (All versions if access from Installed Clients to Desigo CC server is a...
CVE-2024-4981HIGH7.1A vulnerability was discovered in Pagure server. If a malicious user were to submit a git repository with symbolic links...
CVE-2024-8973HIGH7.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 17.1 prior to 17.9.8, from 17.10 prior...
CVE-2024-9524HIGH7.8Link Following Local Privilege Escalation Vulnerability in System Speedup Service in Avira Operations GmbH Avira Prime V...
CVE-2024-13962HIGH7.8Link Following Local Privilege Escalation Vulnerability in TuneupSvc in Gen Digital Inc. Avast Cleanup Premium Version 2...
CVE-2024-13961HIGH7.8Link Following Local Privilege Escalation Vulnerability in TuneupSvc in Avast Cleanup Premium Version 24.2.16593.17810 o...
CVE-2024-13960HIGH7.8Link Following Local Privilege Escalation Vulnerability in TuneUp Service in AVG TuneUp Version 23.4 (build 15592) on Wi...
CVE-2024-13959HIGH7.8Link Following Local Privilege Escalation Vulnerability in TuneupSvc.exe in AVG TuneUp 24.2.16593.9844 on Windows allows...
CVE-2024-13944HIGH7.8Link Following Local Privilege Escalation Vulnerability in NortonUtilitiesSvc in Norton Utilities Ultimate Version 24.2....
CVE-2024-13759HIGH7.8Local Privilege Escalation in Avira.Spotlight.Service.exe in Avira Prime 1.1.96.2 on Windows 10 x64  allows local attack...
CVE-2024-9448HIGH7.5On affected platforms running Arista EOS with Traffic Policies configured the vulnerability will cause received untagged...
CVE-2024-8100HIGH8.7On affected versions of the Arista CloudVision Portal (CVP on-prem), the time-bound device onboarding token can be used ...
CVE-2024-13009HIGH7.2In Eclipse Jetty versions 9.4.0 to 9.4.56 a buffer can be incorrectly released when confronted with a gzip error when in...
CVE-2024-6648HIGH7.5Absolute Path Traversal vulnerability in AP Page Builder versions prior to 4.0.0 could allow an unauthenticated remote u...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now