2024 CVE Vulnerabilities

39,221 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-43483HIGH7.5.NET, .NET Framework, and Visual Studio Denial of Service Vulnerability
CVE-2024-43481HIGH8.8Power BI Report Server Spoofing Vulnerability
CVE-2024-43456HIGH7.4Windows Remote Desktop Services Tampering Vulnerability
CVE-2024-43453HIGH8.8Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2024-38265HIGH8.8Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2024-38262HIGH7.5Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
CVE-2024-38261HIGH7.8Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2024-38229HIGH8.1.NET and Visual Studio Remote Code Execution Vulnerability
CVE-2024-38212HIGH8.8Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
CVE-2024-38179HIGH8.8Azure Stack Hyperconverged Infrastructure (HCI) Elevation of Privilege Vulnerability
CVE-2024-38149HIGH7.5BranchCache Denial of Service Vulnerability
CVE-2024-38097HIGH7.1Azure Monitor Agent Elevation of Privilege Vulnerability
CVE-2024-38029HIGH7.5Microsoft OpenSSH for Windows Remote Code Execution Vulnerability
CVE-2024-37982HIGH7.8Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability
CVE-2024-37979HIGH7.8Windows Kernel Elevation of Privilege Vulnerability
CVE-2024-30092HIGH7.5Windows Hyper-V Remote Code Execution Vulnerability
CVE-2024-25885HIGH7.5An issue in the getcolor function in utils.py of xhtml2pdf v0.2.13 allows attackers to cause a Regular expression Denial...
CVE-2024-20659HIGH7.1Windows Hyper-V Security Feature Bypass Vulnerability
CVE-2024-9381HIGH7.2Path traversal in Ivanti CSA before version 5.0.2 allows a remote authenticated attacker with admin privileges to bypass...
CVE-2024-9380HIGH7.2An OS command injection vulnerability in the admin web console of Ivanti CSA before version 5.0.2 allows a remote authen...
CVE-2024-9379HIGH7.2SQL injection in the admin web console of Ivanti CSA before version 5.0.2 allows a remote authenticated attacker with ad...
CVE-2024-9167HIGH7.8Under specific circumstances, insecure permissions in Ivanti Velocity License Server before version 5.2 allows a local a...
CVE-2024-9124HIGH7.5A denial-of-service vulnerability exists in the Rockwell Automation PowerFlex® 600T. If the device is overloaded with re...
CVE-2024-8626HIGH7.5Due to a memory leak, a denial-of-service vulnerability exists in the Rockwell Automation affected products. A malicious...
CVE-2024-7612HIGH7.8Insecure permissions in Ivanti EPMM before 12.1.0.4 allow a local authenticated attacker to modify sensitive application...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now