2024 CVE Vulnerabilities
39,221 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-43483 | HIGH | 7.5 | 2.8% | Oct 8, 2024 | .NET, .NET Framework, and Visual Studio Denial of Service Vulnerability |
| CVE-2024-43481 | HIGH | 8.8 | 1.9% | Oct 8, 2024 | Power BI Report Server Spoofing Vulnerability |
| CVE-2024-43456 | HIGH | 7.4 | 0.8% | Oct 8, 2024 | Windows Remote Desktop Services Tampering Vulnerability |
| CVE-2024-43453 | HIGH | 8.8 | 1.3% | Oct 8, 2024 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-38265 | HIGH | 8.8 | 1.3% | Oct 8, 2024 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-38262 | HIGH | 7.5 | 1.1% | Oct 8, 2024 | Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability |
| CVE-2024-38261 | HIGH | 7.8 | 0.8% | Oct 8, 2024 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-38229 | HIGH | 8.1 | 2.0% | Oct 8, 2024 | .NET and Visual Studio Remote Code Execution Vulnerability |
| CVE-2024-38212 | HIGH | 8.8 | 1.3% | Oct 8, 2024 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability |
| CVE-2024-38179 | HIGH | 8.8 | 0.4% | Oct 8, 2024 | Azure Stack Hyperconverged Infrastructure (HCI) Elevation of Privilege Vulnerability |
| CVE-2024-38149 | HIGH | 7.5 | 2.2% | Oct 8, 2024 | BranchCache Denial of Service Vulnerability |
| CVE-2024-38097 | HIGH | 7.1 | 0.6% | Oct 8, 2024 | Azure Monitor Agent Elevation of Privilege Vulnerability |
| CVE-2024-38029 | HIGH | 7.5 | 1.3% | Oct 8, 2024 | Microsoft OpenSSH for Windows Remote Code Execution Vulnerability |
| CVE-2024-37982 | HIGH | 7.8 | 0.6% | Oct 8, 2024 | Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability |
| CVE-2024-37979 | HIGH | 7.8 | 0.6% | Oct 8, 2024 | Windows Kernel Elevation of Privilege Vulnerability |
| CVE-2024-30092 | HIGH | 7.5 | 0.7% | Oct 8, 2024 | Windows Hyper-V Remote Code Execution Vulnerability |
| CVE-2024-25885 | HIGH | 7.5 | 0.6% | Oct 8, 2024 | An issue in the getcolor function in utils.py of xhtml2pdf v0.2.13 allows attackers to cause a Regular expression Denial... |
| CVE-2024-20659 | HIGH | 7.1 | 0.9% | Oct 8, 2024 | Windows Hyper-V Security Feature Bypass Vulnerability |
| CVE-2024-9381 | HIGH | 7.2 | 15.7% | Oct 8, 2024 | Path traversal in Ivanti CSA before version 5.0.2 allows a remote authenticated attacker with admin privileges to bypass... |
| CVE-2024-9380 | HIGH | 7.2 | 63.0% | Oct 8, 2024 | An OS command injection vulnerability in the admin web console of Ivanti CSA before version 5.0.2 allows a remote authen... |
| CVE-2024-9379 | HIGH | 7.2 | 43.6% | Oct 8, 2024 | SQL injection in the admin web console of Ivanti CSA before version 5.0.2 allows a remote authenticated attacker with ad... |
| CVE-2024-9167 | HIGH | 7.8 | 0.2% | Oct 8, 2024 | Under specific circumstances, insecure permissions in Ivanti Velocity License Server before version 5.2 allows a local a... |
| CVE-2024-9124 | HIGH | 7.5 | 0.5% | Oct 8, 2024 | A denial-of-service vulnerability exists in the Rockwell Automation PowerFlex® 600T. If the device is overloaded with re... |
| CVE-2024-8626 | HIGH | 7.5 | 0.5% | Oct 8, 2024 | Due to a memory leak, a denial-of-service vulnerability exists in the Rockwell Automation affected products. A malicious... |
| CVE-2024-7612 | HIGH | 7.8 | 0.2% | Oct 8, 2024 | Insecure permissions in Ivanti EPMM before 12.1.0.4 allow a local authenticated attacker to modify sensitive application... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now