2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-45750HIGH7.3An issue in TheGreenBow Windows Standard VPN Client 6.87.108 (and older), Windows Enterprise VPN Client 6.87.109 (and ol...
CVE-2024-8996HIGH7.8Unquoted Search Path or Element vulnerability in Grafana Agent (Flow mode) on Windows allows Privilege Escalation from L...
CVE-2024-8975HIGH7.8Unquoted Search Path or Element vulnerability in Grafana Alloy on Windows allows Privilege Escalation from Local User to...
CVE-2024-44678HIGH8Gigastone TR1 Travel Router R101 v1.0.2 is vulnerable to Command Injection. This allows an authenticated attacker to exe...
CVE-2024-41708HIGH7.5An issue was discovered in AdaCore ada_web_services 20.0 allows an attacker to escalate privileges and steal sessions vi...
CVE-2024-20480HIGH8.6A vulnerability in the DHCP Snooping feature of Cisco IOS XE Software on Software-Defined Access (SD-Access) fabric edge...
CVE-2024-20467HIGH8.6A vulnerability in the implementation of the IPv4 fragmentation reassembly code in Cisco IOS XE Software could allow an ...
CVE-2024-20464HIGH8.6A vulnerability in the Protocol Independent Multicast (PIM) feature of Cisco IOS XE Software could allow an unauthentica...
CVE-2024-20455HIGH8.6A vulnerability in the process that classifies traffic that is going to the Unified Threat Defense (UTD) component of Ci...
CVE-2024-20437HIGH8.8A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an unauthenticated, remote at...
CVE-2024-20436HIGH7.5A vulnerability in the HTTP Server feature of Cisco IOS XE Software when the Telephony Service feature is enabled could ...
CVE-2024-20433HIGH7.5A vulnerability in the Resource Reservation Protocol (RSVP) feature of Cisco IOS Software and Cisco IOS XE Software coul...
CVE-2024-20350HIGH8.1A vulnerability in the SSH server of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an unauthenticated, r...
CVE-2024-44825HIGH7.5Directory Traversal vulnerability in Centro de Tecnologia da Informaco Renato Archer InVesalius3 v3.1.99995 allows attac...
CVE-2024-46461HIGH8VLC media player 3.0.20 and earlier is vulnerable to denial of service through an integer overflow which could be trigge...
CVE-2024-43959HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themepoints Testim...
CVE-2024-22893HIGH7.5OpenSlides 4.0.15 verifies passwords by comparing password hashes using a function with content-dependent runtime. This ...
CVE-2024-22892HIGH7.5OpenSlides 4.0.15 was discovered to be using a weak hashing algorithm to store passwords.
CVE-2024-8316HIGH7.8In Progress Telerik UI for WPF versions prior to 2024 Q3 (2024.3.924), a code execution attack is possible through an in...
CVE-2024-7679HIGH7.8In Progress Telerik UI for WinForms versions prior to 2024 Q3 (2024.3.924), a command injection attack is possible throu...
CVE-2024-6594HIGH7.5Improper Handling of Exceptional Conditions vulnerability in the WatchGuard Single Sign-On Client on Windows causes the ...
CVE-2024-7481HIGH8.8Improper verification of cryptographic signature during installation of a Printer driver via the TeamViewer_service.exe ...
CVE-2024-7479HIGH8.8Improper verification of cryptographic signature during installation of a VPN driver via the TeamViewer_service.exe comp...
CVE-2024-45817HIGH7.3In x86's APIC (Advanced Programmable Interrupt Controller) architecture, error conditions are reported in a status regis...
CVE-2024-31146HIGH7.5When multiple devices share resources and one of them is to be passed through to a guest, security of the entire system ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now