2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-54779 | MEDIUM | 5.4 | 3.7% | May 14, 2025 | Netgate pfSense CE (prior to 2.8.0 beta release) and corresponding Plus builds is vulnerable to Cross Site Scripting (XS... |
| CVE-2024-8988 | MEDIUM | 5.3 | 0.2% | May 14, 2025 | The PeepSo Core: File Uploads plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up ... |
| CVE-2024-13940 | MEDIUM | 5.5 | 0.2% | May 14, 2025 | The Ninja Forms Webhooks plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and in... |
| CVE-2024-52290 | MEDIUM | 5.4 | 0.2% | May 14, 2025 | LF Edge eKuiper is a lightweight internet of things (IoT) data analytics and stream processing engine. Prior to version ... |
| CVE-2024-48869 | MEDIUM | 6.1 | 0.1% | May 13, 2025 | Improper restriction of software interfaces to hardware features for some Intel(R) Xeon(R) 6 processor with E-cores when... |
| CVE-2024-47800 | MEDIUM | 6.7 | 0.1% | May 13, 2025 | Uncontrolled search path for some Intel(R) Graphics Driver software may allow an authenticated user to potentially enabl... |
| CVE-2024-47795 | MEDIUM | 6.7 | 0.1% | May 13, 2025 | Uncontrolled search path for some Intel(R) oneAPI DPC++/C++ Compiler software before version 2025.0.0 may allow an authe... |
| CVE-2024-47550 | MEDIUM | 6.7 | 0.1% | May 13, 2025 | Incorrect default permissions for some Endurance Gaming Mode software installers may allow an authenticated user to pote... |
| CVE-2024-46895 | MEDIUM | 6.7 | 0.1% | May 13, 2025 | Uncontrolled search path for some Intel(R) Arc™ & Iris(R) Xe graphics software before version 32.0.101.6083/32.0.101... |
| CVE-2024-45371 | MEDIUM | 6.7 | 0.1% | May 13, 2025 | Improper access control for some Intel(R) Arc™ & Iris(R) Xe graphics software before version 32.0.101.6077 may allow... |
| CVE-2024-45332 | MEDIUM | 5.7 | 0.2% | May 13, 2025 | Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient executio... |
| CVE-2024-43420 | MEDIUM | 5.7 | 0.1% | May 13, 2025 | Exposure of sensitive information caused by shared microarchitectural predictor state that influences transient executio... |
| CVE-2024-43101 | MEDIUM | 5.8 | 0.1% | May 13, 2025 | Improper access control for some Intel(R) Data Center GPU Flex Series for Windows driver software before version 31.0.10... |
| CVE-2024-39833 | MEDIUM | 6.7 | 0.1% | May 13, 2025 | Uncontrolled search path for some Intel(R) QAT software before version 2.3.0 may allow an authenticated user to potentia... |
| CVE-2024-39758 | MEDIUM | 5.9 | 0.1% | May 13, 2025 | Improper access control for some Intel(R) Arc™ & Iris(R) Xe graphics software before version 31.0.101.4032 may allow... |
| CVE-2024-31150 | MEDIUM | 4.8 | 0.1% | May 13, 2025 | Out-of-bounds read for some Intel(R) Graphics Driver software may allow an authenticated user to potentially enable info... |
| CVE-2024-31073 | MEDIUM | 6.7 | 0.1% | May 13, 2025 | Uncontrolled search path for some Intel(R) oneAPI Level Zero software may allow an authenticated user to potentially ena... |
| CVE-2024-29222 | MEDIUM | 6.1 | 0.1% | May 13, 2025 | Out-of-bounds write for some Intel(R) Graphics Driver software may allow an authenticated user to potentially enable den... |
| CVE-2024-28956 | MEDIUM | 5.7 | 0.4% | May 13, 2025 | Exposure of Sensitive Information in Shared Microarchitectural Structures during Transient Execution for some Intel(R) P... |
| CVE-2024-28954 | MEDIUM | 6.7 | 0.1% | May 13, 2025 | Incorrect default permissions for some Intel(R) Graphics Driver installers may allow an authenticated user to potentiall... |
| CVE-2024-28036 | MEDIUM | 5.7 | 0.1% | May 13, 2025 | Improper conditions check for some Intel(R) Arc™ GPU may allow an authenticated user to potentially enable denial of ser... |
| CVE-2024-6364 | MEDIUM | 6.4 | 0.1% | May 13, 2025 | A vulnerability in Absolute Persistence® versions before 2.8 exists when it is not activated. This may allow a skilled a... |
| CVE-2024-56526 | MEDIUM | 4.9 | 0.3% | May 13, 2025 | An issue was discovered in OXID eShop before 7. CMS pages in combination with Smarty may display user information if a C... |
| CVE-2024-36340 | MEDIUM | 6.6 | 0.1% | May 13, 2025 | A junction point vulnerability within AMD uProf can allow a local low-privileged attacker to create junction points, po... |
| CVE-2024-51447 | MEDIUM | 6.9 | 0.4% | May 13, 2025 | A vulnerability has been identified in Polarion V2310 (All versions), Polarion V2404 (All versions < V2404.2). The login... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now