2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-52554 | HIGH | 8.8 | 0.5% | Nov 13, 2024 | Jenkins Shared Library Version Override Plugin 17.v786074c9fce7 and earlier declares folder-scoped library overrides as ... |
| CVE-2024-52553 | HIGH | 8.8 | 0.6% | Nov 13, 2024 | Jenkins OpenId Connect Authentication Plugin 4.418.vccc7061f5b_6d and earlier does not invalidate the previous session o... |
| CVE-2024-52552 | HIGH | 8 | 0.7% | Nov 13, 2024 | Jenkins Authorize Project Plugin 1.7.2 and earlier evaluates a string containing the job name with JavaScript on the Aut... |
| CVE-2024-52551 | HIGH | 8 | 0.6% | Nov 13, 2024 | Jenkins Pipeline: Declarative Plugin 2.2214.vb_b_34b_2ea_9b_83 and earlier does not check whether the main (Jenkinsfile)... |
| CVE-2024-52550 | HIGH | 8 | 0.4% | Nov 13, 2024 | Jenkins Pipeline: Groovy Plugin 3990.vd281dd77a_388 and earlier, except 3975.3977.v478dd9e956c3 does not check whether t... |
| CVE-2024-52549 | MEDIUM | 4.3 | 0.4% | Nov 13, 2024 | Jenkins Script Security Plugin 1367.vdf2fc45f229c and earlier, except 1365.1367.va_3b_b_89f8a_95b_ and 1362.1364.v4cf2dc... |
| CVE-2024-45879 | MEDIUM | 5.4 | 0.3% | Nov 13, 2024 | The file upload function in the "QWKalkulation" tool of baltic-it TOPqw Webportal v1.35.287.1 (fixed in version 1.35.291... |
| CVE-2024-45878 | MEDIUM | 5.4 | 0.3% | Nov 13, 2024 | The "Stammdaten" menu of baltic-it TOPqw Webportal v1.35.283.2 (fixed in version 1.35.291), in /Apps/TOPqw/qwStammdaten.... |
| CVE-2024-45877 | MEDIUM | 6.5 | 0.4% | Nov 13, 2024 | baltic-it TOPqw Webportal v1.35.283.2 is vulnerable to Incorrect Access Control in the User Management function in /Apps... |
| CVE-2024-45876 | MEDIUM | 6.5 | 0.3% | Nov 13, 2024 | The login form of baltic-it TOPqw Webportal v1.35.283.2 (fixed in version 1.35.283.4) at /Apps/TOPqw/Login.aspx is vulne... |
| CVE-2024-45875 | MEDIUM | 5.4 | 0.3% | Nov 13, 2024 | The create user function in baltic-it TOPqw Webportal 1.35.287.1 (fixed in version1.35.291), in /Apps/TOPqw/BenutzerMana... |
| CVE-2024-41167 | MEDIUM | 6.7 | 0.2% | Nov 13, 2024 | Improper input validation in UEFI firmware in some Intel(R) Server Board M10JNP2SB Family may allow a privileged user to... |
| CVE-2024-40885 | HIGH | 8.7 | 0.1% | Nov 13, 2024 | Use after free in the UEFI firmware of some Intel(R) Server M20NTP BIOS may allow a privileged user to potentially enabl... |
| CVE-2024-39811 | MEDIUM | 6.3 | 0.2% | Nov 13, 2024 | Improper input validation in firmware for some Intel(R) Server M20NTP Family UEFI may allow a privileged user to potenti... |
| CVE-2024-39766 | HIGH | 7.3 | 0.2% | Nov 13, 2024 | Improper neutralization of special elements used in SQL command in some Intel(R) Neural Compressor software before versi... |
| CVE-2024-39609 | MEDIUM | 6.7 | 0.1% | Nov 13, 2024 | Improper Access Control in UEFI firmware for some Intel(R) Server Board M70KLP may allow a privileged user to potentiall... |
| CVE-2024-39368 | HIGH | 8.6 | 0.3% | Nov 13, 2024 | Improper neutralization of special elements used in an SQL command ('SQL Injection') in some Intel(R) Neural Compressor ... |
| CVE-2024-39285 | MEDIUM | 5.6 | 0.1% | Nov 13, 2024 | Improper access control in UEFI firmware in some Intel(R) Server M20NTP Family may allow a privileged user to potentiall... |
| CVE-2024-38668 | HIGH | 7.8 | 0.2% | Nov 13, 2024 | Uncontrolled search path for some Intel(R) Quartus(R) Prime Standard Edition software for Windows before version 23.1.1 ... |
| CVE-2024-38665 | HIGH | 8.4 | 0.2% | Nov 13, 2024 | Out-of-bounds write in some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable escalation o... |
| CVE-2024-38660 | LOW | 3.8 | 0.2% | Nov 13, 2024 | Protection mechanism failure in the SPP for some Intel(R) Xeon(R) processor family (E-Core) may allow an authenticated u... |
| CVE-2024-38387 | MEDIUM | 6.7 | 0.2% | Nov 13, 2024 | Uncontrolled search path in the Intel(R) Graphics Driver installers for versions 15.40 and 15.45 may allow an authentica... |
| CVE-2024-38383 | HIGH | 7.8 | 0.2% | Nov 13, 2024 | Uncontrolled search path for some Intel(R) Quartus(R) Prime Pro Edition software for Windows before version 24.2 may all... |
| CVE-2024-37027 | MEDIUM | 6.1 | 0.2% | Nov 13, 2024 | Improper Input validation in some Intel(R) VTune(TM) Profiler software before version 2024.2.0 may allow an authenticate... |
| CVE-2024-37025 | MEDIUM | 6.7 | 0.2% | Nov 13, 2024 | Incorrect execution-assigned permissions in some Intel(R) Advanced Link Analyzer Standard Edition software installer bef... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now