2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-52554HIGH8.8Jenkins Shared Library Version Override Plugin 17.v786074c9fce7 and earlier declares folder-scoped library overrides as ...
CVE-2024-52553HIGH8.8Jenkins OpenId Connect Authentication Plugin 4.418.vccc7061f5b_6d and earlier does not invalidate the previous session o...
CVE-2024-52552HIGH8Jenkins Authorize Project Plugin 1.7.2 and earlier evaluates a string containing the job name with JavaScript on the Aut...
CVE-2024-52551HIGH8Jenkins Pipeline: Declarative Plugin 2.2214.vb_b_34b_2ea_9b_83 and earlier does not check whether the main (Jenkinsfile)...
CVE-2024-52550HIGH8Jenkins Pipeline: Groovy Plugin 3990.vd281dd77a_388 and earlier, except 3975.3977.v478dd9e956c3 does not check whether t...
CVE-2024-52549MEDIUM4.3Jenkins Script Security Plugin 1367.vdf2fc45f229c and earlier, except 1365.1367.va_3b_b_89f8a_95b_ and 1362.1364.v4cf2dc...
CVE-2024-45879MEDIUM5.4The file upload function in the "QWKalkulation" tool of baltic-it TOPqw Webportal v1.35.287.1 (fixed in version 1.35.291...
CVE-2024-45878MEDIUM5.4The "Stammdaten" menu of baltic-it TOPqw Webportal v1.35.283.2 (fixed in version 1.35.291), in /Apps/TOPqw/qwStammdaten....
CVE-2024-45877MEDIUM6.5baltic-it TOPqw Webportal v1.35.283.2 is vulnerable to Incorrect Access Control in the User Management function in /Apps...
CVE-2024-45876MEDIUM6.5The login form of baltic-it TOPqw Webportal v1.35.283.2 (fixed in version 1.35.283.4) at /Apps/TOPqw/Login.aspx is vulne...
CVE-2024-45875MEDIUM5.4The create user function in baltic-it TOPqw Webportal 1.35.287.1 (fixed in version1.35.291), in /Apps/TOPqw/BenutzerMana...
CVE-2024-41167MEDIUM6.7Improper input validation in UEFI firmware in some Intel(R) Server Board M10JNP2SB Family may allow a privileged user to...
CVE-2024-40885HIGH8.7Use after free in the UEFI firmware of some Intel(R) Server M20NTP BIOS may allow a privileged user to potentially enabl...
CVE-2024-39811MEDIUM6.3Improper input validation in firmware for some Intel(R) Server M20NTP Family UEFI may allow a privileged user to potenti...
CVE-2024-39766HIGH7.3Improper neutralization of special elements used in SQL command in some Intel(R) Neural Compressor software before versi...
CVE-2024-39609MEDIUM6.7Improper Access Control in UEFI firmware for some Intel(R) Server Board M70KLP may allow a privileged user to potentiall...
CVE-2024-39368HIGH8.6Improper neutralization of special elements used in an SQL command ('SQL Injection') in some Intel(R) Neural Compressor ...
CVE-2024-39285MEDIUM5.6Improper access control in UEFI firmware in some Intel(R) Server M20NTP Family may allow a privileged user to potentiall...
CVE-2024-38668HIGH7.8Uncontrolled search path for some Intel(R) Quartus(R) Prime Standard Edition software for Windows before version 23.1.1 ...
CVE-2024-38665HIGH8.4Out-of-bounds write in some Intel(R) Graphics Drivers may allow an authenticated user to potentially enable escalation o...
CVE-2024-38660LOW3.8Protection mechanism failure in the SPP for some Intel(R) Xeon(R) processor family (E-Core) may allow an authenticated u...
CVE-2024-38387MEDIUM6.7Uncontrolled search path in the Intel(R) Graphics Driver installers for versions 15.40 and 15.45 may allow an authentica...
CVE-2024-38383HIGH7.8Uncontrolled search path for some Intel(R) Quartus(R) Prime Pro Edition software for Windows before version 24.2 may all...
CVE-2024-37027MEDIUM6.1Improper Input validation in some Intel(R) VTune(TM) Profiler software before version 2024.2.0 may allow an authenticate...
CVE-2024-37025MEDIUM6.7Incorrect execution-assigned permissions in some Intel(R) Advanced Link Analyzer Standard Edition software installer bef...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now