2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-28954MEDIUM6.7Incorrect default permissions for some Intel(R) Graphics Driver installers may allow an authenticated user to potentiall...
CVE-2024-28036MEDIUM5.7Improper conditions check for some Intel(R) Arc™ GPU may allow an authenticated user to potentially enable denial of ser...
CVE-2024-6364MEDIUM6.4A vulnerability in Absolute Persistence® versions before 2.8 exists when it is not activated. This may allow a skilled a...
CVE-2024-36339HIGH7.3A DLL hijacking vulnerability in the AMD Optimizing CPU Libraries could allow an attacker to achieve privilege escalatio...
CVE-2024-36321HIGH7.3Unquoted search path within AIM-T Manageability Service can allow a local attacker to escalate privileges, potentially r...
CVE-2024-21960HIGH7.3Incorrect default permissions in the AMD Optimizing CPU Libraries (AOCL) installation directory could allow an attacker ...
CVE-2024-56526MEDIUM4.9An issue was discovered in OXID eShop before 7. CMS pages in combination with Smarty may display user information if a C...
CVE-2024-48766HIGH8.6NetAlertX 24.7.18 before 24.10.12 allows unauthenticated file reading because an HTTP client can ignore a redirect, and ...
CVE-2024-46506CRITICAL10NetAlertX 23.01.14 through 24.x before 24.10.12 allows unauthenticated command injection via settings update because fun...
CVE-2024-35281HIGH7.8An improper isolation or compartmentalization vulnerability [CWE-653] in FortiClientMac version 7.4.2 and below, version...
CVE-2024-12533LOW3.3Improper Check for Unusual or Exceptional Conditions vulnerability in Phoenix SecureCore Technology 4 allows Input Data ...
CVE-2024-42446HIGH7APTIOV contains a vulnerability in BIOS where an attacker may cause a Time-of-check Time-of-use (TOCTOU) Race Condition ...
CVE-2024-36340MEDIUM6.6A junction point vulnerability within AMD uProf can allow a local low-privileged attacker to create junction points, po...
CVE-2024-51447MEDIUM6.9A vulnerability has been identified in Polarion V2310 (All versions), Polarion V2404 (All versions < V2404.2). The login...
CVE-2024-51446MEDIUM5.4A vulnerability has been identified in Polarion V2310 (All versions), Polarion V2404 (All versions < V2404.4). The file ...
CVE-2024-51445HIGH7.1A vulnerability has been identified in Polarion V2310 (All versions), Polarion V2404 (All versions < V2404.4). The affec...
CVE-2024-51444HIGH7.1A vulnerability has been identified in Polarion V2310 (All versions), Polarion V2404 (All versions < V2404.4). The appli...
CVE-2024-23815HIGH8.7A vulnerability has been identified in Desigo CC (All versions if access from Installed Clients to Desigo CC server is a...
CVE-2024-55466MEDIUM6.5An arbitrary file upload vulnerability in the Image Gallery of ThingsBoard Community, ThingsBoard Cloud and ThingsBoard ...
CVE-2024-4982MEDIUM6.5A directory traversal vulnerability was discovered in Pagure server. If a malicious user submits a specially cratfted gi...
CVE-2024-4981HIGH7.1A vulnerability was discovered in Pagure server. If a malicious user were to submit a git repository with symbolic links...
CVE-2024-56524CRITICAL9.1Radware Cloud Web Application Firewall (WAF) before 2025-05-07 allows remote attackers to bypass firewall filters by add...
CVE-2024-56523CRITICAL9.1Radware Cloud Web Application Firewall (WAF) before 2025-05-07 allows remote attackers to bypass firewall filters by pla...
CVE-2024-8973HIGH7.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 17.1 prior to 17.9.8, from 17.10 prior...
CVE-2024-9524HIGH7.8Link Following Local Privilege Escalation Vulnerability in System Speedup Service in Avira Operations GmbH Avira Prime V...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now