2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-36280MEDIUM6.7Uncontrolled search path for some Intel(R) High Level Synthesis Compiler software before version 24.2 may allow an authe...
CVE-2024-32942MEDIUM6.7Incorrect default permissions for some Intel(R) DSA installer for Windows before version 24.2.19.5 may allow an authenti...
CVE-2024-32938MEDIUM6.7Uncontrolled search path for some Intel(R) MPI Library for Windows software before version 2021.13 may allow an authenti...
CVE-2024-31157MEDIUM6.8Improper initialization in UEFI firmware OutOfBandXML module in some Intel(R) Processors may allow a privileged user to ...
CVE-2024-31153MEDIUM5.5Improper input validation for some Intel(R) QuickAssist Technology software before version 2.2.0 may allow an authentica...
CVE-2024-31068MEDIUM5.6Improper Finite State Machines (FSMs) in Hardware Logic for some Intel(R) Processors may allow privileged user to potent...
CVE-2024-30211MEDIUM6Improper access control in some Intel(R) ME driver pack installer engines before version 2422.6.2.0 may allow an authent...
CVE-2024-28047MEDIUM6.8Improper input validation in UEFI firmware for some Intel(R) Processors may allow a privileged user to potentially enabl...
CVE-2024-26021MEDIUM4.6Improper initialization in the firmware for some Intel(R) AMT and Intel(R) Standard Manageability may allow a privileged...
CVE-2024-25571MEDIUM4.6Improper input validation in some Intel(R) SPS firmware before SPS_E5_06.01.04.059.0 may allow a privileged user to pote...
CVE-2024-24852MEDIUM6.7Uncontrolled search path in some Intel(R) Ethernet Adapter Complete Driver Pack install before versions 29.1 may allow a...
CVE-2024-21859MEDIUM6.8Improper buffer restrictions in the UEFI firmware for some Intel(R) Processors may allow a privileged user to potentiall...
CVE-2024-21830MEDIUM6.7Uncontrolled search path in some Intel(R) VPL software before version 2023.4.0 may allow an authenticated user to potent...
CVE-2024-6097MEDIUM5.3In Progress® Telerik® Reporting versions prior to 2025 Q1 (19.0.25.211), information disclosure is possible by a local t...
CVE-2024-11629MEDIUM6.5In Progress® Telerik® Document Processing Libraries, versions prior to 2025 Q1 (2025.1.205), using .NET Standard 2.0, th...
CVE-2024-54160MEDIUM6.4dashboards-reporting (aka Dashboards Reports) before 2.19.0.0, as shipped in OpenSearch before 2.19, allows XSS because ...
CVE-2024-12379MEDIUM6.5A denial of service vulnerability in GitLab CE/EE affecting all versions from 14.1 prior to 17.6.5, 17.7 prior to 17.7.4...
CVE-2024-57952MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: Revert "libfs: fix infinite directory reads for off...
CVE-2024-23563MEDIUM4.4HCL Connections Docs is vulnerable to a sensitive information disclosure which could allow a user to obtain sensitive in...
CVE-2024-10322MEDIUM5.4The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File uploads...
CVE-2024-12386MEDIUM5.4The WP Abstracts plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, ...
CVE-2024-13459MEDIUM5.4The FuseDesk plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'fusedesk_newcase' short...
CVE-2024-13456MEDIUM5.4The Easy Quiz Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wqt-question' sh...
CVE-2024-13437MEDIUM4.3The Book a Room plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2...
CVE-2024-13821MEDIUM5.3The WP Booking Calendar plugin for WordPress is vulnerable to Unauthenticated Post-Confirmation Booking Manipulation in ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now