2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-8503CRITICAL9.8An unauthenticated attacker can leverage a time-based SQL injection vulnerability in VICIdial to enumerate database reco...
CVE-2024-8232HIGH8.7SpiderControl SCADA Web Server has a vulnerability that could allow an attacker to upload specially crafted malicious f...
CVE-2024-43040CRITICAL9.1Renwoxing Enterprise Intelligent Management System before v3.0 was discovered to contain a SQL injection vulnerability v...
CVE-2024-45596MEDIUM6.5Directus is a real-time API and App dashboard for managing SQL database content. An unauthenticated user can access cred...
CVE-2024-45409CRITICAL9.8The Ruby SAML library is for implementing the client side of a SAML authorization. Ruby-SAML in <= 12.2 and 1.13.0 <= 1....
CVE-2024-34831MEDIUM6.1cross-site scripting (XSS) vulnerability in Gibbon Core v26.0.00 allows an attacker to execute arbitrary code via the im...
CVE-2024-44893CRITICAL9.8An issue in the component /jeecg-boot/jmreport/dict/list of JimuReport v1.7.8 allows attacker to escalate privileges via...
CVE-2024-44872MEDIUM6.1A reflected cross-site scripting (XSS) vulnerability in moziloCMS v3.0 allows attackers to execute arbitrary code in the...
CVE-2024-44871HIGH7.2An arbitrary file upload vulnerability in the component /admin/index.php of moziloCMS v3.0 allows attackers to execute a...
CVE-2024-44667HIGH8Shenzhen Haichangxing Technology Co., Ltd HCX H822 4G LTE Router M7628NNxISPxUIv2_v1.0.1557.15.35_P0 is vulnerable to In...
CVE-2024-43495HIGH7.3Windows libarchive Remote Code Execution Vulnerability
CVE-2024-43492HIGH7.8Microsoft AutoUpdate (MAU) Elevation of Privilege Vulnerability
CVE-2024-43491CRITICAL9.8Microsoft is aware of a vulnerability in Servicing Stack that has rolled back the fixes for some vulnerabilities affecti...
CVE-2024-43487MEDIUM6.5Windows Mark of the Web Security Feature Bypass Vulnerability
CVE-2024-43482MEDIUM6.5Microsoft Outlook for iOS Information Disclosure Vulnerability
CVE-2024-43479HIGH8.5Microsoft Power Automate Desktop Remote Code Execution Vulnerability
CVE-2024-43476MEDIUM5.4Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
CVE-2024-43475HIGH7.3Microsoft Windows Admin Center Information Disclosure Vulnerability
CVE-2024-43474HIGH7.5Microsoft SQL Server Information Disclosure Vulnerability
CVE-2024-43470HIGH7.3Azure Network Watcher VM Agent Elevation of Privilege Vulnerability
CVE-2024-43469HIGH8.8Azure CycleCloud Remote Code Execution Vulnerability
CVE-2024-43467HIGH7.5Windows Remote Desktop Licensing Service Remote Code Execution Vulnerability
CVE-2024-43466HIGH7.5Microsoft SharePoint Server Denial of Service Vulnerability
CVE-2024-43465HIGH7.8Microsoft Excel Elevation of Privilege Vulnerability
CVE-2024-43464HIGH7.2Microsoft SharePoint Server Remote Code Execution Vulnerability

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now