2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-37980CRITICAL9.8Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2024-37966HIGH7.1Microsoft SQL Server Native Scoring Information Disclosure Vulnerability
CVE-2024-37965HIGH8.8Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2024-37342MEDIUM4.3Microsoft SQL Server Native Scoring Information Disclosure Vulnerability
CVE-2024-37341CRITICAL9.8Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2024-37340HIGH8.8Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
CVE-2024-37339HIGH8.8Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
CVE-2024-37338HIGH8.8Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
CVE-2024-37337MEDIUM4.3Microsoft SQL Server Native Scoring Information Disclosure Vulnerability
CVE-2024-37335HIGH8.8Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
CVE-2024-30073HIGH7.8Windows Security Zone Mapping Security Feature Bypass Vulnerability
CVE-2024-26191HIGH8.8Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
CVE-2024-26186HIGH8.8Microsoft SQL Server Native Scoring Remote Code Execution Vulnerability
CVE-2024-21416CRITICAL9.8Windows TCP/IP Remote Code Execution Vulnerability
CVE-2024-6876MEDIUM4.4Out-of-Bounds read vulnerability in OSCAT Basic Library allows an local, unprivileged attacker to access limited interna...
CVE-2024-45595CRITICAL9.8D-Tale is a visualizer for Pandas data structures. Users hosting D-Tale publicly can be vulnerable to remote code execut...
CVE-2024-45593HIGH8.8Nix is a package manager for Linux and other Unix systems. A bug in Nix 2.24 prior to 2.24.6 allows a substituter or mal...
CVE-2024-45592MEDIUM6.1auditor-bundle, formerly known as DoctrineAuditBundle, integrates auditor library into any Symfony 3.4+ application. Pri...
CVE-2024-45591MEDIUM5.3XWiki Platform is a generic wiki platform. The REST API exposes the history of any page in XWiki of which the attacker k...
CVE-2024-45590HIGH7.5body-parser is Node.js body parsing middleware. body-parser <1.20.3 is vulnerable to denial of service when url encoding...
CVE-2024-45412HIGH7.5Yeti bridges the gap between CTI and DFIR practitioners by providing a Forensics Intelligence platform and pipeline. Rem...
CVE-2024-45407MEDIUM5.3Sunshine is a self-hosted game stream host for Moonlight. Clients that experience a MITM attack during the pairing proce...
CVE-2024-44815MEDIUM4.6Vulnerability in Hathway Skyworth Router CM5100 v.4.1.1.24 allows a physically proximate attacker to obtain user credent...
CVE-2024-44677CRITICAL9.8eladmin v2.7 and before is vulnerable to Server-Side Request Forgery (SSRF) which allows an attacker to execute arbitrar...
CVE-2024-44676MEDIUM4.8eladmin v2.7 and before is vulnerable to Cross Site Scripting (XSS) which allows an attacker to execute arbitrary code v...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now