2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-45409CRITICAL9.8The Ruby SAML library is for implementing the client side of a SAML authorization. Ruby-SAML in <= 12.2 and 1.13.0 <= 1....
CVE-2024-44893CRITICAL9.8An issue in the component /jeecg-boot/jmreport/dict/list of JimuReport v1.7.8 allows attacker to escalate privileges via...
CVE-2024-43491CRITICAL9.8Microsoft is aware of a vulnerability in Servicing Stack that has rolled back the fixes for some vulnerabilities affecti...
CVE-2024-43455CRITICAL9.8Windows Remote Desktop Licensing Service Spoofing Vulnerability
CVE-2024-38240CRITICAL9.8Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
CVE-2024-38225CRITICAL9.8Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability
CVE-2024-38220CRITICAL9Azure Stack Hub Elevation of Privilege Vulnerability
CVE-2024-38216CRITICAL9Azure Stack Hub Elevation of Privilege Vulnerability
CVE-2024-38194CRITICAL9.9An authenticated attacker can exploit an improper authorization vulnerability in Azure Web Apps to elevate privileges ov...
CVE-2024-37980CRITICAL9.8Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2024-37341CRITICAL9.8Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2024-21416CRITICAL9.8Windows TCP/IP Remote Code Execution Vulnerability
CVE-2024-45595CRITICAL9.8D-Tale is a visualizer for Pandas data structures. Users hosting D-Tale publicly can be vulnerable to remote code execut...
CVE-2024-44677CRITICAL9.8eladmin v2.7 and before is vulnerable to Server-Side Request Forgery (SSRF) which allows an attacker to execute arbitrar...
CVE-2024-8654CRITICAL9.8MongoDB Server may access non-initialized region of memory leading to unexpected behaviour when zero arguments are calle...
CVE-2024-40754CRITICAL9.8Heap-based Buffer Overflow vulnerability in Samsung Open Source Escargot JavaScript engine allows Overflow Buffers.This ...
CVE-2024-45032CRITICAL10A vulnerability has been identified in Industrial Edge Management Pro (All versions < V1.9.5), Industrial Edge Managemen...
CVE-2024-44087CRITICAL9.2A vulnerability has been identified in Automation License Manager V5 (All versions), Automation License Manager V6.0 (Al...
CVE-2024-41171CRITICAL9.3A vulnerability has been identified in SINUMERIK 828D V4 (All versions), SINUMERIK 828D V5 (All versions < V5.24), SINUM...
CVE-2024-37995CRITICAL9.1A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC R...
CVE-2024-35783CRITICAL9.4A vulnerability has been identified in SIMATIC BATCH V9.1 (All versions), SIMATIC Information Server 2020 (All versions ...
CVE-2024-33698CRITICAL9.8A vulnerability has been identified in Opcenter Quality (All versions < V2406), Opcenter RDnL (All versions < V2410), SI...
CVE-2024-39583CRITICAL9.8Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a Use of a Broken or Risky Cryptographic Algorithm vulnera...
CVE-2024-39581CRITICAL9.8Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a File or Directories Accessible to External Parties vulne...
CVE-2024-6596CRITICAL9.8An unauthenticated remote attacker can run malicious c# code included in curve files and execute commands in the users c...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now