2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-8503CRITICAL9.8An unauthenticated attacker can leverage a time-based SQL injection vulnerability in VICIdial to enumerate database reco...
CVE-2024-43040CRITICAL9.1Renwoxing Enterprise Intelligent Management System before v3.0 was discovered to contain a SQL injection vulnerability v...
CVE-2024-45409CRITICAL9.8The Ruby SAML library is for implementing the client side of a SAML authorization. Ruby-SAML in <= 12.2 and 1.13.0 <= 1....
CVE-2024-44893CRITICAL9.8An issue in the component /jeecg-boot/jmreport/dict/list of JimuReport v1.7.8 allows attacker to escalate privileges via...
CVE-2024-43491CRITICAL9.8Microsoft is aware of a vulnerability in Servicing Stack that has rolled back the fixes for some vulnerabilities affecti...
CVE-2024-43455CRITICAL9.8Windows Remote Desktop Licensing Service Spoofing Vulnerability
CVE-2024-38240CRITICAL9.8Windows Remote Access Connection Manager Elevation of Privilege Vulnerability
CVE-2024-38225CRITICAL9.8Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability
CVE-2024-38220CRITICAL9Azure Stack Hub Elevation of Privilege Vulnerability
CVE-2024-38216CRITICAL9Azure Stack Hub Elevation of Privilege Vulnerability
CVE-2024-38194CRITICAL9.9An authenticated attacker can exploit an improper authorization vulnerability in Azure Web Apps to elevate privileges ov...
CVE-2024-37980CRITICAL9.8Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2024-37341CRITICAL9.8Microsoft SQL Server Elevation of Privilege Vulnerability
CVE-2024-21416CRITICAL9.8Windows TCP/IP Remote Code Execution Vulnerability
CVE-2024-45595CRITICAL9.8D-Tale is a visualizer for Pandas data structures. Users hosting D-Tale publicly can be vulnerable to remote code execut...
CVE-2024-44677CRITICAL9.8eladmin v2.7 and before is vulnerable to Server-Side Request Forgery (SSRF) which allows an attacker to execute arbitrar...
CVE-2024-8654CRITICAL9.8MongoDB Server may access non-initialized region of memory leading to unexpected behaviour when zero arguments are calle...
CVE-2024-40754CRITICAL9.8Heap-based Buffer Overflow vulnerability in Samsung Open Source Escargot JavaScript engine allows Overflow Buffers.This ...
CVE-2024-45032CRITICAL10A vulnerability has been identified in Industrial Edge Management Pro (All versions < V1.9.5), Industrial Edge Managemen...
CVE-2024-44087CRITICAL9.2A vulnerability has been identified in Automation License Manager V5 (All versions), Automation License Manager V6.0 (Al...
CVE-2024-41171CRITICAL9.3A vulnerability has been identified in SINUMERIK 828D V4 (All versions), SINUMERIK 828D V5 (All versions < V5.24), SINUM...
CVE-2024-37995CRITICAL9.1A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC R...
CVE-2024-35783CRITICAL9.4A vulnerability has been identified in SIMATIC BATCH V9.1 (All versions), SIMATIC Information Server 2020 (All versions ...
CVE-2024-33698CRITICAL9.8A vulnerability has been identified in Opcenter Quality (All versions < V2406), Opcenter RDnL (All versions < V2410), SI...
CVE-2024-39583CRITICAL9.8Dell PowerScale InsightIQ, versions 5.0 through 5.1, contains a Use of a Broken or Risky Cryptographic Algorithm vulnera...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now