CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2024-23198

    Last Modified: 25 Sept 2025

    Improper input validation in firmware for some Intel(R) PROSet/Wireless Software and Intel(R) Killer(TM) Wi-Fi products before version 23.40 may allow an unauthenticated user to enable denial of service via adjacent access.

    Published: 13 Nov 2024
    4.8
    Medium

    CVE-2024-25565

    Last Modified: 15 Apr 2026

    Insufficient control flow management in UEFI firmware for some Intel(R) Xeon(R) Processors may allow an authenticated user to enable denial of service via local access.

    Published: 13 Nov 2024
    8.5
    High

    CVE-2024-21820

    Last Modified: 15 Apr 2026

    Incorrect default permissions in some Intel(R) Xeon(R) processor memory controller configurations when using Intel(R) SGX may allow a privileged user to potentially enable escalation of privilege via local access.

    Published: 13 Nov 2024
    8.8
    High

    CVE-2024-23918

    Last Modified: 15 Apr 2026

    Improper conditions check in some Intel(R) Xeon(R) processor memory controller configurations when using Intel(R) SGX may allow a privileged user to potentially enable escalation of privilege via local access.

    Published: 13 Nov 2024
    8.3
    High

    CVE-2024-21850

    Last Modified: 15 Apr 2026

    Sensitive information in resource not removed before reuse in some Intel(R) TDX Seamldr module software before version 1.5.02.00 may allow a privileged user to potentially enable escalation of privilege via local access.

    Published: 13 Nov 2024
    6.8
    Medium

    CVE-2024-29076

    Last Modified: 15 Apr 2026

    Uncaught exception for some Intel(R) CST software before version 8.7.10803 may allow an authenticated user to potentially enable denial of service via local access.

    Published: 13 Nov 2024
    7.3
    High

    CVE-2024-43093

    Last Modified: 23 Oct 2025

    In shouldHideDocument of ExternalStorageProvider.java, there is a possible bypass of a file path filter designed to prevent access to sensitive directories due to incorrect unicode normalization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

    Published: 13 Nov 2024
    9.8
    Critical

    CVE-2024-43091

    Last Modified: 17 Dec 2024

    In filterMask of SkEmbossMaskFilter.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    5
    Medium

    CVE-2024-43090

    Last Modified: 26 Aug 2025

    In multiple locations, there is a possible cross-user image read due to a missing permission check. This could lead to local information disclosure with User execution privileges needed. User interaction is needed for exploitation.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2024-43089

    Last Modified: 17 Dec 2024

    In updateInternal of MediaProvider.java , there is a possible access of another app's files due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2024-43088

    Last Modified: 17 Dec 2024

    In multiple functions in AppInfoBase.java, there is a possible way to manipulate app permission settings belonging to another user on the device due to a missing permission check. This could lead to local escalation of privilege across user boundaries with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2024-43087

    Last Modified: 18 Dec 2024

    In getInstalledAccessibilityPreferences of AccessibilitySettings.java, there is a possible way to hide an enabled accessibility service in the accessibility service settings due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

    Published: 13 Nov 2024
    5.5
    Medium

    CVE-2024-43086

    Last Modified: 18 Dec 2024

    In validateAccountsInternal of AccountManagerService.java, there is a possible way to leak account credentials to a third party app due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2024-43085

    Last Modified: 18 Dec 2024

    In handleMessage of UsbDeviceManager.java, there is a possible method to access device contents over USB without unlocking the device due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    5.5
    Medium

    CVE-2024-43084

    Last Modified: 13 Mar 2025

    In visitUris of multiple files, there is a possible information disclosure due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    5.5
    Medium

    CVE-2024-43083

    Last Modified: 17 Dec 2024

    In validate of WifiConfigurationUtil.java , there is a possible persistent denial of service due to resource exhaustion. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    5.5
    Medium

    CVE-2024-43082

    Last Modified: 17 Dec 2024

    In onActivityResult of EditUserPhotoController.java, there is a possible cross-user media read due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2024-43081

    Last Modified: 17 Dec 2024

    In installExistingPackageAsUser of InstallPackageHelper.java, there is a possible carrier restriction bypass due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2024-43080

    Last Modified: 17 Dec 2024

    In onReceive of AppRestrictionsFragment.java, there is a possible escalation of privilege due to unsafe deserialization. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2024-40671

    Last Modified: 17 Dec 2024

    In DevmemIntChangeSparse2 of devicemem_server.c, there is a possible way to achieve arbitrary code execution due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2024-40661

    Last Modified: 17 Dec 2024

    In mayAdminGrantPermission of AdminRestrictedPermissionsUtils.java, there is a possible way to access the microphone due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2024-40660

    Last Modified: 17 Dec 2024

    In setTransactionState of SurfaceFlinger.cpp, there is a possible way to change protected display attributes due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    5.3
    Medium

    CVE-2024-49379

    Last Modified: 15 Apr 2026

    Umbrel is a home server OS for self-hosting. The login functionality of Umbrel before version 1.2.2 contains a reflected cross-site scripting (XSS) vulnerability in use-auth.tsx. An attacker can specify a malicious redirect query parameter to trigger the vulnerability. If a JavaScript URL is passed to the redirect parameter the attacker provided JavaScript will be executed after the user entered their password and clicked on login. This vulnerability is fixed in 1.2.2.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2024-34747

    Last Modified: 17 Dec 2024

    In DevmemXIntMapPages of devicemem_server.c, there is a possible use-after-free due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2024-34729

    Last Modified: 17 Dec 2024

    In multiple locations, there is a possible arbitrary code execution due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2024-34719

    Last Modified: 17 Dec 2024

    In multiple locations, there is a possible permissions bypass due to a missing null check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2024-31337

    Last Modified: 17 Dec 2024

    In PVRSRVRGXKickTA3DKM of rgxta3d.c, there is a possible arbitrary code execution due to improper input validation. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2024-23715

    Last Modified: 20 Nov 2024

    In PMRWritePMPageList of pmr.c, there is a possible out of bounds write due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2023-35686

    Last Modified: 20 Nov 2024

    In PVRSRVRGXKickTA3DKM of rgxta3d.c, there is a possible arbitrary code execution due to improper input validation. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    7.8
    High

    CVE-2023-35659

    Last Modified: 20 Nov 2024

    In DevmemIntChangeSparse of devicemem_server.c, there is a possible arbitrary code execution due to a logic error in the code. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.

    Published: 13 Nov 2024
    5.1
    Medium

    CVE-2024-9476

    Last Modified: 15 Apr 2026

    A vulnerability in Grafana Labs Grafana OSS and Enterprise allows Privilege Escalation allows users to gain access to resources from other organizations within the same Grafana instance via the Grafana Cloud Migration Assistant.This vulnerability will only affect users who utilize the Organizations feature to isolate resources on their Grafana instance.

    Published: 13 Nov 2024
    7.7
    High

    CVE-2024-45594

    Last Modified: 15 Nov 2024

    Decidim is a participatory democracy framework. The meeting embeds feature used in the online or hybrid meetings is subject to potential XSS attack through a malformed URL. This vulnerability is fixed in 0.28.3 and 0.29.0.

    Published: 13 Nov 2024
    7.5
    High

    CVE-2024-51996

    Last Modified: 15 Apr 2026

    Symphony process is a module for the Symphony PHP framework which executes commands in sub-processes. When consuming a persisted remember-me cookie, Symfony does not check if the username persisted in the database matches the username attached with the cookie, leading to authentication bypass. This vulnerability is fixed in 5.4.47, 6.4.15, and 7.1.8.

    Published: 13 Nov 2024
    8.4
    High

    CVE-2024-52291

    Last Modified: 19 Nov 2024

    Craft is a content management system (CMS). A vulnerability in CraftCMS allows an attacker to bypass local file system validation by utilizing a double file:// scheme (e.g., file://file:////). This enables the attacker to specify sensitive folders as the file system, leading to potential file overwriting through malicious uploads, unauthorized access to sensitive files, and, under certain conditions, remote code execution (RCE) via Server-Side Template Injection (SSTI) payloads. Note that this will only work if you have an authenticated administrator account with allowAdminChanges enabled. This is fixed in 5.4.6 and 4.12.5.

    Published: 13 Nov 2024
    8
    High

    CVE-2024-9413

    Last Modified: 23 Dec 2025

    The transport_message_handler function in SCP-Firmware release versions 2.11.0-2.15.0 does not properly handle errors, potentially allowing an Application Processor (AP) to cause a buffer overflow in System Control Processor (SCP) firmware.

    Published: 13 Nov 2024
    7.7
    High

    CVE-2024-52292

    Last Modified: 19 Nov 2024

    Craft is a content management system (CMS). The dataUrl function can be exploited if an attacker has write permissions on system notification templates. This function accepts an absolute file path, reads the file's content, and converts it into a Base64-encoded string. By embedding this function within a system notification template, the attacker can exfiltrate the Base64-encoded file content through a triggered system email notification. Once the email is received, the Base64 payload can be decoded, allowing the attacker to read arbitrary files on the server. This is fixed in 5.4.9 and 4.12.8.

    Published: 13 Nov 2024
    7.2
    High

    CVE-2024-52293

    Last Modified: 19 Nov 2024

    Craft is a content management system (CMS). Prior to 4.12.2 and 5.4.3, Craft is missing normalizePath in the function FileHelper::absolutePath could lead to Remote Code Execution on the server via twig SSTI. This is a sequel to CVE-2023-40035. This vulnerability is fixed in 4.12.2 and 5.4.3.

    Published: 13 Nov 2024
    9.3
    Critical

    CVE-2024-52295

    Last Modified: 20 Feb 2025

    DataEase is an open source data visualization analysis tool. Prior to 2.10.2, DataEase allows attackers to forge jwt and take over services. The JWT secret is hardcoded in the code, and the UID and OID are hardcoded. The vulnerability has been fixed in v2.10.2.

    Published: 13 Nov 2024
    7.5
    High

    CVE-2024-52298

    Last Modified: 18 Nov 2024

    macro-pdfviewer is a PDF Viewer Macro for XWiki using Mozilla pdf.js. The PDF Viewer macro allows an attacker to view any attachment using the "Delegate my view right" feature as long as the attacker can view a page whose last author has access to the attachment. For this, the attacker only needs to provide the reference to a PDF file to the macro. To obtain the reference of the desired attachment, the attacker can access the Page Index, Attachments tab. Even if the UI shows N/A, the user can inspect the page and check the HTTP request that fetches the live data entries. The attachment URL is available in the returned JSON for all attachments, including protected ones and allows getting the necessary values. This vulnerability is fixed in version 2.5.6.

    Published: 13 Nov 2024
    7.5
    High

    CVE-2024-52299

    Last Modified: 18 Nov 2024

    macro-pdfviewer is a PDF Viewer Macro for XWiki using Mozilla pdf.js. Any user with view right on XWiki.PDFViewerService can access any attachment stored in the wiki as the "key" that is passed to prevent this is computed incorrectly, calling skip on the digest stream doesn't update the digest. This is fixed in 2.5.6.

    Published: 13 Nov 2024
    9
    Critical

    CVE-2024-52300

    Last Modified: 18 Nov 2024

    macro-pdfviewer is a PDF Viewer Macro for XWiki using Mozilla pdf.js. The width parameter of the PDF viewer macro isn't properly escaped, allowing XSS for any user who can edit a page. XSS can impact the confidentiality, integrity and availability of the whole XWiki installation when an admin visits the page with the malicious code. This is fixed in 2.5.6.

    Published: 13 Nov 2024
    7.1
    High

    CVE-2024-7295

    Last Modified: 18 Nov 2024

    In Progress® Telerik® Report Server versions prior to 2024 Q4 (10.3.24.1112), the encryption of local asset data used an older algorithm which may allow a sophisticated actor to decrypt this information.

    Published: 13 Nov 2024
    6.5
    Medium

    CVE-2024-8049

    Last Modified: 18 Nov 2024

    In Progress Telerik Document Processing Libraries, versions prior to 2024 Q4 (2024.4.1106), importing a document with unsupported features can lead to excessive processing, leading to excessive use of computing resources leaving the application process unavailable.

    Published: 13 Nov 2024
    6.5
    Medium

    CVE-2024-52305

    Last Modified: 19 Nov 2024

    UnoPim is an open-source Product Information Management (PIM) system built on the Laravel framework. A vulnerability exists in the Create User process, allowing the creation of a new admin account with an option to upload a profile image. An attacker can upload a malicious SVG file containing an embedded script. When the profile image is accessed, the embedded script executes, leading to the potential theft of session cookies. This vulnerability is fixed in 0.1.5.

    Published: 13 Nov 2024
    7.6
    High

    CVE-2024-52306

    Last Modified: 19 Nov 2024

    FileManager provides a Backpack admin interface for files and folder. Prior to 3.0.9, deserialization of untrusted data from the mimes parameter could lead to remote code execution. This vulnerability is fixed in 3.0.9.

    Published: 13 Nov 2024
    7
    High

    CVE-2024-49504

    Last Modified: 15 Apr 2026

    grub2 allowed attackers with access to the grub shell to access files on the encrypted disks.

    Published: 13 Nov 2024
    —
    Unknown

    CVE-2024-11191

    Last Modified: 11 Feb 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 13 Nov 2024
    4.6
    Medium

    CVE-2024-9477

    Last Modified: 2 Jun 2026

    Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in AirTies Air4443 Firmware allows Cross-Site Scripting (XSS). This issue affects Air4443 Firmware: through 14102024. NOTE: The vendor was contacted and it was learned that the product classified as End-of-Life and End-of-Support.

    Published: 13 Nov 2024
    4.3
    Medium

    CVE-2024-48900

    Last Modified: 13 Jun 2025

    A vulnerability was found in Moodle. Additional checks are required to ensure users with permission to view badge recipients can only access lists of those they are intended to have access to.

    Published: 13 Nov 2024
    5.3
    Medium

    CVE-2024-49505

    Last Modified: 14 Nov 2024

    A Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in openSUSE Tumbleweed MirrorCache allows the execution of arbitrary JS via reflected XSS in the  REGEX and P parameters. This issue affects MirrorCache before 1.083.

    Published: 13 Nov 2024