CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2024-21347

    Last Modified: 10 Aug 2026

    Microsoft ODBC Driver Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    7.8
    High

    CVE-2024-21346

    Last Modified: 10 Aug 2026

    Win32k Elevation of Privilege Vulnerability

    Published: 13 Feb 2024
    8.8
    High

    CVE-2024-21345

    Last Modified: 10 Aug 2026

    Windows Kernel Elevation of Privilege Vulnerability

    Published: 13 Feb 2024
    5.9
    Medium

    CVE-2024-21344

    Last Modified: 10 Aug 2026

    Windows Network Address Translation (NAT) Denial of Service Vulnerability

    Published: 13 Feb 2024
    5.9
    Medium

    CVE-2024-21343

    Last Modified: 10 Aug 2026

    Windows Network Address Translation (NAT) Denial of Service Vulnerability

    Published: 13 Feb 2024
    7.5
    High

    CVE-2024-21342

    Last Modified: 10 Aug 2026

    Windows DNS Client Denial of Service Vulnerability

    Published: 13 Feb 2024
    6.8
    Medium

    CVE-2024-21341

    Last Modified: 10 Aug 2026

    Windows Kernel Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    6.4
    Medium

    CVE-2024-21339

    Last Modified: 10 Aug 2026

    Windows USB Generic Parent Driver Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    6.5
    Medium

    CVE-2024-20684

    Last Modified: 10 Aug 2026

    Windows Hyper-V Denial of Service Vulnerability

    Published: 13 Feb 2024
    7.6
    High

    CVE-2024-21328

    Last Modified: 3 May 2025

    Dynamics 365 Sales Spoofing Vulnerability

    Published: 13 Feb 2024
    5.7
    Medium

    CVE-2024-20695

    Last Modified: 10 Aug 2026

    Skype for Business Information Disclosure Vulnerability

    Published: 13 Feb 2024
    7.8
    High

    CVE-2024-21315

    Last Modified: 10 Aug 2026

    Microsoft Defender for Endpoint Protection Elevation of Privilege Vulnerability

    Published: 13 Feb 2024
    4.1
    Medium

    CVE-2024-21304

    Last Modified: 10 Aug 2026

    Trusted Compute Base Elevation of Privilege Vulnerability

    Published: 13 Feb 2024
    6.5
    Medium

    CVE-2024-20679

    Last Modified: 3 May 2025

    Azure Stack Hub Spoofing Vulnerability

    Published: 13 Feb 2024
    7.8
    High

    CVE-2024-20673

    Last Modified: 10 Aug 2026

    Microsoft Office Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    8.8
    High

    CVE-2024-21420

    Last Modified: 10 Aug 2026

    Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    9.8
    Critical

    CVE-2024-21413

    Last Modified: 28 Oct 2025

    Microsoft Outlook Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    7.1
    High

    CVE-2024-21402

    Last Modified: 9 May 2025

    Microsoft Outlook Elevation of Privilege Vulnerability

    Published: 13 Feb 2024
    9.8
    Critical

    CVE-2024-21401

    Last Modified: 3 May 2025

    Microsoft Entra Jira Single-Sign-On Plugin Elevation of Privilege Vulnerability

    Published: 13 Feb 2024
    7.6
    High

    CVE-2024-21396

    Last Modified: 9 May 2025

    Dynamics 365 Sales Spoofing Vulnerability

    Published: 13 Feb 2024
    7.6
    High

    CVE-2024-21394

    Last Modified: 3 May 2025

    Dynamics 365 Field Service Spoofing Vulnerability

    Published: 13 Feb 2024
    7.6
    High

    CVE-2024-21393

    Last Modified: 3 May 2025

    Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability

    Published: 13 Feb 2024
    7.6
    High

    CVE-2024-21389

    Last Modified: 3 May 2025

    Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability

    Published: 13 Feb 2024
    6.8
    Medium

    CVE-2024-21381

    Last Modified: 10 Aug 2026

    Microsoft Azure Active Directory B2C Spoofing Vulnerability

    Published: 13 Feb 2024
    7.8
    High

    CVE-2024-21379

    Last Modified: 10 Aug 2026

    Microsoft Word Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    8.8
    High

    CVE-2024-21375

    Last Modified: 10 Aug 2026

    Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    8.8
    High

    CVE-2024-21372

    Last Modified: 10 Aug 2026

    Windows OLE Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    7
    High

    CVE-2024-21371

    Last Modified: 10 Aug 2026

    Windows Kernel Elevation of Privilege Vulnerability

    Published: 13 Feb 2024
    8.8
    High

    CVE-2024-21369

    Last Modified: 10 Aug 2026

    Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    8.8
    High

    CVE-2024-21366

    Last Modified: 10 Aug 2026

    Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    8.8
    High

    CVE-2024-21361

    Last Modified: 10 Aug 2026

    Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    8.8
    High

    CVE-2024-21360

    Last Modified: 10 Aug 2026

    Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    8.8
    High

    CVE-2024-21358

    Last Modified: 10 Aug 2026

    Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    8.1
    High

    CVE-2024-21357

    Last Modified: 10 Aug 2026

    Windows Pragmatic General Multicast (PGM) Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    7.8
    High

    CVE-2024-21354

    Last Modified: 10 Aug 2026

    Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability

    Published: 13 Feb 2024
    8.8
    High

    CVE-2024-21352

    Last Modified: 10 Aug 2026

    Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    7.6
    High

    CVE-2024-21351

    Last Modified: 28 Oct 2025

    Windows SmartScreen Security Feature Bypass Vulnerability

    Published: 13 Feb 2024
    8.8
    High

    CVE-2024-21350

    Last Modified: 10 Aug 2026

    Microsoft WDAC OLE DB provider for SQL Server Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    8.8
    High

    CVE-2024-21349

    Last Modified: 10 Aug 2026

    Microsoft ActiveX Data Objects Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    4.6
    Medium

    CVE-2024-21340

    Last Modified: 10 Aug 2026

    Windows Kernel Information Disclosure Vulnerability

    Published: 13 Feb 2024
    7.8
    High

    CVE-2024-21338

    Last Modified: 28 Oct 2025

    Windows Kernel Elevation of Privilege Vulnerability

    Published: 13 Feb 2024
    7.3
    High

    CVE-2024-21329

    Last Modified: 3 May 2025

    Azure Connected Machine Agent Elevation of Privilege Vulnerability

    Published: 13 Feb 2024
    7.6
    High

    CVE-2024-21327

    Last Modified: 9 May 2025

    Microsoft Dynamics 365 Customer Engagement Cross-Site Scripting Vulnerability

    Published: 13 Feb 2024
    7.5
    High

    CVE-2024-20667

    Last Modified: 10 Aug 2026

    Azure DevOps Server Remote Code Execution Vulnerability

    Published: 13 Feb 2024
    3.3
    Low

    CVE-2023-20570

    Last Modified: 22 Mar 2025

    Insufficient verification of data authenticity in the configuration state machine may allow a local attacker to potentially load arbitrary bitstreams.

    Published: 13 Feb 2024
    7.1
    High

    CVE-2024-23440

    Last Modified: 19 May 2025

    Vba32 Antivirus v3.36.0 is vulnerable to an Arbitrary Memory Read vulnerability. The 0x22200B IOCTL code of the Vba32m64.sys driver allows to read up to 0x802 of memory from ar arbitrary user-supplied pointer.

    Published: 13 Feb 2024
    7.1
    High

    CVE-2024-23439

    Last Modified: 19 May 2025

    Vba32 Antivirus v3.36.0 is vulnerable to an Arbitrary Memory Read vulnerability by triggering the 0x22201B, 0x22201F, 0x222023, 0x222027 ,0x22202B, 0x22202F, 0x22203F, 0x222057 and 0x22205B IOCTL codes of the Vba32m64.sys driver.

    Published: 13 Feb 2024
    9.1
    Critical

    CVE-2024-1378

    Last Modified: 21 Nov 2024

    A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console to gain admin SSH access to the appliance via nomad templates when configuring SMTP options. Exploitation of this vulnerability required access to the GitHub Enterprise Server instance and access to the Management Console with the editor role. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.12 and was fixed in versions 3.11.5, 3.10.7, 3.9.10, and 3.8.15. This vulnerability was reported via the GitHub Bug Bounty program https://bounty.github.com .

    Published: 13 Feb 2024
    9.1
    Critical

    CVE-2024-1374

    Last Modified: 9 May 2025

    A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console to gain admin SSH access to the appliance via nomad templates when configuring audit log forwarding. Exploitation of this vulnerability required access to the GitHub Enterprise Server instance and access to the Management Console with the editor role. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.12 and was fixed in versions 3.11.5, 3.10.7, 3.9.10, and 3.8.15. This vulnerability was reported via the GitHub Bug Bounty program https://bounty.github.com .

    Published: 13 Feb 2024
    9.1
    Critical

    CVE-2024-1372

    Last Modified: 9 May 2025

    A command injection vulnerability was identified in GitHub Enterprise Server that allowed an attacker with an editor role in the Management Console to gain admin SSH access to the appliance when configuring SAML settings. Exploitation of this vulnerability required access to the GitHub Enterprise Server instance and access to the Management Console with the editor role. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.12 and was fixed in versions 3.11.5, 3.10.7, 3.9.10, and 3.8.15. This vulnerability was reported via the GitHub Bug Bounty program https://bounty.github.com .

    Published: 13 Feb 2024