Search
CVE Explorer
Search the full tracked CVE corpus across every vendor — by keyword, vendor, severity, CVSS band and publication date. Server-rendered; each filtered view has its own URL.
01
Filters
Submit to refine — state is held in the URL.
02
Results
62,388 matching · page 890/1248Each CVE id links to its NVD record.
| CVE | Severity | CVSS | Summary | Published |
|---|---|---|---|---|
| CVE-2024-9680(opens NVD record) | Critical | 9.8 | An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animation timelines. We have had reports of this vulnerability being exploited in the wild. This vulnerability affects Firefox < 131.0.2, Firefox ESR < 128.3.1, Firefox ESR < 115.16.1, Thunderbird < 131.0.1, Thunderbird < 128.3.1, and Thunderbird < 115.16.0. | Oct 9, 2024 |
| CVE-2024-45720(opens NVD record) | High | 8.2 | On Windows platforms, a "best fit" character encoding conversion of command line arguments to Subversion's executables (e.g., svn.exe, etc.) may lead to unexpected command line argument interpretation, including argument injection and execution of other programs, if a specially crafted command line argument string is processed. All versions of Subversion up to and including Subversion 1.14.3 are affected on Windows platforms only. Users are recommended to upgrade to version Subversion 1.14.4, which fixes this issue. Subversion is not affected on UNIX-like platforms. | Oct 9, 2024 |
| CVE-2024-47420(opens NVD record) | Medium | 5.5 | Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Oct 9, 2024 |
| CVE-2024-47419(opens NVD record) | Medium | 5.5 | Animate versions 23.0.7, 24.0.4 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Oct 9, 2024 |
| CVE-2024-47418(opens NVD record) | High | 7.8 | Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Oct 9, 2024 |
| CVE-2024-47417(opens NVD record) | High | 7.8 | Animate versions 23.0.7, 24.0.4 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Oct 9, 2024 |
| CVE-2024-47416(opens NVD record) | High | 7.8 | Animate versions 23.0.7, 24.0.4 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Oct 9, 2024 |
| CVE-2024-47415(opens NVD record) | High | 7.8 | Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Oct 9, 2024 |
| CVE-2024-47414(opens NVD record) | High | 7.8 | Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Oct 9, 2024 |
| CVE-2024-47413(opens NVD record) | High | 7.8 | Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Oct 9, 2024 |
| CVE-2024-47412(opens NVD record) | High | 7.8 | Animate versions 23.0.7, 24.0.4 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Oct 9, 2024 |
| CVE-2024-47411(opens NVD record) | High | 7.8 | Animate versions 23.0.7, 24.0.4 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Oct 9, 2024 |
| CVE-2024-47410(opens NVD record) | High | 7.8 | Animate versions 23.0.7, 24.0.4 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Oct 9, 2024 |
| CVE-2024-45150(opens NVD record) | High | 7.8 | Dimension versions 4.0.3 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Oct 9, 2024 |
| CVE-2024-45146(opens NVD record) | High | 7.8 | Dimension versions 4.0.3 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | Oct 9, 2024 |
| CVE-2024-39586(opens NVD record) | Low | 2.9 | Dell AppSync Server, version 4.3 through 4.6, contains an XML External Entity Injection vulnerability. An adjacent high privileged attacker could potentially exploit this vulnerability, leading to information disclosure. | Oct 9, 2024 |
| CVE-2024-43616(opens NVD record) | High | 7.8 | Microsoft Office Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43615(opens NVD record) | High | 7.1 | Microsoft OpenSSH for Windows Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43614(opens NVD record) | Medium | 5.5 | Relative path traversal in Microsoft Defender for Endpoint allows an authorized attacker to perform spoofing locally. | Oct 8, 2024 |
| CVE-2024-43612(opens NVD record) | Medium | 6.9 | Power BI Report Server Spoofing Vulnerability | Oct 8, 2024 |
| CVE-2024-43611(opens NVD record) | High | 8.8 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43609(opens NVD record) | Medium | 6.5 | Microsoft Office Spoofing Vulnerability | Oct 8, 2024 |
| CVE-2024-43608(opens NVD record) | High | 8.8 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43607(opens NVD record) | High | 8.8 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43604(opens NVD record) | Medium | 5.7 | Outlook for Android Elevation of Privilege Vulnerability | Oct 8, 2024 |
| CVE-2024-43603(opens NVD record) | Medium | 5.5 | Visual Studio Collector Service Denial of Service Vulnerability | Oct 8, 2024 |
| CVE-2024-43601(opens NVD record) | High | 7.8 | Visual Studio Code for Linux Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43599(opens NVD record) | High | 8.8 | Remote Desktop Client Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43593(opens NVD record) | High | 8.8 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43592(opens NVD record) | High | 8.8 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43591(opens NVD record) | High | 8.7 | Azure Command Line Integration (CLI) Elevation of Privilege Vulnerability | Oct 8, 2024 |
| CVE-2024-43590(opens NVD record) | High | 7.8 | Visual C++ Redistributable Installer Elevation of Privilege Vulnerability | Oct 8, 2024 |
| CVE-2024-43589(opens NVD record) | High | 8.8 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43585(opens NVD record) | Medium | 5.5 | Code Integrity Guard Security Feature Bypass Vulnerability | Oct 8, 2024 |
| CVE-2024-43584(opens NVD record) | High | 7.7 | Windows Scripting Engine Security Feature Bypass Vulnerability | Oct 8, 2024 |
| CVE-2024-43583(opens NVD record) | High | 7.8 | Winlogon Elevation of Privilege Vulnerability | Oct 8, 2024 |
| CVE-2024-43582(opens NVD record) | High | 8.1 | Remote Desktop Protocol Server Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43581(opens NVD record) | High | 7.1 | Microsoft OpenSSH for Windows Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43576(opens NVD record) | High | 7.8 | Microsoft Office Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43575(opens NVD record) | High | 7.5 | Windows Hyper-V Denial of Service Vulnerability | Oct 8, 2024 |
| CVE-2024-43574(opens NVD record) | High | 8.3 | Microsoft Speech Application Programming Interface (SAPI) Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43573(opens NVD record) | Medium | 6.5 | Windows MSHTML Platform Spoofing Vulnerability | Oct 8, 2024 |
| CVE-2024-43572(opens NVD record) | High | 7.8 | Microsoft Management Console Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43571(opens NVD record) | Medium | 5.6 | Sudo for Windows Spoofing Vulnerability | Oct 8, 2024 |
| CVE-2024-43570(opens NVD record) | Medium | 6.4 | Windows Kernel Elevation of Privilege Vulnerability | Oct 8, 2024 |
| CVE-2024-43567(opens NVD record) | High | 7.5 | Windows Hyper-V Denial of Service Vulnerability | Oct 8, 2024 |
| CVE-2024-43565(opens NVD record) | High | 7.5 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | Oct 8, 2024 |
| CVE-2024-43564(opens NVD record) | High | 8.8 | Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability | Oct 8, 2024 |
| CVE-2024-43563(opens NVD record) | High | 7.8 | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability | Oct 8, 2024 |
| CVE-2024-43562(opens NVD record) | High | 7.5 | Windows Network Address Translation (NAT) Denial of Service Vulnerability | Oct 8, 2024 |