Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-10-09 CVE-2024-9680 Use After Free vulnerability in multiple products
An attacker was able to achieve code execution in the content process by exploiting a use-after-free in Animation timelines.
network
low complexity
mozilla debian CWE-416
critical
9.8
2024-10-09 CVE-2024-32608 Out-of-bounds Write vulnerability in Hdfgroup Hdf5
HDF5 library through 1.14.3 has memory corruption in H5A__close resulting in the corruption of the instruction pointer and causing denial of service or potential code execution.
network
low complexity
hdfgroup CWE-787
critical
9.8
2024-10-08 CVE-2024-38124 Unspecified vulnerability in Microsoft products
Windows Netlogon Elevation of Privilege Vulnerability
low complexity
microsoft
critical
9.0
2024-10-08 CVE-2024-43488 Unspecified vulnerability in Microsoft Visual Studio Code
Missing authentication for critical function in Visual Studio Code extension for Arduino allows an unauthenticated attacker to perform remote code execution through network attack vector.
network
low complexity
microsoft
critical
9.8
2024-10-08 CVE-2024-43591 Unspecified vulnerability in Microsoft Azure CLI and Azure Service Connector
Azure Command Line Integration (CLI) Elevation of Privilege Vulnerability
network
low complexity
microsoft
critical
9.1
2024-10-08 CVE-2024-47009 Path Traversal vulnerability in Ivanti Avalanche
Path Traversal in Ivanti Avalanche before version 6.4.5 allows a remote unauthenticated attacker to bypass authentication.
network
low complexity
ivanti CWE-22
critical
9.8
2024-10-08 CVE-2024-47010 Path Traversal vulnerability in Ivanti Avalanche
Path Traversal in Ivanti Avalanche before version 6.4.5 allows a remote unauthenticated attacker to bypass authentication.
network
low complexity
ivanti CWE-22
critical
9.8
2024-10-08 CVE-2024-47553 Argument Injection or Modification vulnerability in Siemens Sinec Security Monitor
A vulnerability has been identified in Siemens SINEC Security Monitor (All versions < V4.9.0).
network
low complexity
siemens CWE-88
critical
9.9
2024-10-07 CVE-2024-47556 Path Traversal vulnerability in Xerox Freeflow Core
Pre-Auth RCE via Path Traversal
network
low complexity
xerox CWE-22
critical
9.8
2024-10-07 CVE-2024-47557 Path Traversal vulnerability in Xerox Freeflow Core
Pre-Auth RCE via Path Traversal
network
low complexity
xerox CWE-22
critical
9.8