CISA's list that day

13 August 2024

On CISA added 6 vulnerabilities to its list of exploited vulnerabilities, in Microsoft Windows and Microsoft Project. US federal agencies must fix them by .

Added that day

Added that day
VulnerabilityProductOur groupListedDeadlineEPSS
CVE-2024-38178Scripting Engine Memory CorruptionMicrosoft WindowsPatch soon0.41
CVE-2024-38193Ancillary Function Driver for WinSock Privilege EscalationMicrosoft WindowsPatch soon0.29
CVE-2024-38213SmartScreen Security Feature BypassMicrosoft WindowsPatch soon0.14
CVE-2024-38189Remote Code ExecutionMicrosoft ProjectPatch soon0.08
CVE-2024-38106Kernel Privilege EscalationMicrosoft WindowsPatch soon0.06
CVE-2024-38107Power Dependency Coordinator Privilege EscalationMicrosoft WindowsPatch soon0.02

Our record of CISA's changes begins on 24 January 2025. For earlier days this page lists the entries CISA dates to this day; changes CISA made that day are not known to us.