2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-4474MEDIUM4.3The WP Logs Book WordPress plugin through 1.0.1 does not have CSRF check in place when updating its settings, which coul...
CVE-2024-4384MEDIUM4.8The CSSable Countdown WordPress plugin through 1.5 does not sanitise and escape some of its settings, which could allow ...
CVE-2024-4382MEDIUM6.5The CB (legacy) WordPress plugin through 0.9.4.18 does not have CSRF checks in some bulk actions, which could allow atta...
CVE-2024-4381MEDIUM4.8The CB (legacy) WordPress plugin through 0.9.4.18 does not sanitise and escape some of its settings, which could allow h...
CVE-2024-4377MEDIUM5.4The DOP Shortcodes WordPress plugin through 1.2 does not validate and escape some of its shortcode attributes before out...
CVE-2024-5756CRITICAL9.8The Email Subscribers by Icegram Express – Email Marketing, Newsletters, Automation for WordPress & WooCommerce plugin f...
CVE-2024-5455HIGH8.8The Plus Addons for Elementor Page Builder plugin for WordPress is vulnerable to Local File Inclusion in all versions up...
CVE-2024-3961MEDIUM5.3The ConvertKit – Email Newsletter, Email Marketing, Subscribers and Landing Pages plugin for WordPress is vulnerable to ...
CVE-2024-6218CRITICAL9.8A vulnerability, which was classified as critical, has been found in itsourcecode Vehicle Management System 1.0. Affecte...
CVE-2024-6217HIGH8.8A vulnerability classified as critical was found in SourceCodester Food Ordering Management System 1.0. Affected by this...
CVE-2024-6216HIGH8.8A vulnerability classified as critical has been found in SourceCodester Food Ordering Management System 1.0. Affected is...
CVE-2024-6215HIGH8.8A vulnerability was found in SourceCodester Food Ordering Management System up to 1.0. It has been rated as critical. Th...
CVE-2024-5503HIGH8.8The WP Blog Post Layouts plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including...
CVE-2024-5344MEDIUM6.1The The Plus Addons for Elementor Page Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via ...
CVE-2024-3610MEDIUM5.3The WP Child Theme Generator plugin for WordPress is vulnerable to unauthorized modification of data due to a missing ca...
CVE-2024-1955MEDIUM4.3The Hide Dashboard Notifications plugin for WordPress is vulnerable to unauthorized modification of data due to a missin...
CVE-2024-1639MEDIUM6.5The License Manager for WooCommerce plugin for WordPress is vulnerable to unauthorized access of data due to a missing c...
CVE-2024-6214HIGH8.8A vulnerability was found in SourceCodester Food Ordering Management System 1.0. It has been declared as critical. This ...
CVE-2024-6213CRITICAL9.8A vulnerability was found in SourceCodester Food Ordering Management System up to 1.0. It has been classified as critica...
CVE-2024-6212MEDIUM6.1A vulnerability was found in SourceCodester Simple Student Attendance System 1.0 and classified as problematic. Affected...
CVE-2024-38361MEDIUM5.3Spicedb is an Open Source, Google Zanzibar-inspired permissions database to enable fine-grained authorization for custom...
CVE-2024-38359MEDIUM6.5The Lightning Network Daemon (lnd) - is a complete implementation of a Lightning Network node. A parsing vulnerability i...
CVE-2024-37899HIGH8XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. When an admin d...
CVE-2024-35246HIGH8.7An attacker may be able to cause a denial-of-service condition by sending many packets repeatedly.
CVE-2024-32943HIGH8.7An attacker may be able to cause a denial-of-service condition by sending many SSH packets repeatedly.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now