2024 CVE Vulnerabilities

39,219 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-13811MEDIUM4.3The Lafka - Multi Store Burger - Pizza & Food Delivery WooCommerce Theme theme for WordPress is vulnerable to unauthoriz...
CVE-2024-13810MEDIUM4.3The Zass - WooCommerce Theme for Handmade Artists and Artisans theme for WordPress is vulnerable to unauthorized access ...
CVE-2024-13809MEDIUM6.5The Hero Slider - WordPress Slider Plugin plugin for WordPress is vulnerable to SQL Injection via several parameters in ...
CVE-2024-13787CRITICAL9.8The VEDA - MultiPurpose WordPress Theme theme for WordPress is vulnerable to PHP Object Injection in all versions up to,...
CVE-2024-13780MEDIUM6.5The Hero Mega Menu - Responsive WordPress Menu Plugin plugin for WordPress is vulnerable to arbitrary file deletion due ...
CVE-2024-13779MEDIUM6.1The Hero Mega Menu - Responsive WordPress Menu Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripti...
CVE-2024-13778MEDIUM6.5The Hero Mega Menu - Responsive WordPress Menu Plugin plugin for WordPress is vulnerable to SQL Injection via several fu...
CVE-2024-13777CRITICAL9.8The ZoomSounds - WordPress Wave Audio Player with Playlist plugin for WordPress is vulnerable to PHP Object Injection in...
CVE-2024-13757MEDIUM5.4The Master Slider – Responsive Touch Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl...
CVE-2024-13747MEDIUM4.3The WooMail - WooCommerce Email Customizer plugin for WordPress is vulnerable to unauthorized loss of data due to a miss...
CVE-2024-13232HIGH8.8The WordPress Awesome Import & Export Plugin - Import & Export WordPress Data plugin for WordPress is vulnerable arbitra...
CVE-2024-12815MEDIUM6.4The Point Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'point_maker' shortco...
CVE-2024-11731MEDIUM5.4The Master Slider – Responsive Touch Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl...
CVE-2024-8682MEDIUM5.3The JNews - WordPress Newspaper Magazine Blog AMP Theme theme for WordPress is vulnerable to unauthorized user registrat...
CVE-2024-13866MEDIUM6.4The Simple Notification plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and inc...
CVE-2024-13827MEDIUM6.1The Razorpay Subscription Button Elementor Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting d...
CVE-2024-13350MEDIUM5.4The SearchIQ – The Search Solution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 's...
CVE-2024-0141MEDIUM6.8NVIDIA Hopper HGX for 8-GPU contains a vulnerability in the GPU vBIOS that may allow a malicious actor with tenant level...
CVE-2024-0114HIGH8.1NVIDIA Hopper HGX for 8-GPU contains a vulnerability in the HGX Management Controller (HMC) that may allow a malicious a...
CVE-2024-9135MEDIUM5.3On affected platforms running Arista EOS with BGP Link State configured, BGP peer flap can cause the BGP agent to leak m...
CVE-2024-8000MEDIUM5.3On affected platforms running Arista EOS with 802.1X configured, certain conditions may occur where a dynamic ACL is rec...
CVE-2024-41147CRITICAL9.8An out-of-bounds write vulnerability exists in the ma_dr_flac__decode_samples__lpc functionality of Miniaudio miniaudio ...
CVE-2024-10930HIGH7.8An Uncontrolled Search Path Element vulnerability exists which could allow a malicious actor to perform DLL hijacking an...
CVE-2024-50707CRITICAL10Unauthenticated remote code execution vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to exec...
CVE-2024-50704CRITICAL10Unauthenticated remote code execution vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to exec...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now