2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-13811 | MEDIUM | 4.3 | 0.2% | Mar 5, 2025 | The Lafka - Multi Store Burger - Pizza & Food Delivery WooCommerce Theme theme for WordPress is vulnerable to unauthoriz... |
| CVE-2024-13810 | MEDIUM | 4.3 | 0.2% | Mar 5, 2025 | The Zass - WooCommerce Theme for Handmade Artists and Artisans theme for WordPress is vulnerable to unauthorized access ... |
| CVE-2024-13809 | MEDIUM | 6.5 | 0.3% | Mar 5, 2025 | The Hero Slider - WordPress Slider Plugin plugin for WordPress is vulnerable to SQL Injection via several parameters in ... |
| CVE-2024-13787 | CRITICAL | 9.8 | 0.6% | Mar 5, 2025 | The VEDA - MultiPurpose WordPress Theme theme for WordPress is vulnerable to PHP Object Injection in all versions up to,... |
| CVE-2024-13780 | MEDIUM | 6.5 | 0.3% | Mar 5, 2025 | The Hero Mega Menu - Responsive WordPress Menu Plugin plugin for WordPress is vulnerable to arbitrary file deletion due ... |
| CVE-2024-13779 | MEDIUM | 6.1 | 0.2% | Mar 5, 2025 | The Hero Mega Menu - Responsive WordPress Menu Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripti... |
| CVE-2024-13778 | MEDIUM | 6.5 | 0.3% | Mar 5, 2025 | The Hero Mega Menu - Responsive WordPress Menu Plugin plugin for WordPress is vulnerable to SQL Injection via several fu... |
| CVE-2024-13777 | CRITICAL | 9.8 | 0.6% | Mar 5, 2025 | The ZoomSounds - WordPress Wave Audio Player with Playlist plugin for WordPress is vulnerable to PHP Object Injection in... |
| CVE-2024-13757 | MEDIUM | 5.4 | 0.3% | Mar 5, 2025 | The Master Slider – Responsive Touch Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl... |
| CVE-2024-13747 | MEDIUM | 4.3 | 0.2% | Mar 5, 2025 | The WooMail - WooCommerce Email Customizer plugin for WordPress is vulnerable to unauthorized loss of data due to a miss... |
| CVE-2024-13232 | HIGH | 8.8 | 0.4% | Mar 5, 2025 | The WordPress Awesome Import & Export Plugin - Import & Export WordPress Data plugin for WordPress is vulnerable arbitra... |
| CVE-2024-12815 | MEDIUM | 6.4 | 0.3% | Mar 5, 2025 | The Point Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'point_maker' shortco... |
| CVE-2024-11731 | MEDIUM | 5.4 | 0.3% | Mar 5, 2025 | The Master Slider – Responsive Touch Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl... |
| CVE-2024-8682 | MEDIUM | 5.3 | 0.3% | Mar 5, 2025 | The JNews - WordPress Newspaper Magazine Blog AMP Theme theme for WordPress is vulnerable to unauthorized user registrat... |
| CVE-2024-13866 | MEDIUM | 6.4 | 0.2% | Mar 5, 2025 | The Simple Notification plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and inc... |
| CVE-2024-13827 | MEDIUM | 6.1 | 0.3% | Mar 5, 2025 | The Razorpay Subscription Button Elementor Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting d... |
| CVE-2024-13350 | MEDIUM | 5.4 | 0.2% | Mar 5, 2025 | The SearchIQ – The Search Solution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 's... |
| CVE-2024-0141 | MEDIUM | 6.8 | 0.5% | Mar 5, 2025 | NVIDIA Hopper HGX for 8-GPU contains a vulnerability in the GPU vBIOS that may allow a malicious actor with tenant level... |
| CVE-2024-0114 | HIGH | 8.1 | 0.2% | Mar 5, 2025 | NVIDIA Hopper HGX for 8-GPU contains a vulnerability in the HGX Management Controller (HMC) that may allow a malicious a... |
| CVE-2024-9135 | MEDIUM | 5.3 | 0.3% | Mar 4, 2025 | On affected platforms running Arista EOS with BGP Link State configured, BGP peer flap can cause the BGP agent to leak m... |
| CVE-2024-8000 | MEDIUM | 5.3 | 0.2% | Mar 4, 2025 | On affected platforms running Arista EOS with 802.1X configured, certain conditions may occur where a dynamic ACL is rec... |
| CVE-2024-41147 | CRITICAL | 9.8 | 0.7% | Mar 4, 2025 | An out-of-bounds write vulnerability exists in the ma_dr_flac__decode_samples__lpc functionality of Miniaudio miniaudio ... |
| CVE-2024-10930 | HIGH | 7.8 | 0.4% | Mar 4, 2025 | An Uncontrolled Search Path Element vulnerability exists which could allow a malicious actor to perform DLL hijacking an... |
| CVE-2024-50707 | CRITICAL | 10 | 0.8% | Mar 4, 2025 | Unauthenticated remote code execution vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to exec... |
| CVE-2024-50704 | CRITICAL | 10 | 0.9% | Mar 4, 2025 | Unauthenticated remote code execution vulnerability in Uniguest Tripleplay before 24.2.1 allows remote attackers to exec... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now