2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-56770MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: net/sched: netem: account for backlog updates from ...
CVE-2024-55459MEDIUM6.5An issue in keras 3.7.0 allows attackers to write arbitrary files to the user's machine via downloading a crafted tar fi...
CVE-2024-13187MEDIUM5.3A vulnerability was found in Kingsoft WPS Office 6.14.0 on macOS. It has been declared as critical. Affected by this vul...
CVE-2024-12337MEDIUM6.1The Shipping via Planzer for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘p...
CVE-2024-11830MEDIUM6.4The PDF Flipbook, 3D Flipbook—DearFlip plugin for WordPress is vulnerable to Stored Cross-Site Scripting via outline set...
CVE-2024-12712MEDIUM5.3The Shopping Cart & eCommerce Store plugin for WordPress is vulnerable to unauthorized modification of data due to a mis...
CVE-2024-12855MEDIUM5.4The AdForest theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on...
CVE-2024-12328MEDIUM6.4The MAS Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions...
CVE-2024-12045MEDIUM4.8The Essential Blocks – Page Builder Gutenberg Blocks, Patterns & Templates plugin for WordPress is vulnerable to Stored ...
CVE-2024-8002MEDIUM6.9A vulnerability has been found in VIWIS LMS 9.11 and classified as problematic. Affected by this vulnerability is an unk...
CVE-2024-12852MEDIUM5.4The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'ha_cmc_text' p...
CVE-2024-12851MEDIUM5.4The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid, Carousel and Remote Arrows) plugin for...
CVE-2024-12584MEDIUM6.5The 140+ Widgets | Xpro Addons For Elementor – FREE plugin for WordPress is vulnerable to Sensitive Information Exposure...
CVE-2024-12585MEDIUM6.1The Property Hive WordPress plugin before 2.1.1 does not sanitise and escape a parameter before outputting it back in th...
CVE-2024-10585MEDIUM5.3The InfiniteWP Client plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.13.0 ...
CVE-2024-10151MEDIUM5.4The Auto iFrame WordPress plugin before 2.0 does not validate and escape some of its shortcode attributes before outputt...
CVE-2024-54731MEDIUM4cpdf through 2.8 allows stack consumption via a crafted PDF document.
CVE-2024-12205MEDIUM5.4The Themesflat Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the TF E Slide...
CVE-2024-12030MEDIUM6.5The MDTF – Meta Data and Taxonomies Filter plugin for WordPress is vulnerable to SQL Injection via the 'key' attribute o...
CVE-2024-11271MEDIUM4.3The WordPress Webinar Plugin – WebinarPress plugin for WordPress is vulnerable to modification of data due to a missing ...
CVE-2024-56456MEDIUM5.5Vulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successfu...
CVE-2024-56455MEDIUM5.5Vulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successfu...
CVE-2024-56454MEDIUM5.5Vulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successfu...
CVE-2024-56453MEDIUM5.5Vulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successfu...
CVE-2024-56452MEDIUM5.5Vulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successfu...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now