2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-12045MEDIUM4.8The Essential Blocks – Page Builder Gutenberg Blocks, Patterns & Templates plugin for WordPress is vulnerable to Stored ...
CVE-2024-8002MEDIUM6.9A vulnerability has been found in VIWIS LMS 9.11 and classified as problematic. Affected by this vulnerability is an unk...
CVE-2024-12852MEDIUM5.4The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'ha_cmc_text' p...
CVE-2024-12851MEDIUM5.4The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid, Carousel and Remote Arrows) plugin for...
CVE-2024-12584MEDIUM6.5The 140+ Widgets | Xpro Addons For Elementor – FREE plugin for WordPress is vulnerable to Sensitive Information Exposure...
CVE-2024-12585MEDIUM6.1The Property Hive WordPress plugin before 2.1.1 does not sanitise and escape a parameter before outputting it back in th...
CVE-2024-10585MEDIUM5.3The InfiniteWP Client plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.13.0 ...
CVE-2024-10151MEDIUM5.4The Auto iFrame WordPress plugin before 2.0 does not validate and escape some of its shortcode attributes before outputt...
CVE-2024-54731MEDIUM4cpdf through 2.8 allows stack consumption via a crafted PDF document.
CVE-2024-12205MEDIUM5.4The Themesflat Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the TF E Slide...
CVE-2024-12030MEDIUM6.5The MDTF – Meta Data and Taxonomies Filter plugin for WordPress is vulnerable to SQL Injection via the 'key' attribute o...
CVE-2024-11271MEDIUM4.3The WordPress Webinar Plugin – WebinarPress plugin for WordPress is vulnerable to modification of data due to a missing ...
CVE-2024-56456MEDIUM5.5Vulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successfu...
CVE-2024-56455MEDIUM5.5Vulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successfu...
CVE-2024-56454MEDIUM5.5Vulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successfu...
CVE-2024-56453MEDIUM5.5Vulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successfu...
CVE-2024-56452MEDIUM5.5Vulnerability of input parameters not being verified during glTF model loading in the 3D engine module Impact: Successfu...
CVE-2024-56451MEDIUM5.5Integer overflow vulnerability during glTF model loading in the 3D engine module Impact: Successful exploitation of this...
CVE-2024-56450MEDIUM5.5Buffer overflow vulnerability in the component driver module Impact: Successful exploitation of this vulnerability may a...
CVE-2024-12713MEDIUM5.3The SureForms – Drag and Drop Form Builder for WordPress plugin for WordPress is vulnerable to Information Exposure in a...
CVE-2024-12521MEDIUM6.4The Slotti Ajanvaraus plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'slotti-embed-g...
CVE-2024-12112MEDIUM6.4The Easy Form Builder – WordPress plugin form builder: contact form, survey form, payment form, and custom form builder ...
CVE-2024-11916MEDIUM5.4The The Ultimate WordPress Toolkit – WP Extended plugin for WordPress is vulnerable to unauthorized modification and ret...
CVE-2024-56445MEDIUM5.3Instruction authentication bypass vulnerability in the Findnetwork module Impact: Successful exploitation of this vulner...
CVE-2024-56441MEDIUM5.9Race condition vulnerability in the Bastet module Impact: Successful exploitation of this vulnerability may affect servi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now