2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-12738 | MEDIUM | 6.1 | 0.4% | Jan 7, 2025 | The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is v... |
| CVE-2024-12426 | MEDIUM | 6.5 | 0.5% | Jan 7, 2025 | Exposure of Environmental Variables and arbitrary INI file values to an Unauthorized Actor vulnerability in The Document... |
| CVE-2024-12131 | MEDIUM | 4.3 | 0.3% | Jan 7, 2025 | The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to... |
| CVE-2024-52893 | MEDIUM | 5.3 | 0.4% | Jan 7, 2025 | IBM Concert Software 1.0.0, 1.0.1, 1.0.2, 1.0.2.1, and 1.0.3 could allow a remote attacker to obtain sensitive informa... |
| CVE-2024-52891 | MEDIUM | 5.4 | 0.3% | Jan 7, 2025 | IBM Concert Software 1.0.0, 1.0.1, 1.0.2, 1.0.2.1, and 1.0.3 could allow an authenticated user to inject malicious inf... |
| CVE-2024-52366 | MEDIUM | 5.9 | 0.3% | Jan 7, 2025 | IBM Concert Software 1.0.0, 1.0.1, 1.0.2, 1.0.2.1, and 1.0.3 could allow a remote attacker to obtain sensitive informati... |
| CVE-2024-12711 | MEDIUM | 5.3 | 0.3% | Jan 7, 2025 | The RSVP and Event Management plugin for WordPress is vulnerable to unauthorized access due to a missing capability chec... |
| CVE-2024-12532 | MEDIUM | 4.3 | 0.3% | Jan 7, 2025 | The BWD Elementor Addons plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and... |
| CVE-2024-12316 | MEDIUM | 5.3 | 0.4% | Jan 7, 2025 | The Jupiter X Core plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check o... |
| CVE-2024-12033 | MEDIUM | 4.3 | 0.3% | Jan 7, 2025 | The Jupiter X Core plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the sy... |
| CVE-2024-11826 | MEDIUM | 6.4 | 0.3% | Jan 7, 2025 | The Quill Forms | The Best Typeform Alternative | Create Conversational Multi Step Form, Survey, Quiz, Cost Estimation o... |
| CVE-2024-56298 | MEDIUM | 5.9 | 0.3% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Rob @ 5 Star Plugi... |
| CVE-2024-56297 | MEDIUM | 5.9 | 0.3% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in QuantumCloud Highl... |
| CVE-2024-56294 | MEDIUM | 6.4 | 0.4% | Jan 7, 2025 | Missing Authorization vulnerability in POSIMYTH Nexter Blocks the-plus-addons-for-block-editor allows Exploiting Incorre... |
| CVE-2024-56293 | MEDIUM | 5.9 | 0.3% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Nasir Ahmed Advanc... |
| CVE-2024-56292 | MEDIUM | 5.9 | 0.3% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpdevelop Email Re... |
| CVE-2024-56288 | MEDIUM | 4.8 | 0.3% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fahad Mahmood WP D... |
| CVE-2024-56287 | MEDIUM | 6.5 | 0.3% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in AppJetty WP jQuery... |
| CVE-2024-56285 | MEDIUM | 5.4 | 0.3% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpbits WPBITS Addo... |
| CVE-2024-56279 | MEDIUM | 6.4 | 0.3% | Jan 7, 2025 | Server-Side Request Forgery (SSRF) vulnerability in mra13 Compact WP Audio Player compact-wp-audio-player allows Server ... |
| CVE-2024-56275 | MEDIUM | 4.1 | 0.4% | Jan 7, 2025 | Server-Side Request Forgery (SSRF) vulnerability in Envato Envato Elements allows Server Side Request Forgery.This issue... |
| CVE-2024-56274 | MEDIUM | 5.4 | 0.3% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brainstorm Force A... |
| CVE-2024-56271 | MEDIUM | 4.3 | 0.3% | Jan 7, 2025 | Missing Authorization vulnerability in SecureSubmit WP SecureSubmit securesubmit allows Exploiting Incorrectly Configure... |
| CVE-2024-51651 | MEDIUM | 5.3 | 0.4% | Jan 7, 2025 | Missing Authorization vulnerability in Imran Tauqeer CubeWP Forms cubewp-forms allows Exploiting Incorrectly Configured ... |
| CVE-2024-49633 | MEDIUM | 6.1 | 0.3% | Jan 7, 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Designinvento Dire... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now