2024 CVE Vulnerabilities
39,243 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-1100 | CRITICAL | 10 | 0.4% | May 30, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Vadi Corporate Inf... |
| CVE-2024-5326 | HIGH | 8.8 | 1.4% | May 30, 2024 | The Post Grid Gutenberg Blocks and WordPress Blog Plugin – PostX plugin for WordPress is vulnerable to unauthorized modi... |
| CVE-2024-3583 | MEDIUM | 6.4 | 0.3% | May 30, 2024 | The Simple Like Page Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode... |
| CVE-2024-4668 | MEDIUM | 6.4 | 0.3% | May 30, 2024 | The Gum Elementor Addon plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Price Table and Post S... |
| CVE-2024-4427 | MEDIUM | 4.3 | 0.3% | May 30, 2024 | The Comparison Slider plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit... |
| CVE-2024-4426 | MEDIUM | 4.3 | 0.2% | May 30, 2024 | The Comparison Slider plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includ... |
| CVE-2024-4422 | MEDIUM | 5.4 | 0.3% | May 30, 2024 | The Comparison Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the slider title parameter i... |
| CVE-2024-4355 | MEDIUM | 4.3 | 0.3% | May 30, 2024 | The Block Bad Bots and Stop Bad Bots Crawlers and Spiders and Anti Spam Protection plugin for WordPress is vulnerable to... |
| CVE-2024-2657 | MEDIUM | 4.4 | 0.3% | May 30, 2024 | The Font Farsi plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up t... |
| CVE-2024-2089 | MEDIUM | 5.4 | 0.3% | May 30, 2024 | The Remote Content Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'remote_content' ... |
| CVE-2024-5327 | MEDIUM | 5.4 | 0.3% | May 30, 2024 | The PowerPack Addons for Elementor (Free Widgets, Extensions and Templates) plugin for WordPress is vulnerable to DOM-Ba... |
| CVE-2024-5073 | MEDIUM | 5.4 | 0.3% | May 30, 2024 | The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress... |
| CVE-2024-5341 | MEDIUM | 5.4 | 0.3% | May 30, 2024 | The The Plus Addons for Elementor Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the... |
| CVE-2024-5207 | HIGH | 7.2 | 0.5% | May 30, 2024 | The POST SMTP – The #1 WordPress SMTP Plugin with Advanced Email Logging and Delivery Failure Notifications plugin for W... |
| CVE-2024-36267 | HIGH | 8.1 | 0.5% | May 30, 2024 | Path traversal vulnerability exists in Redmine DMSF Plugin versions prior to 3.1.4. If this vulnerability is exploited, ... |
| CVE-2024-4356 | MEDIUM | 6.4 | 0.3% | May 30, 2024 | The List categories plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'categories' shor... |
| CVE-2024-4218 | MEDIUM | 6.5 | 0.2% | May 30, 2024 | The AffiEasy plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1.... |
| CVE-2024-3947 | MEDIUM | 4.3 | 0.2% | May 30, 2024 | The WP To Do plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.3.... |
| CVE-2024-3946 | MEDIUM | 4.8 | 0.3% | May 30, 2024 | The WP To Do plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to,... |
| CVE-2024-3945 | MEDIUM | 4.3 | 0.2% | May 30, 2024 | The WP To Do plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.3.... |
| CVE-2024-3943 | MEDIUM | 4.3 | 0.2% | May 30, 2024 | The WP To Do plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.3.... |
| CVE-2024-3277 | MEDIUM | 5 | 0.3% | May 30, 2024 | The Yumpu ePaper publishing plugin for WordPress is vulnerable to unauthorized modification of data due to a missing cap... |
| CVE-2024-5223 | MEDIUM | 6.4 | 0.3% | May 30, 2024 | The Post Grid Gutenberg Blocks and WordPress Blog Plugin – PostX plugin for WordPress is vulnerable to Stored Cross-Site... |
| CVE-2024-3269 | MEDIUM | 5.4 | 0.3% | May 30, 2024 | The Download Monitor plugin for WordPress is vulnerable to unauthorized access to functionality due to a missing capabil... |
| CVE-2024-3190 | MEDIUM | 4.6 | 0.3% | May 30, 2024 | The Unlimited Elements For Elementor (Free Widgets, Addons, Templates) plugin for WordPress is vulnerable to Stored Cros... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now