2024 CVE Vulnerabilities
39,243 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-4043 | MEDIUM | 6.4 | 0.3% | May 23, 2024 | The WP Ultimate Post Grid plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpupg-text... |
| CVE-2024-3648 | MEDIUM | 5.4 | 0.3% | May 23, 2024 | The ShareThis Share Buttons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'sharethi... |
| CVE-2024-36013 | HIGH | 8.8 | 0.5% | May 23, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: L2CAP: Fix slab-use-after-free in l2cap_... |
| CVE-2024-36012 | HIGH | 7.8 | 0.2% | May 23, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: msft: fix slab-use-after-free in msft_do... |
| CVE-2024-36011 | MEDIUM | 5.5 | 0.2% | May 23, 2024 | In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HCI: Fix potential null-ptr-deref Fix p... |
| CVE-2024-2874 | MEDIUM | 6.5 | 0.6% | May 23, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions before 16.10.6, version 16.11 before 16.11.3, and 17... |
| CVE-2024-2038 | HIGH | 7.5 | 0.5% | May 23, 2024 | The Visual Website Collaboration, Feedback & Project Management – Atarim plugin for WordPress is vulnerable to unauthori... |
| CVE-2024-5239 | MEDIUM | 6.5 | 0.4% | May 23, 2024 | A vulnerability has been found in Campcodes Complete Web-Based School Management System 1.0 and classified as critical. ... |
| CVE-2024-5238 | MEDIUM | 6.5 | 0.4% | May 23, 2024 | A vulnerability, which was classified as critical, was found in Campcodes Complete Web-Based School Management System 1.... |
| CVE-2024-5237 | MEDIUM | 6.5 | 0.4% | May 23, 2024 | A vulnerability, which was classified as critical, has been found in Campcodes Complete Web-Based School Management Syst... |
| CVE-2024-5177 | MEDIUM | 5.4 | 0.3% | May 23, 2024 | The Hash Elements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'url' parameter within multi... |
| CVE-2024-4399 | CRITICAL | 9.1 | 1.8% | May 23, 2024 | The does not validate a parameter before making a request to it, which could allow unauthenticated users to perform SSR... |
| CVE-2024-4388 | HIGH | 7.5 | 0.7% | May 23, 2024 | This does not validate a path generated with user input when downloading files, allowing unauthenticated user to downlo... |
| CVE-2024-4347 | HIGH | 7.2 | 0.9% | May 23, 2024 | The WP Fastest Cache plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.2... |
| CVE-2024-3920 | LOW | 3.5 | 0.4% | May 23, 2024 | The Flattr WordPress plugin through 1.2.2 does not sanitise and escape some of its settings, which could allow high priv... |
| CVE-2024-3918 | MEDIUM | 4.8 | 0.4% | May 23, 2024 | The Pet Manager WordPress plugin through 1.4 does not sanitise and escape some of its Pet settings, which could allow hi... |
| CVE-2024-3917 | MEDIUM | 6.1 | 0.3% | May 23, 2024 | The Pet Manager WordPress plugin through 1.4 does not sanitise and escape a parameter before outputting it back in the p... |
| CVE-2024-3711 | MEDIUM | 4.3 | 0.3% | May 23, 2024 | The Brizy – Page Builder plugin for WordPress is vulnerable to unauthorized plugin setting update due to a missing capab... |
| CVE-2024-3626 | MEDIUM | 4.3 | 0.4% | May 23, 2024 | The Email Subscribers by Icegram Express – Email Marketing, Newsletters, Automation for WordPress & WooCommerce plugin f... |
| CVE-2024-3594 | HIGH | 8.7 | 0.5% | May 23, 2024 | The IDonate WordPress plugin through 1.9.0 does not sanitise and escape some of its settings, which could allow high pr... |
| CVE-2024-2220 | LOW | 3.5 | 0.3% | May 23, 2024 | The Button contact VR WordPress plugin through 4.7 does not sanitise and escape some of its settings, which could allow ... |
| CVE-2024-5236 | MEDIUM | 6.5 | 0.4% | May 23, 2024 | A vulnerability classified as critical was found in Campcodes Complete Web-Based School Management System 1.0. Affected ... |
| CVE-2024-5235 | MEDIUM | 6.5 | 0.4% | May 23, 2024 | A vulnerability classified as critical has been found in Campcodes Complete Web-Based School Management System 1.0. Affe... |
| CVE-2024-5234 | MEDIUM | 6.5 | 0.4% | May 23, 2024 | A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been rated as critical. T... |
| CVE-2024-5233 | MEDIUM | 6.5 | 0.4% | May 23, 2024 | A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0. It has been declared as critical... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now