2024 CVE Vulnerabilities

39,243 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-4261MEDIUM5.4The Responsive Contact Form Builder & Lead Generation Plugin plugin for WordPress is vulnerable to arbitrary shortcode e...
CVE-2024-5196HIGH7.2A vulnerability classified as critical has been found in Arris VAP2500 08.50. This affects an unknown part of the file /...
CVE-2024-36010MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: igb: Fix string truncation warnings in igb_set_fw_v...
CVE-2024-5195HIGH7.2A vulnerability was found in Arris VAP2500 08.50. It has been rated as critical. Affected by this issue is some unknown ...
CVE-2024-5194HIGH7.2A vulnerability was found in Arris VAP2500 08.50. It has been declared as critical. Affected by this vulnerability is an...
CVE-2024-5193MEDIUM5.5A security vulnerability has been detected in Ritlabs TinyWeb Server 1.94. This vulnerability affects unknown code of th...
CVE-2024-4262MEDIUM6.4The Piotnet Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets ...
CVE-2024-4153Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-5031MEDIUM6.4The Memberpress plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions up to, and inclu...
CVE-2024-5025MEDIUM5.4The Memberpress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘arglist’ parameter in all ver...
CVE-2024-4896MEDIUM5.4The WPB Elementor Addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ parameter in al...
CVE-2024-4362MEDIUM5.4The SiteOrigin Widgets Bundle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'siteor...
CVE-2024-3495CRITICAL9.8The Country State City Dropdown CF7 plugin for WordPress is vulnerable to SQL Injection via the ‘cnt’ and 'sid' paramete...
CVE-2024-2036MEDIUM4.3The ApplyOnline – Application Form Builder and Manager plugin for WordPress is vulnerable to unauthorized access of data...
CVE-2024-5147CRITICAL9.8The WPZOOM Addons for Elementor (Templates, Widgets) plugin for WordPress is vulnerable to Local File Inclusion in all v...
CVE-2024-4157HIGH8.8The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner...
CVE-2024-3671MEDIUM6.4The Print-O-Matic plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'print-me' shortcod...
CVE-2024-3666MEDIUM6.4The Opal Estate Pro – Property Management and Submission plugin for WordPress is vulnerable to Stored Cross-Site Scripti...
CVE-2024-32988HIGH7.5'OfferBox' App for Android versions 2.0.0 to 2.3.17 and 'OfferBox' App for iOS versions 2.1.7 to 2.6.14 use a hard-coded...
CVE-2024-2953MEDIUM4.8The LuckyWP Table of Contents plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple parameters ...
CVE-2024-2163MEDIUM6.4The Ninja Beaver Add-ons for Beaver Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl...
CVE-2024-2119MEDIUM6.1The LuckyWP Table of Contents plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the attrs paramet...
CVE-2024-0632MEDIUM4.4The Automatic Translator with Google Translate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
CVE-2024-3927MEDIUM5.3The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for W...
CVE-2024-3663MEDIUM4.3The WP Scraper plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the wp_scr...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now