2024 CVE Vulnerabilities

39,243 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-5088MEDIUM5.4The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘_id’ parameter...
CVE-2024-4432MEDIUM6.4The Piotnet Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widg...
CVE-2024-3658Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2023-51478. Reason: This candidate is a ...
CVE-2024-4709MEDIUM6.4The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner...
CVE-2024-4698MEDIUM6.4The Testimonial Carousel For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'show_l...
CVE-2024-2782HIGH7.5The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner...
CVE-2024-2772MEDIUM5.4The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner...
CVE-2024-2771CRITICAL9.8The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner...
CVE-2024-4849MEDIUM6.4The WordPress Automatic Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘autoplay’ para...
CVE-2024-3812HIGH7.5The Salient Core plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.0.7 ...
CVE-2024-3811MEDIUM6.4The Salient Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'icon' shortco...
CVE-2024-3810HIGH8.8The Salient Shortcodes plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, ...
CVE-2024-4891MEDIUM5.4The Essential Blocks – Page Builder Gutenberg Blocks, Patterns & Templates plugin for WordPress is vulnerable to Stored ...
CVE-2024-4374MEDIUM5.4The DethemeKit For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widgets ...
CVE-2024-3714MEDIUM5.4The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting ...
CVE-2024-4865MEDIUM5.4The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘_id’ parameter...
CVE-2024-4264CRITICAL9.8A remote code execution (RCE) vulnerability exists in the berriai/litellm project due to improper control of the generat...
CVE-2024-23556HIGH7.5SSL/TLS Renegotiation functionality potentially leading to DoS attack vulnerability.
CVE-2024-23554HIGH8.8Cross-Site Request Forgery (CSRF) on Session Token vulnerability that could potentially lead to Remote Code Execution (R...
CVE-2024-23583MEDIUM6.7An attacker could potentially intercept credentials via the task manager and perform unauthorized access to the Client D...
CVE-2024-35313HIGH7.3In Tor Arti before 1.2.3, circuits sometimes incorrectly have a length of 3 (with full vanguards), aka TROVE-2024-004.
CVE-2024-35312MEDIUM6.2In Tor Arti before 1.2.3, STUB circuits incorrectly have a length of 2 (with lite vanguards), aka TROVE-2024-003.
CVE-2024-25742MEDIUM6.5In the Linux kernel before 6.9, an untrusted hypervisor can inject virtual interrupt 29 (#VC) at any point in time and c...
CVE-2024-5069CRITICAL9.8A vulnerability, which was classified as critical, has been found in SourceCodester Simple Online Mens Salon Management ...
CVE-2024-5066HIGH8.8A vulnerability classified as critical was found in PHPGurukul Online Course Registration System 3.1. Affected by this v...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now