2024 CVE Vulnerabilities
39,243 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-32959 | HIGH | 8.8 | 0.4% | May 17, 2024 | Incorrect Privilege Assignment vulnerability in Sirv CDN and Image Hosting Sirv sirv.This issue affects Sirv: from n/a t... |
| CVE-2024-32830 | HIGH | 7.5 | 0.6% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ThemeKraft BuddyForms al... |
| CVE-2024-32827 | MEDIUM | 5.3 | 0.4% | May 17, 2024 | Authentication Bypass by Spoofing vulnerability in RafflePress Giveaways and Contests allows Functionality Bypass.This i... |
| CVE-2024-32809 | CRITICAL | 10 | 0.5% | May 17, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in JumpDEMAND Inc. ActiveDEMAND allows Using Malicious Fil... |
| CVE-2024-32802 | MEDIUM | 5.3 | 0.3% | May 17, 2024 | Missing Authorization vulnerability in WordPlus BP Better Messages allows Accessing Functionality Not Properly Constrain... |
| CVE-2024-32786 | CRITICAL | 9.8 | 0.5% | May 17, 2024 | Authentication Bypass by Spoofing vulnerability in WP Royal Royal Elementor Addons allows Functionality Bypass.This issu... |
| CVE-2024-32774 | HIGH | 8.8 | 0.5% | May 17, 2024 | Improper Restriction of Excessive Authentication Attempts vulnerability in Metagauss ProfileGrid allows Removing Importa... |
| CVE-2024-32720 | MEDIUM | 5.3 | 0.4% | May 17, 2024 | Improper Restriction of Excessive Authentication Attempts vulnerability in CodePeople Appointment Hour Booking allows Re... |
| CVE-2024-32708 | LOW | 3.7 | 0.4% | May 17, 2024 | Authentication Bypass by Spoofing vulnerability in helderk Maintenance Mode allows Functionality Bypass.This issue affec... |
| CVE-2024-32692 | HIGH | 8.2 | 0.4% | May 17, 2024 | Missing Authorization vulnerability in QuanticaLabs Chauffeur Taxi Booking System for WordPress allows Accessing Functio... |
| CVE-2024-22120 | HIGH | 8.8 | 76.6% | May 17, 2024 | Zabbix server can perform command execution for configured scripts. After command is executed, audit entry is added to "... |
| CVE-2024-4789 | MEDIUM | 6.4 | 0.3% | May 17, 2024 | Cost Calculator Builder Pro plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to 3.1.... |
| CVE-2024-4214 | LOW | 2.7 | 0.4% | May 17, 2024 | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS vulnerability in Bill Minozzi Car Dealer al... |
| CVE-2024-34434 | MEDIUM | 6.5 | 0.3% | May 17, 2024 | Incorrect Authorization vulnerability in realmag777 WordPress Meta Data and Taxonomies Filter (MDTF) allows Code Inclusi... |
| CVE-2024-34370 | HIGH | 7.2 | 1.1% | May 17, 2024 | Improper Privilege Management vulnerability in WPFactory EAN for WooCommerce allows Privilege Escalation.This issue affe... |
| CVE-2024-33917 | MEDIUM | 5.3 | 0.4% | May 17, 2024 | Authentication Bypass by Spoofing vulnerability in webtechideas WTI Like Post allows Functionality Bypass.This issue aff... |
| CVE-2024-33644 | CRITICAL | 9.9 | 1.1% | May 17, 2024 | Improper Control of Generation of Code ('Code Injection') vulnerability in WPCustomify Customify Site Library allows Cod... |
| CVE-2024-33569 | HIGH | 7.2 | 0.5% | May 17, 2024 | Improper Privilege Management vulnerability in Darren Cooney Instant Images allows Privilege Escalation.This issue affec... |
| CVE-2024-33567 | CRITICAL | 9.8 | 0.5% | May 17, 2024 | Improper Privilege Management vulnerability in UkrSolution Barcode Scanner with Inventory & Order Manager allows Privile... |
| CVE-2024-33552 | CRITICAL | 9.8 | 0.6% | May 17, 2024 | Improper Privilege Management vulnerability in 8theme XStore Core allows Privilege Escalation.This issue affects XStore ... |
| CVE-2024-33550 | HIGH | 8.8 | 0.5% | May 17, 2024 | Improper Privilege Management vulnerability in JR King/Eran Schoellhorn WP Masquerade allows Privilege Escalation.This i... |
| CVE-2024-33549 | HIGH | 8.8 | 0.5% | May 17, 2024 | Improper Privilege Management vulnerability in AA-Team WZone allows Privilege Escalation.This issue affects WZone: from ... |
| CVE-2024-32790 | MEDIUM | 4.3 | 0.3% | May 17, 2024 | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Supsystic Pricing Table b... |
| CVE-2024-32685 | MEDIUM | 5.3 | 0.4% | May 17, 2024 | Client-Side Enforcement of Server-Side Security vulnerability in Wpmet Wp Ultimate Review allows Functionality Bypass.Th... |
| CVE-2024-32680 | HIGH | 8.8 | 0.7% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Improper Control of Generation of Code (... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now