2024 CVE Vulnerabilities
39,243 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-32523 | HIGH | 8.1 | 1.8% | May 17, 2024 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2024-32521 | MEDIUM | 5.3 | 0.4% | May 17, 2024 | Client-Side Enforcement of Server-Side Security vulnerability in Highfivery LLC Zero Spam allows Removing Important Clie... |
| CVE-2024-32512 | MEDIUM | 5.3 | 0.3% | May 17, 2024 | Client-Side Enforcement of Server-Side Security vulnerability in weForms allows Removing Important Client Functionality.... |
| CVE-2024-32511 | CRITICAL | 9.8 | 0.5% | May 17, 2024 | Improper Privilege Management vulnerability in Astoundify Simple Registration for WooCommerce allows Privilege Escalatio... |
| CVE-2024-32507 | HIGH | 8.8 | 0.5% | May 17, 2024 | Incorrect Privilege Assignment vulnerability in Hamid Alinia Login with phone number login-with-phone-number.This issue ... |
| CVE-2024-32131 | HIGH | 7.5 | 0.4% | May 17, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in W3 Eden Inc. Download Manager allows Functio... |
| CVE-2024-31341 | MEDIUM | 5.3 | 0.2% | May 17, 2024 | Insufficient Verification of Data Authenticity vulnerability in Cozmoslabs Profile Builder allows Functionality Bypass.T... |
| CVE-2024-31300 | HIGH | 8.5 | 0.6% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in appscreo Easy Social Sha... |
| CVE-2024-31295 | MEDIUM | 5.3 | 0.4% | May 17, 2024 | Guessable CAPTCHA vulnerability in BestWebSoft Captcha by BestWebSoft allows Functionality Bypass.This issue affects Cap... |
| CVE-2024-31290 | CRITICAL | 9.8 | 0.5% | May 17, 2024 | Improper Privilege Management vulnerability in CodeRevolution Demo My WordPress allows Privilege Escalation.This issue a... |
| CVE-2024-31281 | MEDIUM | 6.3 | 0.3% | May 17, 2024 | Missing Authorization vulnerability in andy_moyle Church Admin church-admin.This issue affects Church Admin: from n/a th... |
| CVE-2024-31237 | HIGH | 7.5 | 0.4% | May 17, 2024 | Improper Privilege Management vulnerability in WP Sharks s2Member Pro allows Privilege Escalation.This issue affects s2M... |
| CVE-2024-31232 | HIGH | 8 | 0.6% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Sizam Design Rehub allow... |
| CVE-2024-31231 | CRITICAL | 9 | 0.6% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Sizam Design Rehub allow... |
| CVE-2024-30542 | CRITICAL | 9.8 | 0.5% | May 17, 2024 | Improper Privilege Management vulnerability in Wholesale WholesaleX allows Privilege Escalation.This issue affects Whole... |
| CVE-2024-30540 | MEDIUM | 5.3 | 0.5% | May 17, 2024 | Guessable CAPTCHA vulnerability in Guido VS Contact Form allows Functionality Bypass.This issue affects VS Contact Form:... |
| CVE-2024-30527 | HIGH | 7.5 | 0.5% | May 17, 2024 | Improper Validation of Specified Quantity in Input vulnerability in Tips and Tricks HQ WP Express Checkout (Accept PayPa... |
| CVE-2024-30522 | MEDIUM | 5.3 | 0.5% | May 17, 2024 | Authentication Bypass by Spoofing vulnerability in Stefano Lissa & The Newsletter Team Newsletter allows Functionality B... |
| CVE-2024-30509 | MEDIUM | 6.5 | 0.6% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Artbees SellKit allows R... |
| CVE-2024-30480 | LOW | 3.7 | 0.5% | May 17, 2024 | Authentication Bypass by Spoofing vulnerability in Pippin Williamson CGC Maintenance Mode allows Functionality Bypass.Th... |
| CVE-2024-30479 | MEDIUM | 5.3 | 0.5% | May 17, 2024 | Authentication Bypass by Spoofing vulnerability in LionScripts IP Blocker Lite allows Functionality Bypass.This issue af... |
| CVE-2024-27971 | HIGH | 8.3 | 1.5% | May 17, 2024 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
| CVE-2024-27955 | HIGH | 8.8 | 0.3% | May 17, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WP Automatic Automatic allows Privilege Escalation.This issue affects... |
| CVE-2024-27954 | CRITICAL | 9.3 | 73.0% | May 17, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WP Automatic Automatic a... |
| CVE-2024-25906 | MEDIUM | 4.3 | 0.4% | May 17, 2024 | Authentication Bypass by Spoofing vulnerability in WP Happy Coders Comments Like Dislike allows Functionality Bypass.Thi... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now