2024 CVE Vulnerabilities

39,243 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-4208MEDIUM5.4The Gutenberg Blocks with AI by Kadence WP – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Si...
CVE-2024-3189MEDIUM5.4The Gutenberg Blocks by Kadence Blocks – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Site S...
CVE-2024-32888CRITICAL10The Amazon JDBC Driver for Redshift is a Type 4 JDBC driver that provides database connectivity through the standard JDB...
CVE-2024-4847HIGH8.8The Alt Text AI – Automatically generate image alt text for SEO and accessibility plugin for WordPress is vulnerable to ...
CVE-2024-4734MEDIUM4.4The Import and export users and customers plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin se...
CVE-2024-4656MEDIUM4.4The Import and export users and customers plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the user...
CVE-2024-4618MEDIUM5.4The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Team Member...
CVE-2024-4373MEDIUM5.4The Sina Extension for Elementor (Slider, Gallery, Form, Modal, Data Table, Tab, Particle, Free Elementor Widgets & Elem...
CVE-2024-4199MEDIUM4.3The Bulk Posts Editing For WordPress plugin for WordPress is vulnerable to unauthorized access of functionality due to a...
CVE-2024-35109MEDIUM6.5idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /homePro_deal.php?mudi=add&...
CVE-2024-35108HIGH8.8idccms v1.35 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/homePro_deal.php?mud...
CVE-2024-3744MEDIUM6.5A security issue was discovered in azure-file-csi-driver where an actor with access to the driver logs could observe ser...
CVE-2024-4370MEDIUM5.4The WPZOOM Addons for Elementor (Templates, Widgets) plugin for WordPress is vulnerable to Stored Cross-Site Scripting v...
CVE-2024-4363MEDIUM6.4The Visual Portfolio, Photo Gallery & Post Grid plugin for WordPress is vulnerable to Stored Cross-Site Scripting via th...
CVE-2024-0437MEDIUM4.3The Password Protected – Ultimate Plugin to Password Protect Your WordPress Content with Ease plugin for WordPress is vu...
CVE-2024-4666MEDIUM5.4The Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg plugin for WordPress is vulnerable t...
CVE-2024-31483MEDIUM6.5An authenticated sensitive information disclosure vulnerability exists in the CLI service accessed via the PAPI protocol...
CVE-2024-31482HIGH7.5An unauthenticated Denial-of-Service (DoS) vulnerability exists in the ANSI escape code service accessed via the PAPI pr...
CVE-2024-31481HIGH7.5Unauthenticated Denial of Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol. Success...
CVE-2024-31480HIGH7.5Unauthenticated Denial of Service (DoS) vulnerabilities exist in the CLI service accessed via the PAPI protocol. Success...
CVE-2024-31479HIGH7.5Unauthenticated Denial of Service (DoS) vulnerabilities exist in the Central Communications service accessed via the PAP...
CVE-2024-31478HIGH7.5Multiple unauthenticated Denial-of-Service (DoS) vulnerabilities exists in the Soft AP daemon accessed via the PAPI prot...
CVE-2024-31477HIGH8.8Multiple authenticated command injection vulnerabilities exist in the command line interface. Successful exploitation of...
CVE-2024-31476HIGH8.8Multiple authenticated command injection vulnerabilities exist in the command line interface. Successful exploitation of...
CVE-2024-31475HIGH8.2There is an arbitrary file deletion vulnerability in the Central Communications service accessed by PAPI (Aruba's access...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now