2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-51667 | MEDIUM | 4.3 | 0.3% | Dec 31, 2024 | Missing Authorization vulnerability in paytiumsupport Paytium paytium.This issue affects Paytium: from n/a through <= 4.... |
| CVE-2024-49698 | MEDIUM | 4.3 | 0.3% | Dec 31, 2024 | Missing Authorization vulnerability in PriceListo Best Restaurant Menu by PriceListo best-restaurant-menu-by-pricelisto.... |
| CVE-2024-49694 | MEDIUM | 5.3 | 0.3% | Dec 31, 2024 | Missing Authorization vulnerability in imw3 My Wp Brand my-wp-brand.This issue affects My Wp Brand: from n/a through <= ... |
| CVE-2024-49687 | MEDIUM | 4.3 | 0.3% | Dec 31, 2024 | Missing Authorization vulnerability in storeapps Smart Manager smart-manager-for-wp-e-commerce.This issue affects Smart ... |
| CVE-2024-49686 | MEDIUM | 5.4 | 0.4% | Dec 31, 2024 | Missing Authorization vulnerability in fatcatapps Landing Page Cat landing-page-cat.This issue affects Landing Page Cat:... |
| CVE-2024-56031 | MEDIUM | 6.5 | 0.4% | Dec 31, 2024 | Missing Authorization vulnerability in Yulio Aleman Jimenez Smart Shopify Product smart-shopify-product allows Exploitin... |
| CVE-2024-55991 | MEDIUM | 6.5 | 0.3% | Dec 31, 2024 | Missing Authorization vulnerability in Mario Peshev WP-CRM System wp-crm-system allows Exploiting Incorrectly Configured... |
| CVE-2024-56265 | MEDIUM | 6.1 | 0.3% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpweb WooCommerce ... |
| CVE-2024-56256 | MEDIUM | 5.9 | 0.2% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Andy Fragen Embed ... |
| CVE-2024-56235 | MEDIUM | 6.5 | 0.2% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vicky Kumar Coupon... |
| CVE-2024-56234 | MEDIUM | 5.4 | 0.3% | Dec 31, 2024 | Missing Authorization vulnerability in vowelweb VW Automobile Lite vw-automobile-lite allows Exploiting Incorrectly Conf... |
| CVE-2024-56231 | MEDIUM | 6.5 | 0.2% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Debuggers Studio S... |
| CVE-2024-56227 | MEDIUM | 4.3 | 0.3% | Dec 31, 2024 | Missing Authorization vulnerability in WP Royal Royal Elementor Addons royal-elementor-addons allows Exploiting Incorrec... |
| CVE-2024-56226 | MEDIUM | 6.1 | 0.3% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Royal Royal Ele... |
| CVE-2024-56224 | MEDIUM | 6.5 | 0.2% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ledenbeheer Ledenb... |
| CVE-2024-56221 | MEDIUM | 6.5 | 0.2% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Elicus WPMozo Addo... |
| CVE-2024-56219 | MEDIUM | 4.3 | 0.3% | Dec 31, 2024 | Missing Authorization vulnerability in Marketing Fire Widget Options widget-options allows Exploiting Incorrectly Config... |
| CVE-2024-56217 | MEDIUM | 6.3 | 0.3% | Dec 31, 2024 | Missing Authorization vulnerability in Shahjada Download Manager download-manager allows Exploiting Incorrectly Configur... |
| CVE-2024-56215 | MEDIUM | 4.3 | 0.2% | Dec 31, 2024 | Missing Authorization vulnerability in DBAR Productions Member Directory and Contact Form pta-member-directory allows Ex... |
| CVE-2024-13069 | MEDIUM | 5.4 | 0.4% | Dec 31, 2024 | A vulnerability was found in SourceCodester Multi Role Login System 1.0. It has been classified as problematic. Affected... |
| CVE-2024-12105 | MEDIUM | 6.5 | 42.4% | Dec 31, 2024 | In WhatsUp Gold versions released before 2024.0.2, an authenticated user can use a specially crafted HTTP request that c... |
| CVE-2024-56229 | MEDIUM | 4.3 | 0.2% | Dec 31, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in SearchIQ SearchIQ searchiq.This issue affects SearchIQ: from n/a thro... |
| CVE-2024-56222 | MEDIUM | 5.4 | 0.2% | Dec 31, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in CodeBard CodeBard Help Desk codebard-help-desk allows Cross Site Requ... |
| CVE-2024-56218 | MEDIUM | 4.3 | 0.1% | Dec 31, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in sevenspark Contact Form 7 – Dynamic Text Extension contact-form-7-dyn... |
| CVE-2024-56216 | MEDIUM | 6.5 | 0.4% | Dec 31, 2024 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now