2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-33918 | MEDIUM | 5.9 | 0.4% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Maxim K AJAX Login... |
| CVE-2024-33916 | MEDIUM | 6.5 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MachoThemes CPO Co... |
| CVE-2024-32831 | MEDIUM | 5.9 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Lorna Timbah (webg... |
| CVE-2024-32810 | HIGH | 7.6 | 0.4% | May 3, 2024 | Missing Authorization vulnerability in ShortPixel ShortPixel Critical CSS.This issue affects ShortPixel Critical CSS: fr... |
| CVE-2024-28072 | MEDIUM | 4.9 | 0.6% | May 3, 2024 | A highly privileged account can overwrite arbitrary files on the system with log output. The log file path tags were not... |
| CVE-2024-24710 | MEDIUM | 4.3 | 0.3% | May 3, 2024 | Missing Authorization vulnerability in SlickRemix Feed Them Social.This issue affects Feed Them Social: from n/a through... |
| CVE-2024-33947 | MEDIUM | 6.1 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss Registra... |
| CVE-2024-33946 | HIGH | 7.1 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPify s.R.O. WPify... |
| CVE-2024-33945 | MEDIUM | 6.5 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in solverwp.Com Elebl... |
| CVE-2024-33943 | MEDIUM | 5.9 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HappyKite Ultimate... |
| CVE-2024-33940 | MEDIUM | 5.9 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ashan Jay EventON ... |
| CVE-2024-33936 | MEDIUM | 6.5 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Twinpictures Print... |
| CVE-2024-33935 | MEDIUM | 6.5 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pascal Bajorat PB ... |
| CVE-2024-33934 | MEDIUM | 6.5 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Kailey Lampert Min... |
| CVE-2024-33932 | MEDIUM | 6.5 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vinod Dalvi Login ... |
| CVE-2024-33928 | MEDIUM | 6.1 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CodeBard CodeBard'... |
| CVE-2024-4439 | MEDIUM | 6.1 | 70.8% | May 3, 2024 | WordPress Core is vulnerable to Stored Cross-Site Scripting via user display names in the Avatar block in various versio... |
| CVE-2024-3703 | MEDIUM | 4.7 | 0.5% | May 3, 2024 | The Carousel Slider WordPress plugin before 2.2.10 does not validate and escape some of its Slide options before outputt... |
| CVE-2024-3692 | MEDIUM | 6.1 | 0.4% | May 3, 2024 | The Gutenverse WordPress plugin before 1.9.1 does not validate the htmlTag option in various of its block before output... |
| CVE-2024-3637 | MEDIUM | 6.1 | 0.5% | May 3, 2024 | The Responsive Contact Form Builder & Lead Generation Plugin WordPress plugin through 1.8.9 does not sanitise and escape... |
| CVE-2024-34408 | MEDIUM | 5.3 | 0.2% | May 3, 2024 | Tencent libpag through 4.3.51 has an integer overflow in DecodeStream::checkEndOfFile() in codec/utils/DecodeStream.cpp ... |
| CVE-2024-34404 | MEDIUM | 6.8 | 0.4% | May 3, 2024 | A vulnerability was discovered in the Alta Recovery Vault feature of Veritas NetBackup before 10.4 and NetBackup Applian... |
| CVE-2024-34403 | MEDIUM | 5.9 | 1.3% | May 3, 2024 | An issue was discovered in uriparser through 0.9.7. ComposeQueryMallocExMm in UriQuery.c has an integer overflow via a l... |
| CVE-2024-34402 | HIGH | 8.6 | 1.2% | May 3, 2024 | An issue was discovered in uriparser through 0.9.7. ComposeQueryEngine in UriQuery.c has an integer overflow via long ke... |
| CVE-2024-34401 | MEDIUM | 6.1 | 0.4% | May 3, 2024 | Savsoft Quiz 6.0 allows stored XSS via the index.php/quiz/insert_quiz/ quiz_name parameter. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now