2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-3729CRITICAL9.8The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to improper missing encryption exception handling o...
CVE-2024-3728MEDIUM6.4The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress...
CVE-2024-3725MEDIUM5.4The Otter Blocks – Gutenberg Blocks, Page Builder for Gutenberg Editor & FSE plugin for WordPress is vulnerable to Store...
CVE-2024-3724MEDIUM5.4The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Image ...
CVE-2024-3717HIGH7.5The Drag and Drop Multiple File Upload – Contact Form 7 plugin for WordPress is vulnerable to Sensitive Information Expo...
CVE-2024-3715HIGH7.2The Database for Contact Form 7, WPforms, Elementor forms plugin for WordPress is vulnerable to Stored Cross-Site Script...
CVE-2024-3681MEDIUM6.1The Interactive World Maps plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the search (s) param...
CVE-2024-3677MEDIUM6.4The Ultimate 410 Gone Status Code plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 410 entries ...
CVE-2024-3675MEDIUM6.4The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi...
CVE-2024-3674MEDIUM6.4The Inline Google Spreadsheet Viewer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ...
CVE-2024-3670MEDIUM6.4The Leaflet Maps Marker (Google Maps, OpenStreetMap, Bing Maps) plugin for WordPress is vulnerable to Stored Cross-Site ...
CVE-2024-3650MEDIUM5.4The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Accordi...
CVE-2024-3649MEDIUM5.3The Contact Form by WPForms – Drag & Drop Form Builder for WordPress plugin for WordPress is vulnerable to price manipul...
CVE-2024-3647MEDIUM6.4The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's post...
CVE-2024-3607MEDIUM4.3The PropertyHive plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on th...
CVE-2024-3606MEDIUM4.3The ProfileGrid – User Profiles, Memberships, Groups and Communities plugin for WordPress is vulnerable to unauthorized ...
CVE-2024-3601MEDIUM5.3The Poll Maker – Best WordPress Poll Plugin plugin for WordPress is vulnerable to unauthorized access of data due to a m...
CVE-2024-3599MEDIUM5.3The WP Cookie Consent ( for GDPR, CCPA & ePrivacy ) plugin for WordPress is vulnerable to unauthorized loss of data due ...
CVE-2024-3588MEDIUM5.4The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Countdo...
CVE-2024-3585MEDIUM5.3The Send PDF for Contact Form 7 plugin for WordPress is vulnerable to unauthorized access of form submissions due to a m...
CVE-2024-3581MEDIUM4.3The MaxGalleria plugin for WordPress is vulnerable to unauthorized image upload due to a missing capability check on the...
CVE-2024-3554MEDIUM5.4The All in One SEO – Best WordPress SEO Plugin – Easily Improve SEO Rankings & Increase Traffic plugin for WordPress is ...
CVE-2024-3553MEDIUM6.5The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to unauthorized modification of ...
CVE-2024-3550MEDIUM5.4The WP Shortcodes Plugin — Shortcodes Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
CVE-2024-3546MEDIUM4.3The WordPress Backup & Migration plugin for WordPress is vulnerable to unauthorized access of data due to a missing capa...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now