2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-3729 | CRITICAL | 9.8 | 0.8% | May 2, 2024 | The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to improper missing encryption exception handling o... |
| CVE-2024-3728 | MEDIUM | 6.4 | 0.6% | May 2, 2024 | The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress... |
| CVE-2024-3725 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Otter Blocks – Gutenberg Blocks, Page Builder for Gutenberg Editor & FSE plugin for WordPress is vulnerable to Store... |
| CVE-2024-3724 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Image ... |
| CVE-2024-3717 | HIGH | 7.5 | 0.7% | May 2, 2024 | The Drag and Drop Multiple File Upload – Contact Form 7 plugin for WordPress is vulnerable to Sensitive Information Expo... |
| CVE-2024-3715 | HIGH | 7.2 | 0.6% | May 2, 2024 | The Database for Contact Form 7, WPforms, Elementor forms plugin for WordPress is vulnerable to Stored Cross-Site Script... |
| CVE-2024-3681 | MEDIUM | 6.1 | 0.5% | May 2, 2024 | The Interactive World Maps plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the search (s) param... |
| CVE-2024-3677 | MEDIUM | 6.4 | 0.5% | May 2, 2024 | The Ultimate 410 Gone Status Code plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 410 entries ... |
| CVE-2024-3675 | MEDIUM | 6.4 | 0.6% | May 2, 2024 | The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi... |
| CVE-2024-3674 | MEDIUM | 6.4 | 0.4% | May 2, 2024 | The Inline Google Spreadsheet Viewer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ... |
| CVE-2024-3670 | MEDIUM | 6.4 | 0.4% | May 2, 2024 | The Leaflet Maps Marker (Google Maps, OpenStreetMap, Bing Maps) plugin for WordPress is vulnerable to Stored Cross-Site ... |
| CVE-2024-3650 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Accordi... |
| CVE-2024-3649 | MEDIUM | 5.3 | 0.7% | May 2, 2024 | The Contact Form by WPForms – Drag & Drop Form Builder for WordPress plugin for WordPress is vulnerable to price manipul... |
| CVE-2024-3647 | MEDIUM | 6.4 | 0.4% | May 2, 2024 | The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's post... |
| CVE-2024-3607 | MEDIUM | 4.3 | 0.6% | May 2, 2024 | The PropertyHive plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on th... |
| CVE-2024-3606 | MEDIUM | 4.3 | 0.5% | May 2, 2024 | The ProfileGrid – User Profiles, Memberships, Groups and Communities plugin for WordPress is vulnerable to unauthorized ... |
| CVE-2024-3601 | MEDIUM | 5.3 | 0.6% | May 2, 2024 | The Poll Maker – Best WordPress Poll Plugin plugin for WordPress is vulnerable to unauthorized access of data due to a m... |
| CVE-2024-3599 | MEDIUM | 5.3 | 0.5% | May 2, 2024 | The WP Cookie Consent ( for GDPR, CCPA & ePrivacy ) plugin for WordPress is vulnerable to unauthorized loss of data due ... |
| CVE-2024-3588 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Countdo... |
| CVE-2024-3585 | MEDIUM | 5.3 | 0.7% | May 2, 2024 | The Send PDF for Contact Form 7 plugin for WordPress is vulnerable to unauthorized access of form submissions due to a m... |
| CVE-2024-3581 | MEDIUM | 4.3 | 0.6% | May 2, 2024 | The MaxGalleria plugin for WordPress is vulnerable to unauthorized image upload due to a missing capability check on the... |
| CVE-2024-3554 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The All in One SEO – Best WordPress SEO Plugin – Easily Improve SEO Rankings & Increase Traffic plugin for WordPress is ... |
| CVE-2024-3553 | MEDIUM | 6.5 | 0.5% | May 2, 2024 | The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to unauthorized modification of ... |
| CVE-2024-3550 | MEDIUM | 5.4 | 0.6% | May 2, 2024 | The WP Shortcodes Plugin — Shortcodes Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the... |
| CVE-2024-3546 | MEDIUM | 4.3 | 0.5% | May 2, 2024 | The WordPress Backup & Migration plugin for WordPress is vulnerable to unauthorized access of data due to a missing capa... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now