2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-3520 | MEDIUM | 4.3 | 0.4% | May 2, 2024 | The Country State City Dropdown CF7 plugin for WordPress is vulnerable to unauthorized modification of data due to a mis... |
| CVE-2024-3517 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ... |
| CVE-2024-3500 | HIGH | 8.8 | 1.1% | May 2, 2024 | The ElementsKit Pro plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.6... |
| CVE-2024-3499 | HIGH | 8.8 | 1.1% | May 2, 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and i... |
| CVE-2024-3489 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the Countdow... |
| CVE-2024-3473 | MEDIUM | 6.1 | 0.5% | May 2, 2024 | The Header Footer Code Manager Pro plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the message ... |
| CVE-2024-3341 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ... |
| CVE-2024-3340 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Colibri Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'colibri-gal... |
| CVE-2024-3338 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Colibri Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via image alt data parameter ... |
| CVE-2024-3337 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Colibri Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'colibri_bre... |
| CVE-2024-3312 | MEDIUM | 5.3 | 0.6% | May 2, 2024 | The Easy Custom Auto Excerpt plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to,... |
| CVE-2024-3308 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Im... |
| CVE-2024-3307 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Co... |
| CVE-2024-3295 | MEDIUM | 6.5 | 0.9% | May 2, 2024 | The User Registration – Custom Registration Form, Login Form, and User Profile WordPress Plugin plugin for WordPress is ... |
| CVE-2024-3287 | MEDIUM | 5.3 | 0.6% | May 2, 2024 | The SmartCrawl WordPress SEO checker, SEO analyzer, SEO optimizer plugin for WordPress is vulnerable to unauthorized ld+... |
| CVE-2024-3275 | MEDIUM | 4.3 | 0.5% | May 2, 2024 | The eRoom – Zoom Meetings & Webinars plugin for WordPress is vulnerable to Sensitive Information Exposure in all version... |
| CVE-2024-3233 | MEDIUM | 4.3 | 0.4% | May 2, 2024 | The Ivory Search – WordPress Search Plugin plugin for WordPress is vulnerable to unauthorized modification of data due t... |
| CVE-2024-3215 | MEDIUM | 4.3 | 0.3% | May 2, 2024 | The Paid Memberships Pro – Content Restriction, User Registration, & Paid Subscriptions plugin for WordPress is vulnerab... |
| CVE-2024-3206 | MEDIUM | 4.3 | 0.6% | May 2, 2024 | The Different Menu in Different Pages – Control Menu Visibility (All in One) plugin for WordPress is vulnerable to unaut... |
| CVE-2024-3199 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The The Plus Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the countdown wi... |
| CVE-2024-3197 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The The Plus Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via custom attribute... |
| CVE-2024-3161 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Jeg Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the countdown widget's attri... |
| CVE-2024-3107 | MEDIUM | 4.3 | 0.6% | May 2, 2024 | The Spectra – WordPress Gutenberg Blocks plugin for WordPress is vulnerable to Path Traversal in versions up to, and inc... |
| CVE-2024-3074 | MEDIUM | 6.4 | 0.5% | May 2, 2024 | The Elementor ImageBox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the image box widget in all... |
| CVE-2024-3071 | MEDIUM | 4.3 | 0.4% | May 2, 2024 | The ACF On-The-Go plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability ch... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now