2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-3047 | HIGH | 7.2 | 0.4% | May 2, 2024 | The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to Server-Side Request Forgery in ve... |
| CVE-2024-3045 | MEDIUM | 6.1 | 0.6% | May 2, 2024 | The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via s... |
| CVE-2024-3023 | MEDIUM | 4.4 | 0.4% | May 2, 2024 | The AnnounceKit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up ... |
| CVE-2024-3021 | MEDIUM | 4.4 | 0.5% | May 2, 2024 | The Mhr Post Ticker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Header Title value in all ... |
| CVE-2024-33949 | MEDIUM | 6.5 | 0.3% | May 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vark Min and Max P... |
| CVE-2024-33948 | MEDIUM | 5.5 | 0.3% | May 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pixel Industry Twe... |
| CVE-2024-2967 | MEDIUM | 4.4 | 0.5% | May 2, 2024 | The Guest posting / Frontend Posting wordpress plugin – WP Front User Submit / Front Editor plugin for WordPress is vuln... |
| CVE-2024-2960 | MEDIUM | 4.3 | 0.2% | May 2, 2024 | The SVS Pricing Tables plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu... |
| CVE-2024-2959 | MEDIUM | 4.3 | 0.2% | May 2, 2024 | The SVS Pricing Tables plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu... |
| CVE-2024-2958 | MEDIUM | 4.8 | 0.3% | May 2, 2024 | The SVS Pricing Tables plugin for WordPress is vulnerable to Stored Cross-Site Scripting via pricing table settings in a... |
| CVE-2024-2876 | CRITICAL | 9.8 | 80.6% | May 2, 2024 | The Email Subscribers by Icegram Express – Email Marketing, Newsletters, Automation for WordPress & WooCommerce plugin f... |
| CVE-2024-2867 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePres... |
| CVE-2024-2840 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Enhanced Media Library plugin for WordPress is vulnerable to Stored Cross-Site Scripting via media upload functional... |
| CVE-2024-2831 | HIGH | 8.8 | 0.6% | May 2, 2024 | The Calendar plugin for WordPress is vulnerable to SQL Injection via the plugin's shortcodes in all versions up to, and ... |
| CVE-2024-2797 | MEDIUM | 5.3 | 0.5% | May 2, 2024 | The MailerLite – Signup forms (official) plugin for WordPress is vulnerable to unauthorized plugin setting changes due t... |
| CVE-2024-2790 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Accord... |
| CVE-2024-2765 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugi... |
| CVE-2024-2752 | MEDIUM | 5.5 | 0.4% | May 2, 2024 | The Where Did You Hear About Us Checkout Field for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site S... |
| CVE-2024-2751 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘exad_infob... |
| CVE-2024-2750 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the URL attribu... |
| CVE-2024-2667 | CRITICAL | 9.8 | 5.7% | May 2, 2024 | The InstaWP Connect – 1-click WP Staging & Migration plugin for WordPress is vulnerable to arbitrary file uploads due to... |
| CVE-2024-2661 | HIGH | 8.8 | 0.6% | May 2, 2024 | The Barcode Scanner and Inventory manager. POS (Point of Sale) – scan barcodes & create orders with barcode reader. plug... |
| CVE-2024-2542 | MEDIUM | 6.4 | 0.3% | May 2, 2024 | The Jotform Online Forms – Drag & Drop Form Builder, Securely Embed Contact Forms plugin for WordPress is vulnerable to ... |
| CVE-2024-2503 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Grid W... |
| CVE-2024-2417 | HIGH | 8.8 | 0.9% | May 2, 2024 | The User Registration – Custom Registration Form, Login Form, and User Profile WordPress Plugin plugin for WordPress is ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now