2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-1716 | MEDIUM | 4.3 | 0.4% | May 2, 2024 | The Admin Bar Remover plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit... |
| CVE-2024-1688 | MEDIUM | 5.3 | 0.5% | May 2, 2024 | The Woo Total Sales plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check ... |
| CVE-2024-1679 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Print Labels with Barcodes. Create price tags, product labels, order labels for WooCommerce plugin for WordPress is ... |
| CVE-2024-1678 | MEDIUM | 5.3 | 0.4% | May 2, 2024 | The Subway – Private Site Option plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up... |
| CVE-2024-1677 | HIGH | 8.8 | 0.5% | May 2, 2024 | The Print Labels with Barcodes. Create price tags, product labels, order labels for WooCommerce plugin for WordPress is ... |
| CVE-2024-1584 | MEDIUM | 5.3 | 0.4% | May 2, 2024 | The Analytify – Google Analytics Dashboard For WordPress (GA4 analytics made easy) plugin for WordPress is vulnerable to... |
| CVE-2024-1572 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The WP ULike plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wp_ulike' shortcode in ... |
| CVE-2024-1567 | CRITICAL | 9.8 | 1.1% | May 2, 2024 | The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to limited file uploads due to missing file ... |
| CVE-2024-1533 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ... |
| CVE-2024-1416 | MEDIUM | 4.3 | 0.3% | May 2, 2024 | The Responsive Contact Form Builder & Lead Generation Plugin plugin for WordPress is vulnerable to unauthorized access t... |
| CVE-2024-1415 | MEDIUM | 4.3 | 0.3% | May 2, 2024 | The Responsive Contact Form Builder & Lead Generation Plugin plugin for WordPress is vulnerable to Cross-Site Request Fo... |
| CVE-2024-1396 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ... |
| CVE-2024-1386 | MEDIUM | 6.4 | 0.4% | May 2, 2024 | The MailerLite – Signup forms (official) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi... |
| CVE-2024-1348 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ... |
| CVE-2024-1173 | HIGH | 7.2 | 0.8% | May 2, 2024 | The WP ERP | Complete HR solution with recruitment & job listings | WooCommerce CRM & Accounting plugin for WordPress is... |
| CVE-2024-0908 | MEDIUM | 5.3 | 0.5% | May 2, 2024 | The Advanced Post Block – Display Posts, Pages, or Custom Posts on Your Page plugin for WordPress is vulnerable to unaut... |
| CVE-2024-0848 | MEDIUM | 6.1 | 0.4% | May 2, 2024 | The AA Cash Calculator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘invoice’ parameter ... |
| CVE-2024-0847 | MEDIUM | 4.3 | 0.2% | May 2, 2024 | The 5280 Bootstrap Modal Contact Form plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions u... |
| CVE-2024-0710 | MEDIUM | 5.3 | 1.0% | May 2, 2024 | The GP Unique ID plugin for WordPress is vulnerable to Unique ID Modification in all versions up to, and including, 1.5.... |
| CVE-2024-0629 | MEDIUM | 5.3 | 0.4% | May 2, 2024 | The 2Checkout Payment Gateway for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data du... |
| CVE-2024-0615 | MEDIUM | 5.3 | 0.5% | May 2, 2024 | The Content Control – The Ultimate Content Restriction Plugin! Restrict Content, Create Conditional Blocks & More plugin... |
| CVE-2024-0613 | MEDIUM | 6.1 | 0.2% | May 2, 2024 | The Delete Custom Fields plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inc... |
| CVE-2024-4433 | MEDIUM | 5.9 | 0.4% | May 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mr Digital Simple ... |
| CVE-2024-33530 | HIGH | 7.5 | 0.7% | May 2, 2024 | In Jitsi Meet before 9391, a logic flaw in password-protected Jitsi meetings (that make use of a lobby) leads to the dis... |
| CVE-2024-32359 | MEDIUM | 6.9 | 0.2% | May 2, 2024 | An RBAC authorization risk in Carina v0.13.0 and earlier allows local attackers to execute arbitrary code through design... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now