2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-33629MEDIUM4.4Server-Side Request Forgery (SSRF) vulnerability in Creative Motion Auto Featured Image (Auto Post Thumbnail).This issue...
CVE-2024-33627MEDIUM4.4Server-Side Request Forgery (SSRF) vulnerability in Cusmin Absolutely Glamorous Custom Admin.This issue affects Absolute...
CVE-2024-33584MEDIUM4.7URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Deepen Bajracharya Video Conferencing with Zoom.Thi...
CVE-2024-33575MEDIUM5.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in User Meta user-meta.This issue affects User ...
CVE-2024-33566CRITICAL10Missing Authorization vulnerability in N-Media OrderConvo allows OS Command Injection.This issue affects OrderConvo: fro...
CVE-2024-33553CRITICAL9.8Deserialization of Untrusted Data vulnerability in 8theme XStore Core.This issue affects XStore Core: from n/a through 5...
CVE-2024-33538MEDIUM5.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Fastline Media LLC Assistant – Every Day Pro...
CVE-2024-3196MEDIUM6.7A vulnerability was found in MailCleaner up to 2023.03.14. It has been declared as critical. This vulnerability affects ...
CVE-2024-3195HIGH7.2A vulnerability was found in MailCleaner up to 2023.03.14. It has been classified as critical. This affects an unknown p...
CVE-2024-3194MEDIUM6.1A vulnerability was found in MailCleaner up to 2023.03.14 and classified as problematic. Affected by this issue is some ...
CVE-2024-3193HIGH8.8A vulnerability has been found in MailCleaner up to 2023.03.14 and classified as critical. Affected by this vulnerabilit...
CVE-2024-3192CRITICAL9.6A vulnerability, which was classified as problematic, was found in MailCleaner up to 2023.03.14. Affected is an unknown ...
CVE-2024-3191CRITICAL9.8A vulnerability, which was classified as critical, has been found in MailCleaner up to 2023.03.14. This issue affects so...
CVE-2024-33546CRITICAL9.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AA-Team WZone allo...
CVE-2024-33544CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AA-Team WZone allo...
CVE-2024-4303HIGH8.8ArmorX Android APP's multi-factor authentication (MFA) for the login function is not properly implemented. Remote attack...
CVE-2024-4302MEDIUM6.1Super 8 Live Chat online customer service platform fails to properly filter user input, allowing unauthenticated remote ...
CVE-2024-33905MEDIUM4.6In Telegram WebK before 2.0.0 (488), a crafted Mini Web App allows XSS via the postMessage web_app_open_link event type.
CVE-2024-33904HIGH7In plugins/HookSystem.cpp in Hyprland through 0.39.1 (before 28c8561), through a race condition, a local attacker can ca...
CVE-2024-33686MEDIUM4.3Missing Authorization vulnerability in Extend Themes Pathway, Extend Themes Hugo WP, Extend Themes Althea WP, Extend The...
CVE-2024-33681HIGH7.1Cross-Site Request Forgery (CSRF) vulnerability in Sandor Kovacs Regenerate post permalink allows Cross-Site Scripting (...
CVE-2024-33632MEDIUM5.4Cross-Site Request Forgery (CSRF) vulnerability in Piotnet Piotnet Addons For Elementor Pro.This issue affects Piotnet A...
CVE-2024-33631MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Piotnet Piotnet Ad...
CVE-2024-33630MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Piotnet Piotnet Ad...
CVE-2024-33571HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Infomaniak Network...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now