2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-32801MEDIUM5.9Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ShapedPlugin Widge...
CVE-2024-32791MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Leap13 Premium Add...
CVE-2024-32706HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in reputeinfosystems ...
CVE-2024-32953HIGH7.5Insertion of Sensitive Information into Log File vulnerability in Newsletters.This issue affects Newsletters: from n/a t...
CVE-2024-32836CRITICAL9.1Unrestricted Upload of File with Dangerous Type vulnerability in WP Lab WP-Lister Lite for eBay wp-lister-for-ebay.This ...
CVE-2024-32835MEDIUM5.4Deserialization of Untrusted Data vulnerability in WebToffee Import Export WordPress Users.This issue affects Import Exp...
CVE-2024-32825HIGH7.5Insertion of Sensitive Information Into Sent Data vulnerability in Simply Static Simply Static simply-static.This issue ...
CVE-2024-32817MEDIUM4.4Deserialization of Untrusted Data vulnerability in Javier Carazo Import and export users and customers import-users-from...
CVE-2024-32816HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in PickPlugins Post Grid.This issue affects Pos...
CVE-2024-32812MEDIUM5.4Server-Side Request Forgery (SSRF) vulnerability in Podlove Podlove Podcast Publisher.This issue affects Podlove Podcast...
CVE-2024-32803MEDIUM6.4Server-Side Request Forgery (SSRF) vulnerability in 2day.Sk, Webikon SuperFaktura WooCommerce.This issue affects SuperFa...
CVE-2024-32796MEDIUM4.3Insertion of Sensitive Information Into Sent Data vulnerability in Jack Arturo WP Fusion Lite wp-fusion-lite allows Retr...
CVE-2024-32788MEDIUM5.3Insertion of Sensitive Information into Log File vulnerability in Frédéric GILLES FG Joomla to WordPress.This issue affe...
CVE-2024-32782MEDIUM6.5Insertion of Sensitive Information Into Sent Data vulnerability in DevItems HT Mega ht-mega-for-elementor.This issue aff...
CVE-2024-32781HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in ThemeHigh Email Customizer for WooCommerce.T...
CVE-2024-32780MEDIUM5.9Exposure of Sensitive Information to an Unauthorized Actor vulnerability in E4J s.R.L. VikRentCar.This issue affects Vik...
CVE-2024-32775MEDIUM4.9Server-Side Request Forgery (SSRF) vulnerability in Pavex Embed Google Photos album.This issue affects Embed Google Phot...
CVE-2024-32726HIGH7.5Exposure of Sensitive Information to an Unauthorized Actor vulnerability in vinoth06. Frontend Dashboard.This issue affe...
CVE-2024-32718MEDIUM5.4Server-Side Request Forgery (SSRF) vulnerability in Webangon The Pack Elementor.This issue affects The Pack Elementor ad...
CVE-2024-32716MEDIUM5.3Exposure of Sensitive Information to an Unauthorized Actor vulnerability in StreamWeasels StreamWeasels Twitch Integrati...
CVE-2024-32710HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Plechev Andrey WP-...
CVE-2024-32709CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Plechev Andrey WP-...
CVE-2024-28977MEDIUM5.5Dell Repository Manager, versions 3.4.2 through 3.4.4,contains a Path Traversal vulnerability in logger module. A local ...
CVE-2024-28976HIGH7.8Dell Repository Manager, versions prior to 3.4.5, contains a Path Traversal vulnerability in API module. A local attacke...
CVE-2024-28963MEDIUM5.5Telemetry Dashboard v1.0.0.7 for Dell ThinOS 2402 contains a sensitive information disclosure vulnerability. An unauthen...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now