2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-2847MEDIUM5.4The WordPress File Upload plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s...
CVE-2024-2845MEDIUM6.4The BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support & Instant Answer For Elementor & Gutenb...
CVE-2024-2804CRITICAL9.8The Network Summary plugin for WordPress is vulnerable to SQL Injection via the 'category' parameter in all versions up ...
CVE-2024-2792MEDIUM6.4The Elementor Addon Elements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via widgets in all versio...
CVE-2024-2789MEDIUM5.4The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Calend...
CVE-2024-2788MEDIUM5.4The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Title HTML...
CVE-2024-2787MEDIUM5.4The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Page Title HTML...
CVE-2024-2786MEDIUM5.4The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several widgets in ...
CVE-2024-2783MEDIUM5.4The GamiPress – The #1 gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPr...
CVE-2024-2738MEDIUM6.1The Permalink Manager Lite and Pro plugins for WordPress are vulnerable to Reflected Cross-Site Scripting via the ‘s’ pa...
CVE-2024-2693HIGH8.8The Link Whisper Free plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 0...
CVE-2024-2654MEDIUM6.8The File Manager plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 7.2.5 v...
CVE-2024-2650MEDIUM6.4The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress...
CVE-2024-2623MEDIUM6.4The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress...
CVE-2024-2543MEDIUM4.3The Permalink Manager Lite plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability...
CVE-2024-2536MEDIUM5.4The Rank Math SEO with AI SEO Tools plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the HowTo bloc...
CVE-2024-2513MEDIUM5.4The WP Chat App plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'imageAlt' block attribute in ...
CVE-2024-2507MEDIUM5.4The JetWidgets For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the widget button URL...
CVE-2024-2504MEDIUM5.4The Page Builder: Pagelayer – Drag and Drop website builder plugin for WordPress is vulnerable to Stored Cross-Site Scri...
CVE-2024-2501HIGH7.5The Hubbub Lite – Fast, Reliable Social Sharing Buttons plugin for WordPress is vulnerable to PHP Object Injection in al...
CVE-2024-2492MEDIUM5.4The PowerPack Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Twitter Twe...
CVE-2024-2457MEDIUM5.4The Modal Window – create popup modal window plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the p...
CVE-2024-2456MEDIUM6.4The Ecwid Ecommerce Shopping Cart plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's sho...
CVE-2024-2436MEDIUM5.4The Lightweight Accordion plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s...
CVE-2024-2423MEDIUM6.4The UsersWP – Front-end login form, User Registration, User Profile & Members Directory plugin for WordPress plugin for ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now