2024 CVE Vulnerabilities
39,247 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-2185 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | The Beaver Builder Addons by WPZOOM plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Box ... |
| CVE-2024-2183 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | The Beaver Builder Addons by WPZOOM plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Heading wi... |
| CVE-2024-2181 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | The Beaver Builder Addons by WPZOOM plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Button wid... |
| CVE-2024-2165 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | The SEOPress – On-site SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the image alt parameter... |
| CVE-2024-2138 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | The JetWidgets For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Animated Box widg... |
| CVE-2024-2125 | HIGH | 8.8 | 0.4% | Apr 9, 2024 | The EnvíaloSimple: Email Marketing y Newsletters plugin for WordPress is vulnerable to Cross-Site Request Forgery in all... |
| CVE-2024-2117 | MEDIUM | 5.4 | 0.5% | Apr 9, 2024 | The Elementor Website Builder – More than Just a Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Sc... |
| CVE-2024-2112 | HIGH | 7.5 | 0.7% | Apr 9, 2024 | The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is vulnerable to Sensiti... |
| CVE-2024-2093 | MEDIUM | 5.3 | 0.7% | Apr 9, 2024 | The VK All in One Expansion Unit plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up... |
| CVE-2024-2081 | MEDIUM | 5.4 | 0.6% | Apr 9, 2024 | The Best WordPress Gallery Plugin – FooGallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the... |
| CVE-2024-2039 | MEDIUM | 6.4 | 0.4% | Apr 9, 2024 | The Stackable – Page Builder Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ... |
| CVE-2024-2033 | MEDIUM | 4.3 | 0.5% | Apr 9, 2024 | The Video Conferencing with Zoom plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up... |
| CVE-2024-2027 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | The Real Media Library: Media Library Folder & File Manager plugin for WordPress is vulnerable to Stored Cross-Site Scri... |
| CVE-2024-2026 | MEDIUM | 5.4 | 0.5% | Apr 9, 2024 | The Passster plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's content_protector shortc... |
| CVE-2024-2018 | HIGH | 8.8 | 0.9% | Apr 9, 2024 | The WP Activity Log Premium plugin for WordPress is vulnerable to SQL Injection via the entry->roles parameter in all ve... |
| CVE-2024-24245 | HIGH | 7.8 | 0.2% | Apr 9, 2024 | An issue in Canimaan Software LTD ClamXAV v3.1.2 through v3.6.1 and fixed in v.3.6.2 allows a local attacker to escalate... |
| CVE-2024-1999 | MEDIUM | 5.4 | 0.5% | Apr 9, 2024 | The Gutenberg Blocks by Kadence Blocks – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Site S... |
| CVE-2024-1991 | HIGH | 8.8 | 0.9% | Apr 9, 2024 | The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vu... |
| CVE-2024-1990 | HIGH | 8.8 | 0.8% | Apr 9, 2024 | The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vu... |
| CVE-2024-1984 | MEDIUM | 5.3 | 0.5% | Apr 9, 2024 | The Graphene theme for WordPress is vulnerable to unauthorized access of data via meta tag in all versions up to, and in... |
| CVE-2024-1974 | MEDIUM | 6.5 | 1.2% | Apr 9, 2024 | The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Directory Traversal in all versions up... |
| CVE-2024-1960 | MEDIUM | 5.4 | 0.5% | Apr 9, 2024 | The ShopLentor – WooCommerce Builder for Elementor & Gutenberg +12 Modules – All in One Solution (formerly WooLentor) pl... |
| CVE-2024-1948 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the block content in... |
| CVE-2024-1934 | HIGH | 7.5 | 0.7% | Apr 9, 2024 | The WP Compress – Image Optimizer plugin for WordPress is vulnerable to unauthorized modification of data due to a missi... |
| CVE-2024-1904 | MEDIUM | 4.3 | 0.5% | Apr 9, 2024 | The MasterStudy LMS plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now