2024 CVE Vulnerabilities

39,218 CVEs published in 2024.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2024-35304CRITICAL9.8System command injection through Netflow function due to improper input validation, allowing attackers to execute arbitr...
CVE-2024-3700CRITICAL9.8Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the databas...
CVE-2024-3699CRITICAL9.8Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the databas...
CVE-2024-1228CRITICAL9.8Use of hard-coded password to the patients' database allows an attacker to retrieve sensitive data stored in the databas...
CVE-2024-35735CRITICAL9.8Missing Authorization vulnerability in CodePeople WP Time Slots Booking Form.This issue affects WP Time Slots Booking Fo...
CVE-2024-22298CRITICAL9.8Missing Authorization vulnerability in TMS Amelia ameliabooking.This issue affects Amelia: from n/a through 1.0.98.
CVE-2024-4577CRITICAL9.8In PHP versions 8.1.* before 8.1.29, 8.2.* before 8.2.20, 8.3.* before 8.3.8, when using Apache and PHP-CGI on Windows, ...
CVE-2024-35661CRITICAL9.8Missing Authorization vulnerability in SoftLab Upload Fields for WPForms.This issue affects Upload Fields for WPForms: f...
CVE-2024-34802CRITICAL9.8Missing Authorization vulnerability in AdFoxly AdFoxly – Ad Manager, AdSense Ads & Ads.Txt.This issue affects AdFoxly – ...
CVE-2024-31284CRITICAL9.8Missing Authorization vulnerability in WPDeveloper EmbedPress.This issue affects EmbedPress: from n/a through 3.9.8.
CVE-2024-31283CRITICAL9.8Missing Authorization vulnerability in zorem Advanced Local Pickup for WooCommerce.This issue affects Advanced Local Pic...
CVE-2024-31276CRITICAL9.8Missing Authorization vulnerability in WPFactory Products, Order & Customers Export for WooCommerce.This issue affects P...
CVE-2024-31275CRITICAL9.8Missing Authorization vulnerability in Metagauss EventPrime.This issue affects EventPrime: from n/a through 3.3.4.
CVE-2024-31352CRITICAL9.8Missing Authorization vulnerability in Email Subscribers & Newsletters.This issue affects Email Subscribers & Newsletter...
CVE-2024-32799CRITICAL9.8Missing Authorization vulnerability in Merv Barrett Easy Property Listings.This issue affects Easy Property Listings: fr...
CVE-2024-35660CRITICAL9.8Missing Authorization vulnerability in Jewel Theme Master Addons for Elementor.This issue affects Master Addons for Elem...
CVE-2024-33561CRITICAL9.8Missing Authorization vulnerability in 8theme XStore.This issue affects XStore: from n/a through 9.3.8.
CVE-2024-33545CRITICAL9.8Missing Authorization vulnerability in AA-Team WZone.This issue affects WZone: from n/a through 14.0.10.
CVE-2024-31273CRITICAL9.8Missing Authorization vulnerability in JS Help Desk JS Help Desk – Best Help Desk & Support Plugin.This issue affects JS...
CVE-2024-30544CRITICAL9.8Missing Authorization vulnerability in UPQODE Whizzy.This issue affects Whizzy: from n/a through 1.1.18.
CVE-2024-30529CRITICAL9.8Missing Authorization vulnerability in tainacan Tainacan tainacan.This issue affects Tainacan: from n/a through <= 0.20....
CVE-2024-30512CRITICAL9.1Missing Authorization vulnerability in weForms.This issue affects weForms: from n/a through 1.6.20.
CVE-2024-25929CRITICAL9.1Missing Authorization vulnerability in MultiVendorX Product Catalog Enquiry for WooCommerce by MultiVendorX.This issue a...
CVE-2024-30539CRITICAL9.8Missing Authorization vulnerability in Awesome Support Team Awesome Support.This issue affects Awesome Support: from n/a...
CVE-2024-30538CRITICAL9.8Missing Authorization vulnerability in DELUCKS GmbH DELUCKS SEO.This issue affects DELUCKS SEO: from n/a through 2.5.4.

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now