2024 CVE Vulnerabilities

39,247 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-31306MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPDeveloper Essent...
CVE-2024-31296MEDIUM5.4Authorization Bypass Through User-Controlled Key vulnerability in Repute Infosystems BookingPress.This issue affects Boo...
CVE-2024-31292HIGH7.2Unrestricted Upload of File with Dangerous Type vulnerability in Moove Agency Import XML and RSS Feeds.This issue affect...
CVE-2024-31291HIGH7.1Authorization Bypass Through User-Controlled Key vulnerability in Metagauss ProfileGrid.This issue affects ProfileGrid :...
CVE-2024-31288HIGH7.2Server-Side Request Forgery (SSRF) vulnerability in RapidLoad RapidLoad Power-Up for Autoptimize.This issue affects Rapi...
CVE-2024-31286CRITICAL9.9Unrestricted Upload of File with Dangerous Type vulnerability in J.N. Breetvelt a.K.A. OpaJaap WP Photo Album Plus.This ...
CVE-2024-31280HIGH8.8Unrestricted Upload of File with Dangerous Type vulnerability in andy_moyle Church Admin church-admin.This issue affects...
CVE-2024-31277HIGH8.7Deserialization of Untrusted Data vulnerability in PickPlugins Product Designer.This issue affects Product Designer: fro...
CVE-2024-31260HIGH7.2Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WisdmLabs Edwiser ...
CVE-2024-31258MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Micro.Company Form...
CVE-2024-31257MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Formsite Formsite ...
CVE-2024-31256HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WebinarPress allow...
CVE-2024-31255HIGH7.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ELEXtensions ELEX ...
CVE-2024-31241HIGH7.6Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ThimPress LearnPre...
CVE-2024-31236MEDIUM5.4Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Royal Royal Ele...
CVE-2024-31234HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sizam REHub Framew...
CVE-2024-31233HIGH8.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sizam Rehub.This i...
CVE-2024-22155MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Automattic WooCommerce.This issue affects WooCommerce: from n/a throu...
CVE-2024-3427MEDIUM5.4A vulnerability, which was classified as problematic, was found in SourceCodester Online Courseware 1.0. This affects an...
CVE-2024-3426MEDIUM5.4A vulnerability, which was classified as problematic, has been found in SourceCodester Online Courseware 1.0. Affected b...
CVE-2024-3425CRITICAL9.8A vulnerability classified as critical was found in SourceCodester Online Courseware 1.0. Affected by this vulnerability...
CVE-2024-3424CRITICAL9.8A vulnerability classified as critical has been found in SourceCodester Online Courseware 1.0. Affected is an unknown fu...
CVE-2024-3423CRITICAL9.8A vulnerability was found in SourceCodester Online Courseware 1.0. It has been rated as critical. This issue affects som...
CVE-2024-3422CRITICAL9.8A vulnerability was found in SourceCodester Online Courseware 1.0. It has been declared as critical. This vulnerability ...
CVE-2024-3421CRITICAL9.8A vulnerability was found in SourceCodester Online Courseware 1.0. It has been classified as critical. This affects an u...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now