2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-13601MEDIUM4.3The Majestic Support – The Leading-Edge Help Desk & Customer Support Plugin plugin for WordPress is vulnerable to Insecu...
CVE-2024-13600HIGH7.5The Majestic Support – The Leading-Edge Help Desk & Customer Support Plugin plugin for WordPress is vulnerable to Sensit...
CVE-2024-13374MEDIUM6.5The WP Table Manager plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on thew...
CVE-2024-13800HIGH8.1The ConvertPlus plugin for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of ser...
CVE-2024-13769MEDIUM5.4The Puzzles | WP Magazine / Review with Store WordPress Theme + RTL theme for WordPress is vulnerable to Stored Cross-Si...
CVE-2024-13665MEDIUM5.4The Admire Extra plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'space' shortcode in...
CVE-2024-13658MEDIUM5.4The NGG Smart Image Search plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'hr_SIS_ne...
CVE-2024-13656HIGH8.1The Click Mag - Viral WordPress News Magazine/Blog Theme theme for WordPress is vulnerable to unauthorized modification ...
CVE-2024-13654HIGH8.1The ZoxPress - The All-In-One WordPress News Theme theme for WordPress is vulnerable to unauthorized modification of dat...
CVE-2024-13653HIGH8.8The ZoxPress - The All-In-One WordPress News Theme theme for WordPress is vulnerable to unauthorized modification of dat...
CVE-2024-13421CRITICAL9.8The Real Estate 7 WordPress theme for WordPress is vulnerable to Privilege Escalation in all versions up to, and includi...
CVE-2024-12164MEDIUM4.3The WPSyncSheets Lite For WPForms – WPForms Google Spreadsheet Addon plugin for WordPress is vulnerable to unauthorized ...
CVE-2024-11746MEDIUM5.4The Discover the Best Woocommerce Product Brands Plugin for WordPress – Woocommerce Brands Plugin plugin for WordPress i...
CVE-2024-13749MEDIUM6.1The StaffList plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.2...
CVE-2024-13701MEDIUM5.4The Liveticker (by stklcode) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'livetic...
CVE-2024-13554MEDIUM5.3The The Ultimate WordPress Toolkit – WP Extended plugin for WordPress is vulnerable to unauthorized modification of data...
CVE-2024-13541MEDIUM5.4The aDirectory – WordPress Directory Listing Plugin plugin for WordPress is vulnerable to unauthorized loss of data due ...
CVE-2024-13539MEDIUM5.3The AForms Eats plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.3.1. ...
CVE-2024-29172HIGH7.5Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains a deadlock vulnerability. A remote attack...
CVE-2024-29171HIGH7.5Dell BSAFE SSL-J, versions prior to 6.6 and versions 7.0 through 7.2, contains an Improper certificate verification vuln...
CVE-2024-53880MEDIUM6.5NVIDIA Triton Inference Server contains a vulnerability in the model loading API, where a user could cause an integer ov...
CVE-2024-0145MEDIUM6.8NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause a heap-based buffer overflow issue by mea...
CVE-2024-0144MEDIUM6.8NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause a buffer overflow issue by means of a spe...
CVE-2024-0143MEDIUM6.8NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause an out-of-bounds write issue by means of ...
CVE-2024-21971MEDIUM5.5Improper input validation in AMD Crash Defender could allow an attacker to provide the Windows® system process ID to a k...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now