2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-2237 | MEDIUM | 5.4 | 0.4% | Mar 13, 2024 | The Premium Addons PRO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Global Badge module in ... |
| CVE-2024-2194 | HIGH | 7.2 | 67.7% | Mar 13, 2024 | The WP Statistics plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the URL search parameter in all ... |
| CVE-2024-2172 | CRITICAL | 9.8 | 1.7% | Mar 13, 2024 | The Malware Scanner plugin and the Web Application Firewall plugin for WordPress (both by MiniOrange) are vulnerable to ... |
| CVE-2024-2126 | MEDIUM | 5.4 | 0.4% | Mar 13, 2024 | The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Registration Form w... |
| CVE-2024-2106 | HIGH | 7.5 | 0.8% | Mar 13, 2024 | The MasterStudy LMS WordPress Plugin – for Online Courses and Education plugin for WordPress is vulnerable to Informatio... |
| CVE-2024-2030 | MEDIUM | 6.4 | 0.6% | Mar 13, 2024 | The Database for Contact Form 7, WPforms, Elementor forms plugin for WordPress is vulnerable to Stored Cross-Site Script... |
| CVE-2024-2028 | MEDIUM | 5.4 | 0.4% | Mar 13, 2024 | The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Covid-19 St... |
| CVE-2024-2020 | MEDIUM | 6.1 | 0.6% | Mar 13, 2024 | The Calculated Fields Form plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the form page href para... |
| CVE-2024-2006 | HIGH | 8.8 | 1.2% | Mar 13, 2024 | The Post Grid, Slider & Carousel Ultimate – with Shortcode, Gutenberg Block & Elementor Widget plugin for WordPress is v... |
| CVE-2024-2000 | MEDIUM | 5.4 | 0.4% | Mar 13, 2024 | The Premium Addons PRO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'navigation_dots' param... |
| CVE-2024-28683 | MEDIUM | 6.1 | 0.5% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a cross-site scripting (XSS) vulnerability via create file. |
| CVE-2024-28682 | MEDIUM | 6.3 | 0.2% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/sys_cache_up.php. |
| CVE-2024-28681 | MEDIUM | 6.1 | 0.2% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/plus_edit.php. |
| CVE-2024-28680 | MEDIUM | 6.1 | 0.5% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/diy_add.php. |
| CVE-2024-28679 | MEDIUM | 6.1 | 0.5% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a cross-site scripting (XSS) vulnerability via Photo Collection. |
| CVE-2024-28678 | MEDIUM | 6.3 | 0.2% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/article... |
| CVE-2024-28677 | MEDIUM | 6.1 | 0.2% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/article_keywords_main... |
| CVE-2024-28676 | MEDIUM | 6.1 | 0.5% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a cross-site scripting (XSS) vulnerability via /dede/article_edit.php. |
| CVE-2024-28673 | HIGH | 8.8 | 0.4% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/mychannel_edit.php. |
| CVE-2024-28672 | MEDIUM | 5.4 | 0.2% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/media_edit.php. |
| CVE-2024-28671 | HIGH | 8.8 | 0.9% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/stepselect_main.php. |
| CVE-2024-28670 | MEDIUM | 6.1 | 0.2% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/freelist_main.php. |
| CVE-2024-28669 | MEDIUM | 5.4 | 0.2% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/freelist_edit.php. |
| CVE-2024-26630 | HIGH | 7.1 | 0.3% | Mar 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: mm: cachestat: fix folio read-after-free in cache w... |
| CVE-2024-25101 | MEDIUM | 4.8 | 0.4% | Mar 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in yonifre Maspik – S... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now