2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-1365 | MEDIUM | 6.1 | 0.5% | Mar 13, 2024 | The YML for Yandex Market plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the feed_id paramete... |
| CVE-2024-1363 | MEDIUM | 5.4 | 0.4% | Mar 13, 2024 | The Easy Accordion – Best Accordion FAQ Plugin for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scr... |
| CVE-2024-1358 | MEDIUM | 6.5 | 1.2% | Mar 13, 2024 | The Elementor Addon Elements plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and includ... |
| CVE-2024-1321 | MEDIUM | 5.3 | 0.3% | Mar 13, 2024 | The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to payment bypass in all versi... |
| CVE-2024-1311 | HIGH | 8.8 | 1.5% | Mar 13, 2024 | The Brizy – Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validatio... |
| CVE-2024-1296 | MEDIUM | 5.4 | 0.5% | Mar 13, 2024 | The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's block upload... |
| CVE-2024-1293 | MEDIUM | 5.4 | 0.4% | Mar 13, 2024 | The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the embedded media custom... |
| CVE-2024-1291 | MEDIUM | 5.4 | 0.4% | Mar 13, 2024 | The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Countdown URL paramet... |
| CVE-2024-1237 | MEDIUM | 5.4 | 0.5% | Mar 13, 2024 | The Elementor Header & Footer Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the flyout_l... |
| CVE-2024-1234 | MEDIUM | 5.4 | 1.6% | Mar 13, 2024 | The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via data attribute ... |
| CVE-2024-1203 | HIGH | 8.8 | 0.8% | Mar 13, 2024 | The Conversios – Google Analytics 4 (GA4), Meta Pixel & more Via Google Tag Manager For WooCommerce plugin for WordPress... |
| CVE-2024-1176 | MEDIUM | 5.3 | 0.6% | Mar 13, 2024 | The HT Easy GA4 – Google Analytics WordPress Plugin plugin for WordPress is vulnerable to unauthorized modification of d... |
| CVE-2024-1158 | MEDIUM | 4.3 | 0.5% | Mar 13, 2024 | The Post Form – Registration Form – Profile Form for User Profiles – Frontend Content Forms for User Submissions (UGC) p... |
| CVE-2024-1127 | MEDIUM | 4.3 | 0.5% | Mar 13, 2024 | The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to unauthorized access of data... |
| CVE-2024-1126 | MEDIUM | 4.3 | 0.4% | Mar 13, 2024 | The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to unauthorized access of data... |
| CVE-2024-1083 | MEDIUM | 5.3 | 0.5% | Mar 13, 2024 | The Simple Restrict plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and incl... |
| CVE-2024-1080 | MEDIUM | 5.4 | 0.4% | Mar 13, 2024 | The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the vi... |
| CVE-2024-1074 | MEDIUM | 5.4 | 0.5% | Mar 13, 2024 | The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the au... |
| CVE-2024-1071 | CRITICAL | 9.8 | 89.4% | Mar 13, 2024 | The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugi... |
| CVE-2024-1038 | MEDIUM | 6.1 | 0.6% | Mar 13, 2024 | The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to DOM-Based Reflected Cross-Site Scripti... |
| CVE-2024-0976 | MEDIUM | 6.1 | 0.6% | Mar 13, 2024 | The WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce plugin for WordPress is vulnerable ... |
| CVE-2024-0898 | MEDIUM | 4.8 | 0.4% | Mar 13, 2024 | The Chat Bubble – Floating Chat with Contact Chat Icons, Messages, Telegram, Email, SMS, Call me back plugin for WordPre... |
| CVE-2024-0897 | MEDIUM | 5.4 | 0.4% | Mar 13, 2024 | The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the im... |
| CVE-2024-0896 | MEDIUM | 5.4 | 0.5% | Mar 13, 2024 | The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the bu... |
| CVE-2024-0871 | MEDIUM | 5.4 | 0.4% | Mar 13, 2024 | The Beaver Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Icon Widget 'fl_builder_dat... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now