2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-54286 | MEDIUM | 6.5 | 0.4% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Smaily Smaily for ... |
| CVE-2024-54278 | MEDIUM | 4.3 | 0.4% | Dec 13, 2024 | Missing Authorization vulnerability in Plugin Devs News Ticker for Elementor news-ticker-for-elementor allows Accessing ... |
| CVE-2024-54277 | MEDIUM | 6.5 | 0.4% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Alireza Aliniya Ni... |
| CVE-2024-54276 | MEDIUM | 6.5 | 0.4% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in devfelixmoira Poll... |
| CVE-2024-54272 | MEDIUM | 6.5 | 0.4% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RadiusTheme Radius... |
| CVE-2024-54271 | MEDIUM | 5.4 | 0.5% | Dec 13, 2024 | Missing Authorization vulnerability in Arni Cinco WPCargo Track & Trace wpcargo allows Exploiting Incorrectly Configured... |
| CVE-2024-54267 | MEDIUM | 4.3 | 0.4% | Dec 13, 2024 | Missing Authorization vulnerability in CreativeMindsSolutions CM Answers cm-answers allows Exploiting Incorrectly Config... |
| CVE-2024-54266 | MEDIUM | 6.1 | 0.4% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ImageRecycle Image... |
| CVE-2024-54259 | MEDIUM | 6.5 | 0.7% | Dec 13, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in DELUCKS DELUCKS SEO delu... |
| CVE-2024-54252 | MEDIUM | 6.3 | 0.4% | Dec 13, 2024 | Missing Authorization vulnerability in DOTonPAPER Pinpoint Booking System booking-system allows Exploiting Incorrectly C... |
| CVE-2024-54250 | MEDIUM | 6.5 | 0.4% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in prodigycommerce Pr... |
| CVE-2024-54246 | MEDIUM | 6.5 | 0.4% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Think201 FAQs faqs... |
| CVE-2024-54245 | MEDIUM | 6.5 | 0.4% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Think201 Clients c... |
| CVE-2024-54244 | MEDIUM | 6.5 | 0.4% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Think201 Easy Repl... |
| CVE-2024-54243 | MEDIUM | 6.5 | 0.4% | Dec 13, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Think201 Echoza ec... |
| CVE-2024-54242 | MEDIUM | 6.5 | 0.3% | Dec 13, 2024 | Missing Authorization vulnerability in appsbd Simple Notification simple-notification allows Exploiting Incorrectly Conf... |
| CVE-2024-54241 | MEDIUM | 6.5 | 0.3% | Dec 13, 2024 | Missing Authorization vulnerability in Appsbd Elite Notification – Sales Popup, Social Proof, FOMO & WooCommerce Notific... |
| CVE-2024-47984 | MEDIUM | 6.5 | 0.5% | Dec 13, 2024 | Dell RecoverPoint for Virtual Machines 6.0.x contains Denial of Service vulnerability. A User with Remote access could p... |
| CVE-2024-24902 | MEDIUM | 5.5 | 0.2% | Dec 13, 2024 | Dell RecoverPoint for Virtual Machines 6.0.x contains an Improper access control vulnerability. A low privileged local a... |
| CVE-2024-48008 | MEDIUM | 6.5 | 0.6% | Dec 13, 2024 | Dell RecoverPoint for Virtual Machines 6.0.x contains a OS Command Injection vulnerability. An Low privileged remote att... |
| CVE-2024-9608 | MEDIUM | 6.1 | 0.3% | Dec 13, 2024 | The MyParcel plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg withou... |
| CVE-2024-11827 | MEDIUM | 6.4 | 0.3% | Dec 13, 2024 | The Out of the Block: OpenStreetMap plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's o... |
| CVE-2024-11012 | MEDIUM | 6.3 | 0.5% | Dec 13, 2024 | The The Notibar – Notification Bar for WordPress plugin for WordPress is vulnerable to arbitrary shortcode execution via... |
| CVE-2024-12465 | MEDIUM | 6.4 | 0.3% | Dec 13, 2024 | The Property Hive Stamp Duty Calculator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin... |
| CVE-2024-12421 | MEDIUM | 6.5 | 0.5% | Dec 13, 2024 | The The Coupon Affiliates – Affiliate Plugin for WooCommerce plugin for WordPress is vulnerable to arbitrary shortcode e... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now