2024 CVE Vulnerabilities
39,250 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-0964 | CRITICAL | 9.4 | 1.0% | Feb 5, 2024 | A local file include could be remotely triggered in Gradio due to a vulnerable user-supplied JSON value in an API reques... |
| CVE-2024-24595 | HIGH | 7.1 | 0.3% | Feb 5, 2024 | Allegro AI’s open-source version of ClearML stores passwords in plaintext within the MongoDB instance, resulting in a co... |
| CVE-2024-1210 | MEDIUM | 5.3 | 2.0% | Feb 5, 2024 | The LearnDash LMS plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ... |
| CVE-2024-1209 | MEDIUM | 5.3 | 2.4% | Feb 5, 2024 | The LearnDash LMS plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ... |
| CVE-2024-1208 | MEDIUM | 5.3 | 5.3% | Feb 5, 2024 | The LearnDash LMS plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includ... |
| CVE-2024-1177 | MEDIUM | 5.3 | 0.5% | Feb 5, 2024 | The WP Club Manager – WordPress Sports Club Plugin plugin for WordPress is vulnerable to unauthorized modification of da... |
| CVE-2024-1121 | MEDIUM | 5.3 | 0.6% | Feb 5, 2024 | The Advanced Forms for ACF plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability... |
| CVE-2024-1092 | MEDIUM | 4.3 | 0.4% | Feb 5, 2024 | The RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator plugin for WordPress is... |
| CVE-2024-1075 | MEDIUM | 5.3 | 0.7% | Feb 5, 2024 | The Minimal Coming Soon – Coming Soon Page plugin for WordPress is vulnerable to maintenance mode bypass and information... |
| CVE-2024-1072 | HIGH | 7.5 | 0.7% | Feb 5, 2024 | The Website Builder by SeedProd — Theme Builder, Landing Page Builder, Coming Soon Page, Maintenance Mode plugin for Wor... |
| CVE-2024-1046 | MEDIUM | 5.4 | 0.4% | Feb 5, 2024 | The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePres... |
| CVE-2024-0969 | MEDIUM | 5.3 | 0.5% | Feb 5, 2024 | The ARMember plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, ... |
| CVE-2024-0961 | MEDIUM | 5.4 | 0.5% | Feb 5, 2024 | The SiteOrigin Widgets Bundle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the code editor in a... |
| CVE-2024-0954 | MEDIUM | 5.4 | 0.4% | Feb 5, 2024 | The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress... |
| CVE-2024-0869 | MEDIUM | 6.5 | 0.8% | Feb 5, 2024 | The Instant Images – One Click Image Uploads from Unsplash, Openverse, Pixabay and Pexels plugin for WordPress is vulner... |
| CVE-2024-0859 | MEDIUM | 4.3 | 0.3% | Feb 5, 2024 | The Affiliates Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu... |
| CVE-2024-0835 | MEDIUM | 4.3 | 0.5% | Feb 5, 2024 | The Royal Elementor Kit theme for WordPress is vulnerable to unauthorized arbitrary transient update due to a missing ca... |
| CVE-2024-0834 | MEDIUM | 5.4 | 0.5% | Feb 5, 2024 | The Elementor Addon Elements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the link_to parameter... |
| CVE-2024-0823 | MEDIUM | 5.4 | 0.4% | Feb 5, 2024 | The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Link To' u... |
| CVE-2024-0797 | MEDIUM | 4.3 | 0.4% | Feb 5, 2024 | The Active Products Tables for WooCommerce. Professional products tables for WooCommerce store plugin for WordPress is v... |
| CVE-2024-0796 | MEDIUM | 4.3 | 0.2% | Feb 5, 2024 | The Active Products Tables for WooCommerce. Professional products tables for WooCommerce store plugin for WordPress is v... |
| CVE-2024-0791 | MEDIUM | 4.3 | 0.5% | Feb 5, 2024 | The WOLF – WordPress Posts Bulk Editor and Manager Professional plugin for WordPress is vulnerable to unauthorized acces... |
| CVE-2024-0790 | MEDIUM | 4.3 | 0.3% | Feb 5, 2024 | The WOLF – WordPress Posts Bulk Editor and Manager Professional plugin for WordPress is vulnerable to Cross-Site Request... |
| CVE-2024-0761 | HIGH | 7.5 | 1.0% | Feb 5, 2024 | The File Manager plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and includi... |
| CVE-2024-0709 | HIGH | 7.5 | 0.9% | Feb 5, 2024 | The Cryptocurrency Widgets – Price Ticker & Coins List plugin for WordPress is vulnerable to SQL Injection via the 'coin... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now