2024 CVE Vulnerabilities

39,250 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-0701MEDIUM5.3The UserPro plugin for WordPress is vulnerable to Security Feature Bypass in all versions up to, and including, 5.1.6. T...
CVE-2024-0699HIGH7.2The AI Engine: Chatbots, Generators, Assistants, GPT 4 and more! plugin for WordPress is vulnerable to arbitrary file up...
CVE-2024-0691MEDIUM4.8The FileBird plugin for WordPress is vulnerable to Stored Cross-Site Scripting via imported folder titles in all version...
CVE-2024-0678MEDIUM6.1The Order Delivery Date for WP e-Commerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'ava...
CVE-2024-0668HIGH7.2The Advanced Database Cleaner plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and incl...
CVE-2024-0660MEDIUM4.3The Formidable Forms – Contact Form, Survey, Quiz, Payment, Calculator Form & Custom Form Builder plugin for WordPress i...
CVE-2024-0659MEDIUM4.8The Easy Digital Downloads – Sell Digital Files (eCommerce Store & Payments Made Easy) plugin for WordPress is vulnerabl...
CVE-2024-0630MEDIUM4.8The WP RSS Aggregator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the RSS feed source in all v...
CVE-2024-0612MEDIUM4.8The Content Views – Post Grid, Slider, Accordion (Gutenberg Blocks and Shortcode) plugin for WordPress is vulnerable to ...
CVE-2024-0597MEDIUM4.8The SEO Plugin by Squirrly SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in a...
CVE-2024-0586MEDIUM6.4The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress...
CVE-2024-0585MEDIUM5.4The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress...
CVE-2024-0509MEDIUM6.1The WP 404 Auto Redirect to Similar Post plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘r...
CVE-2024-0508MEDIUM5.4The Orbit Fox by ThemeIsle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Pricing Ta...
CVE-2024-0448MEDIUM5.4The Elementor Addons by Livemesh plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widg...
CVE-2024-0428HIGH8.8The Index Now plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.6...
CVE-2024-0384MEDIUM5.4The WP Recipe Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Recipe Notes in all versions u...
CVE-2024-0382MEDIUM5.4The WP Recipe Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in a...
CVE-2024-0380MEDIUM4.3The WP Recipe Maker plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 9.1....
CVE-2024-0374MEDIUM4.3The Views for WPForms – Display & Edit WPForms Entries on your site frontend plugin for WordPress is vulnerable to Cross...
CVE-2024-0373MEDIUM4.3The Views for WPForms – Display & Edit WPForms Entries on your site frontend plugin for WordPress is vulnerable to Cross...
CVE-2024-0372MEDIUM4.3The Views for WPForms – Display & Edit WPForms Entries on your site frontend plugin for WordPress is vulnerable to unaut...
CVE-2024-0371MEDIUM4.3The Views for WPForms – Display & Edit WPForms Entries on your site frontend plugin for WordPress is vulnerable to unaut...
CVE-2024-0370MEDIUM4.3The Views for WPForms – Display & Edit WPForms Entries on your site frontend plugin for WordPress is vulnerable to unaut...
CVE-2024-0366MEDIUM4.3The Starbox – the Author Box for Humans plugin for WordPress is vulnerable to Insecure Direct Object Reference in all ve...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now