2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-11228 | MEDIUM | 6.4 | 0.4% | Nov 23, 2024 | The 워드프레스 결제 심플페이 – 우커머스 결제 플러그인 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's pafw... |
| CVE-2024-11227 | MEDIUM | 6.4 | 0.5% | Nov 23, 2024 | The Memberlite Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's memberlite_... |
| CVE-2024-11199 | MEDIUM | 5.4 | 1.0% | Nov 23, 2024 | The Rescue Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's rescue_progress... |
| CVE-2024-10519 | MEDIUM | 6.1 | 0.5% | Nov 23, 2024 | The Wishlist for WooCommerce: Multi Wishlists Per Customer PRO plugin for WordPress is vulnerable to Reflected Cross-Sit... |
| CVE-2024-9635 | MEDIUM | 6.1 | 0.4% | Nov 23, 2024 | The Checkout with Cash App on WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the '... |
| CVE-2024-11446 | MEDIUM | 6.1 | 0.4% | Nov 23, 2024 | The Chessgame Shizzle plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'cs_nonce' parameter ... |
| CVE-2024-11330 | MEDIUM | 6.1 | 0.4% | Nov 23, 2024 | The Custom CSS, JS & PHP plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_quer... |
| CVE-2024-11265 | MEDIUM | 4.3 | 0.6% | Nov 23, 2024 | The Increase Maximum Upload File Size | Increase Execution Time plugin for WordPress is vulnerable to Full Path Disclosu... |
| CVE-2024-11188 | MEDIUM | 6.1 | 0.4% | Nov 23, 2024 | The Formidable Forms – Contact Form Plugin, Survey, Quiz, Payment, Calculator Form & Custom Form Builder plugin for Word... |
| CVE-2024-11426 | MEDIUM | 6.4 | 0.4% | Nov 23, 2024 | The AutoListicle: Automatically Update Numbered List Articles plugin for WordPress is vulnerable to Stored Cross-Site Sc... |
| CVE-2024-11408 | MEDIUM | 6.4 | 0.3% | Nov 23, 2024 | The Slotti Ajanvaraus plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'slotti' shortc... |
| CVE-2024-11387 | MEDIUM | 6.4 | 0.7% | Nov 23, 2024 | The Easy Liveblogs plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'elb_liveblog' sho... |
| CVE-2024-11361 | MEDIUM | 6.1 | 0.4% | Nov 23, 2024 | The PDF Invoices & Packing Slips Generator for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Sc... |
| CVE-2024-11332 | MEDIUM | 6.4 | 0.3% | Nov 23, 2024 | The HIPAA Compliant Forms with Drag’n’Drop HIPAA Form Builder. Sign HIPAA documents plugin for WordPress is vulnerable t... |
| CVE-2024-10880 | MEDIUM | 6.1 | 0.5% | Nov 23, 2024 | The JobBoardWP – Job Board Listings and Submissions plugin for WordPress is vulnerable to Reflected Cross-Site Scripting... |
| CVE-2024-10606 | MEDIUM | 4.3 | 0.3% | Nov 23, 2024 | The WP Travel Engine – Tour Booking Plugin – Tour Operator Software plugin for WordPress is vulnerable to unauthorized m... |
| CVE-2024-9223 | MEDIUM | 4.3 | 0.4% | Nov 23, 2024 | The WPDash Notes plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on ... |
| CVE-2024-11463 | MEDIUM | 6.1 | 0.4% | Nov 23, 2024 | The DeBounce Email Validator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'from', 'to', ... |
| CVE-2024-11362 | MEDIUM | 6.1 | 0.4% | Nov 23, 2024 | The Payments Plugin and Checkout Plugin for WooCommerce: Stripe, PayPal, Square, Authorize.net plugin for WordPress is v... |
| CVE-2024-10886 | MEDIUM | 6.4 | 0.3% | Nov 23, 2024 | The Tribute Testimonials – WordPress Testimonial Grid/Slider plugin for WordPress is vulnerable to Stored Cross-Site Scr... |
| CVE-2024-10874 | MEDIUM | 6.4 | 0.4% | Nov 23, 2024 | The Quotes llama plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'quotes-llama' short... |
| CVE-2024-10869 | MEDIUM | 6.1 | 0.5% | Nov 23, 2024 | The WordPress Brute Force Protection – Stop Brute Force Attacks plugin for WordPress is vulnerable to Reflected Cross-Si... |
| CVE-2024-10868 | MEDIUM | 4.3 | 0.4% | Nov 23, 2024 | The Enter Addons – Ultimate Template Builder for Elementor plugin for WordPress is vulnerable to Information Exposure in... |
| CVE-2024-10537 | MEDIUM | 4.3 | 0.4% | Nov 23, 2024 | The WP User Manager – User Profile Builder & Membership plugin for WordPress is vulnerable to unauthorized access of dat... |
| CVE-2024-10216 | MEDIUM | 4.3 | 0.4% | Nov 23, 2024 | The WP User Manager – User Profile Builder & Membership plugin for WordPress is vulnerable to unauthorized modification ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now