2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-10200HIGH7.5Administrative Management System from Wellchoose has a Path Traversal vulnerability, allowing unauthenticated remote att...
CVE-2024-49628HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in whiletrue Most And Least Read Posts Widget most-and-least-read-posts-...
CVE-2024-49627HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Noor Alam WordPress Image SEO allows Cross Site Request Forgery.This ...
CVE-2024-49325HIGH8.8Missing Authorization vulnerability in wpdiscover Photo Gallery Builder photo-gallery-builder allows Accessing Functiona...
CVE-2024-49306HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in wp-buy WP Content Copy Protection & No Right Click wp-content-copy-pr...
CVE-2024-49290HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Gora Tech LLC Cooked Pro allows Cross Site Request Forgery.This issue...
CVE-2024-49275HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Northern Beaches Websites IdeaPush ideapush allows Cross Site Request...
CVE-2024-49274HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Infomaniak Network VOD Infomaniak vod-infomaniak allows Cross Site Re...
CVE-2024-49272HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in wpweb Social Auto Poster social-auto-poster allows Cross Site Request...
CVE-2024-49250HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Syed Balkhi Table of Contents Plus table-of-contents-plus allows Cros...
CVE-2024-49620HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in mrcheck116 FERMA.r...
CVE-2024-49619HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in acespritech Social...
CVE-2024-49618HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Jordan Lyall MyTwe...
CVE-2024-49617HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in anciwasim Back Link Tracker back-link-tracker allows Blind SQL Inject...
CVE-2024-49616HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in nyasro Rate Own Po...
CVE-2024-49615HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in Henrique Rodrigues SafetyForms safetymails-forms allows Blind SQL Inj...
CVE-2024-49614HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SermonAudio Sermon...
CVE-2024-49613HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in developersnote Sim...
CVE-2024-49612HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Sanjeev SW Contact...
CVE-2024-49609HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Brandon White Auth...
CVE-2024-47325HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeisle MPG mult...
CVE-2024-49623HIGH8.8Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in hasan movahed Dupl...
CVE-2024-49622HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in aatmaadhikari Apa Banner Slider apa-banner-slider allows SQL Injectio...
CVE-2024-49621HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in aatmaadhikari APA Register Newsletter Form apa-register-newsletter-fo...
CVE-2024-49608HIGH8.8Incorrect Privilege Assignment vulnerability in gerryworks GERRYWORKS Post by Mail gerryworks-post-by-mail allows Privil...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now