2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-8617 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Quiz Maker WordPress plugin before 6.5.9.9 does not sanitize and escape some of its settings, which could allow high... |
| CVE-2024-8542 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Everest Forms WordPress plugin before 3.0.3.1 does not sanitise and escape some of its settings, which could allow ... |
| CVE-2024-8493 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Events Calendar WordPress plugin before 6.6.4 does not sanitise and escape some of its settings, which could allow h... |
| CVE-2024-8492 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Hustle WordPress plugin through 7.8.5 does not sanitise and escape some of its settings, which could allow high pri... |
| CVE-2024-8426 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Page Builder: Pagelayer WordPress plugin before 1.8.8 does not sanitise and escape some of its settings, which coul... |
| CVE-2024-8398 | MEDIUM | 4.3 | 0.2% | May 15, 2025 | The Simple Nav Archives WordPress plugin through 2.1.3 does not have CSRF check in place when updating its settings, whi... |
| CVE-2024-8397 | MEDIUM | 5.4 | 0.3% | May 15, 2025 | The webtoffee-gdpr-cookie-consent WordPress plugin before 2.6.1 does not properly sanitize and escape the IP headers whe... |
| CVE-2024-8286 | MEDIUM | 6.5 | 0.2% | May 15, 2025 | The webtoffee-gdpr-cookie-consent WordPress plugin before 2.6.1 does not have CSRF checks in some bulk actions, which co... |
| CVE-2024-8284 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Download Manager WordPress plugin before 3.2.99 does not sanitise and escape some of its settings, which could allow... |
| CVE-2024-8245 | MEDIUM | 4.3 | 0.2% | May 15, 2025 | The GamiPress WordPress plugin before 1.0.1 does not have CSRF check in place when updating its settings, which could a... |
| CVE-2024-8187 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Smart Post Show WordPress plugin before 3.0.1 does not sanitise and escape some of its settings, which could allow ... |
| CVE-2024-8095 | MEDIUM | 6.1 | 0.1% | May 15, 2025 | The BabelZ WordPress plugin through 1.1.5 does not have CSRF check in some places, and is missing sanitisation as well ... |
| CVE-2024-8094 | MEDIUM | 6.5 | 0.2% | May 15, 2025 | The Ntz Antispam WordPress plugin through 2.0e does not have CSRF check in place when updating its settings, which could... |
| CVE-2024-8090 | MEDIUM | 6.1 | 0.2% | May 15, 2025 | The JavaScript Logic WordPress plugin through 0.1 does not have CSRF check in some places, and is missing sanitisation a... |
| CVE-2024-8085 | MEDIUM | 6.1 | 0.1% | May 15, 2025 | The PeoplePond WordPress plugin through 1.1.9 does not have CSRF check in some places, and is missing sanitisation as we... |
| CVE-2024-8082 | MEDIUM | 4.3 | 0.2% | May 15, 2025 | The Widgets Reset WordPress plugin through 0.1 does not have CSRF check in place when updating its settings, which could... |
| CVE-2024-8050 | MEDIUM | 4.3 | 0.2% | May 15, 2025 | The Custom Author Base WordPress plugin through 1.1.1 does not have CSRF check in place when updating its settings, whic... |
| CVE-2024-8032 | MEDIUM | 6.1 | 0.1% | May 15, 2025 | The Smooth Gallery Replacement WordPress plugin through 1.0 does not have CSRF check in some places, and is missing sani... |
| CVE-2024-8031 | MEDIUM | 6.5 | 0.4% | May 15, 2025 | The Secure Downloads WordPress plugin before 1.2.3 is vulnerable does not properly restrict which files can be downloade... |
| CVE-2024-8009 | MEDIUM | 4.3 | 0.3% | May 15, 2025 | The Sensei LMS WordPress plugin before 4.20.0 disclose all users of the blog including their email address to teachers ... |
| CVE-2024-7984 | MEDIUM | 4.3 | 0.2% | May 15, 2025 | The Joy Of Text Lite WordPress plugin through 2.3.1 does not have CSRF check in place when updating its settings, which... |
| CVE-2024-7769 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The ClickSold IDX WordPress plugin through 1.90 does not sanitise and escape some of its settings, which could allow hig... |
| CVE-2024-7761 | MEDIUM | 6.1 | 0.3% | May 15, 2025 | In the process of testing the Simple Job Board WordPress plugin before 2.12.2, a vulnerability was found that allows you... |
| CVE-2024-7759 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The PWA for WP WordPress plugin before 1.7.72 does not sanitise and escape some of its settings, which could allow high... |
| CVE-2024-7758 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Stylish Price List WordPress plugin before 7.1.8 does not sanitise and escape some of its settings, which could all... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now