2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-8001 | MEDIUM | 4.3 | 0.7% | Nov 13, 2024 | A vulnerability was found in VIWIS LMS 9.11. It has been classified as critical. Affected is an unknown function of the ... |
| CVE-2024-9682 | MEDIUM | 5.4 | 0.4% | Nov 13, 2024 | The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi... |
| CVE-2024-9668 | MEDIUM | 5.4 | 0.4% | Nov 13, 2024 | The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi... |
| CVE-2024-9059 | MEDIUM | 5.4 | 0.4% | Nov 13, 2024 | The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Googl... |
| CVE-2024-10877 | MEDIUM | 6.1 | 0.6% | Nov 13, 2024 | The AFI – The Easiest Integration Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the... |
| CVE-2024-52268 | MEDIUM | 4.8 | 0.3% | Nov 13, 2024 | Cross-site scripting vulnerability exists in VK All in One Expansion Unit versions prior to 9.100.1.0. If this vulnerabi... |
| CVE-2024-10802 | MEDIUM | 5.3 | 0.6% | Nov 13, 2024 | The Hash Elements plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on... |
| CVE-2024-10794 | MEDIUM | 4.3 | 0.5% | Nov 13, 2024 | The Boostify Header Footer Builder for Elementor plugin for WordPress is vulnerable to Information Exposure in all versi... |
| CVE-2024-11143 | MEDIUM | 4.3 | 0.2% | Nov 13, 2024 | The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up ... |
| CVE-2024-10882 | MEDIUM | 6.1 | 0.5% | Nov 13, 2024 | The Product Delivery Date for WooCommerce – Lite plugin for WordPress is vulnerable to Reflected Cross-Site Scripting du... |
| CVE-2024-10684 | MEDIUM | 6.1 | 0.4% | Nov 13, 2024 | The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'dir' p... |
| CVE-2024-10593 | MEDIUM | 4.3 | 0.3% | Nov 13, 2024 | The WPForms – Easy Form Builder for WordPress – Contact Forms, Payment Forms, Surveys, & More plugin for WordPress is vu... |
| CVE-2024-10531 | MEDIUM | 4.3 | 0.5% | Nov 13, 2024 | The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to unauthorized modification of data due to a mis... |
| CVE-2024-10530 | MEDIUM | 4.3 | 0.4% | Nov 13, 2024 | The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to unauthorized modification of data due to a mis... |
| CVE-2024-10529 | MEDIUM | 5.3 | 0.5% | Nov 13, 2024 | The Kognetiks Chatbot for WordPress plugin for WordPress is vulnerable to unauthorized modification of data due to a mis... |
| CVE-2024-9614 | MEDIUM | 6.1 | 0.5% | Nov 13, 2024 | The Constant Contact Forms by MailMunch plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the ... |
| CVE-2024-9578 | MEDIUM | 5.3 | 0.5% | Nov 13, 2024 | The Hide Links plugin for WordPress is vulnerable to unauthorized shortcode execution due to do_shortcode being hooked t... |
| CVE-2024-9426 | MEDIUM | 6.4 | 0.3% | Nov 13, 2024 | The Aqua SVG Sprite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versio... |
| CVE-2024-8985 | MEDIUM | 6.4 | 0.4% | Nov 13, 2024 | The Social Proof (Testimonial) Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's... |
| CVE-2024-8874 | MEDIUM | 6.1 | 0.5% | Nov 13, 2024 | The AJAX Login and Registration modal popup + inline form plugin for WordPress is vulnerable to Reflected Cross-Site Scr... |
| CVE-2024-38654 | MEDIUM | 4.4 | 0.3% | Nov 13, 2024 | Improper bounds checking in Ivanti Secure Access Client before version 22.7R3 allows a local authenticated attacker with... |
| CVE-2024-29211 | MEDIUM | 4.7 | 0.3% | Nov 13, 2024 | A race condition in Ivanti Secure Access Client before version 22.7R4 allows a local authenticated attacker to modify se... |
| CVE-2024-10887 | MEDIUM | 6.4 | 0.4% | Nov 13, 2024 | The NiceJob plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several of the plugin's shortcodes (ni... |
| CVE-2024-10854 | MEDIUM | 4.3 | 0.4% | Nov 13, 2024 | The Buy one click WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing c... |
| CVE-2024-10853 | MEDIUM | 4.3 | 0.3% | Nov 13, 2024 | The Buy one click WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing c... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now