2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-12734 | MEDIUM | 6.1 | 0.5% | May 15, 2025 | The Advance Post Prefix WordPress plugin through 1.1.1, Advance Post Prefix WordPress plugin through 1.1.1 does not sani... |
| CVE-2024-12733 | MEDIUM | 6.1 | 0.3% | May 15, 2025 | The AffiliateImporterEb WordPress plugin through 1.0.6 does not sanitise and escape a parameter before outputting it bac... |
| CVE-2024-12732 | MEDIUM | 6.1 | 0.5% | May 15, 2025 | The AffiliateImporterEb WordPress plugin through 1.0.6 does not sanitise and escape a parameter before outputting it bac... |
| CVE-2024-12726 | MEDIUM | 6.1 | 0.3% | May 15, 2025 | The ClipArt WordPress plugin through 0.2 does not sanitise and escape a parameter before outputting it back in the page,... |
| CVE-2024-12725 | MEDIUM | 6.1 | 0.3% | May 15, 2025 | The Clasify Classified Listing WordPress plugin through 1.0.7 does not sanitise and escape a parameter before outputting... |
| CVE-2024-12724 | MEDIUM | 6.1 | 0.5% | May 15, 2025 | The WP DeskLite WordPress plugin through 1.0.0 does not sanitise and escape a parameter before outputting it back in th... |
| CVE-2024-12722 | MEDIUM | 5.4 | 0.3% | May 15, 2025 | The Twitter Bootstrap Collapse aka Accordian Shortcode WordPress plugin through 1.0 does not validate and escape some of... |
| CVE-2024-12716 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Simple Basic Contact Form WordPress plugin before 20250114 does not sanitise and escape some of its settings, which ... |
| CVE-2024-12680 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Prisna GWT WordPress plugin before 1.4.14 does not sanitise and escape some of its settings, which could allow high... |
| CVE-2024-12679 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Prisna GWT WordPress plugin before 1.4.14 does not sanitise and escape some of its settings, which could allow high... |
| CVE-2024-12301 | MEDIUM | 6.5 | 0.2% | May 15, 2025 | The JSP Store Locator WordPress plugin through 1.0 does not have CSRF checks in some places, which could allow attackers... |
| CVE-2024-12282 | MEDIUM | 6.1 | 0.2% | May 15, 2025 | The WordPress连接微博 WordPress plugin through 2.5.6 does not have CSRF check in some places, and is missing sanitisation as... |
| CVE-2024-11843 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Panorama WordPress plugin through 1.5.1 does not sanitise and escape some of its settings, which could allow high p... |
| CVE-2024-11719 | MEDIUM | 6.1 | 0.1% | May 15, 2025 | The tarteaucitron-wp WordPress plugin before 0.3.0 does not have CSRF check in some places, and is missing sanitisation ... |
| CVE-2024-11718 | MEDIUM | 5.4 | 0.3% | May 15, 2025 | The tarteaucitron-wp WordPress plugin before 0.3.0 allows author level and above users to add HTML into a post/page, whi... |
| CVE-2024-11502 | MEDIUM | 5.4 | 0.3% | May 15, 2025 | The Planning Center Online Giving WordPress plugin through 1.0.0 does not validate and escape some of its shortcode attr... |
| CVE-2024-11373 | MEDIUM | 4.3 | 0.2% | May 15, 2025 | The Connexion Logs WordPress plugin through 3.0.2 does not have CSRF check in place when updating its settings, which co... |
| CVE-2024-11266 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Geocache Stat Bar Widget WordPress plugin through 0.911 does not sanitise and escape some of its settings, which cou... |
| CVE-2024-11221 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Full Screen (Page) Background Image Slideshow WordPress plugin through 1.1 does not sanitise and escape some of its ... |
| CVE-2024-11190 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The jwp-a11y WordPress plugin through 4.1.7 does not sanitise and escape some of its settings, which could allow high pr... |
| CVE-2024-11189 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Social Share And Social Locker WordPress plugin before 1.4.2 does not sanitise and escape some of its settings, whi... |
| CVE-2024-11141 | MEDIUM | 6.1 | 0.1% | May 15, 2025 | The Sailthru Triggermail WordPress plugin through 1.1 does not sanitise and escape some of its settings and is missing C... |
| CVE-2024-11109 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The WP Google Review Slider WordPress plugin before 15.6 does not sanitise and escape some of its settings, which could ... |
| CVE-2024-10818 | MEDIUM | 5.4 | 0.3% | May 15, 2025 | The JSFiddle Shortcode WordPress plugin before 1.1.3 does not validate and escape some of its shortcode attributes befor... |
| CVE-2024-10677 | MEDIUM | 4.3 | 0.2% | May 15, 2025 | The BTEV WordPress plugin through 2.0.2 does not have CSRF check in place when updating its settings, which could allow ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now