2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-49686 | MEDIUM | 5.4 | 0.4% | Dec 31, 2024 | Missing Authorization vulnerability in fatcatapps Landing Page Cat landing-page-cat.This issue affects Landing Page Cat:... |
| CVE-2024-56205 | CRITICAL | 9.8 | 0.6% | Dec 31, 2024 | Incorrect Privilege Assignment vulnerability in SunnyKai AI Magic newsletter-page-redirects allows Privilege Escalation.... |
| CVE-2024-56071 | CRITICAL | 9.8 | 0.6% | Dec 31, 2024 | Incorrect Privilege Assignment vulnerability in mikeleembruggen Simple Dashboard simple-dashboard allows Privilege Escal... |
| CVE-2024-56068 | HIGH | 7.5 | 0.4% | Dec 31, 2024 | Deserialization of Untrusted Data vulnerability in azzaroco WP SuperBackup indeed-wp-superbackup.This issue affects WP S... |
| CVE-2024-56067 | HIGH | 7.5 | 10.0% | Dec 31, 2024 | Missing Authorization vulnerability in azzaroco WP SuperBackup indeed-wp-superbackup allows Exploiting Incorrectly Confi... |
| CVE-2024-56064 | CRITICAL | 10 | 14.5% | Dec 31, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in azzaroco WP SuperBackup indeed-wp-superbackup allows Up... |
| CVE-2024-56046 | CRITICAL | 9.8 | 0.7% | Dec 31, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in VibeThemes WPLMS wplms_plugin allows Upload a Web Shell... |
| CVE-2024-56042 | CRITICAL | 9.8 | 0.7% | Dec 31, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VibeThemes WPLMS w... |
| CVE-2024-56041 | HIGH | 8.5 | 0.5% | Dec 31, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VibeThemes VibeBP ... |
| CVE-2024-56039 | CRITICAL | 9.3 | 0.6% | Dec 31, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VibeThemes VibeBP ... |
| CVE-2024-56031 | MEDIUM | 6.5 | 0.4% | Dec 31, 2024 | Missing Authorization vulnerability in Yulio Aleman Jimenez Smart Shopify Product smart-shopify-product allows Exploitin... |
| CVE-2024-55991 | MEDIUM | 6.5 | 0.3% | Dec 31, 2024 | Missing Authorization vulnerability in Mario Peshev WP-CRM System wp-crm-system allows Exploiting Incorrectly Configured... |
| CVE-2024-13061 | CRITICAL | 9.8 | 1.2% | Dec 31, 2024 | The Electronic Official Document Management System from 2100 Technology has an Authentication Bypass vulnerability. Alth... |
| CVE-2024-56265 | MEDIUM | 6.1 | 0.3% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpweb WooCommerce ... |
| CVE-2024-56256 | MEDIUM | 5.9 | 0.2% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Andy Fragen Embed ... |
| CVE-2024-56235 | MEDIUM | 6.5 | 0.2% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vicky Kumar Coupon... |
| CVE-2024-56234 | MEDIUM | 5.4 | 0.3% | Dec 31, 2024 | Missing Authorization vulnerability in vowelweb VW Automobile Lite vw-automobile-lite allows Exploiting Incorrectly Conf... |
| CVE-2024-56233 | HIGH | 7.1 | 0.3% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in kinhelios KinTPV W... |
| CVE-2024-56231 | MEDIUM | 6.5 | 0.2% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Debuggers Studio S... |
| CVE-2024-56228 | HIGH | 7.1 | 0.3% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPFactory Wishlist... |
| CVE-2024-56227 | MEDIUM | 4.3 | 0.3% | Dec 31, 2024 | Missing Authorization vulnerability in WP Royal Royal Elementor Addons royal-elementor-addons allows Exploiting Incorrec... |
| CVE-2024-56226 | MEDIUM | 6.1 | 0.3% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Royal Royal Ele... |
| CVE-2024-56225 | HIGH | 8.8 | 0.3% | Dec 31, 2024 | Missing Authorization vulnerability in Leap13 Premium Addons for Elementor premium-addons-for-elementor allows Accessing... |
| CVE-2024-56224 | MEDIUM | 6.5 | 0.2% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ledenbeheer Ledenb... |
| CVE-2024-56223 | HIGH | 7.1 | 0.3% | Dec 31, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fahad Mahmood Gulr... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now