2024 CVE Vulnerabilities
39,221 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-37269 | MEDIUM | 5.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in StylemixThemes Masterstudy Elementor Widgets allows Exploiting Incorrectly Config... |
| CVE-2024-37255 | MEDIUM | 5.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in Roxnor ElementsKit Elementor addons Lite elementskit-lite.This issue affects Elem... |
| CVE-2024-37254 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in mndpsingh287 File Manager allows Exploiting Incorrectly Configured Access Control... |
| CVE-2024-37250 | MEDIUM | 5.4 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in WPEngine Inc. Advanced Custom Fields PRO allows Exploiting Incorrectly Configured... |
| CVE-2024-37249 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in WPEngine Inc. Advanced Custom Fields PRO allows Exploiting Incorrectly Configured... |
| CVE-2024-37226 | MEDIUM | 5.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in Kanban for WordPress Kanban Boards for WordPress allows Exploiting Incorrectly Co... |
| CVE-2024-37220 | MEDIUM | 5.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in OptinlyHQ Optinly allows Exploiting Incorrectly Configured Access Control Securit... |
| CVE-2024-37218 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in WordPress Page Builder Sandwich Team Page Builder Sandwich – Front-End Page Build... |
| CVE-2024-37214 | MEDIUM | 6.5 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in Dropshipping Guru Ali2Woo Lite Exploiting Incorrectly Configured Access Control S... |
| CVE-2024-37209 | MEDIUM | 6.5 | 0.5% | Nov 1, 2024 | Access Control vulnerability in Prism IT Systems User Rights Access Manager allows . This issue affects User Rights Acc... |
| CVE-2024-37207 | MEDIUM | 5.4 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in Theme4Press Demo Awesome allows Exploiting Incorrectly Configured Access Control ... |
| CVE-2024-37204 | MEDIUM | 4.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in PropertyHive PropertyHive allows Exploiting Incorrectly Configured Access Control... |
| CVE-2024-37203 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in Laybuy Laybuy Payment Extension for WooCommerce allows Exploiting Incorrectly Con... |
| CVE-2024-37201 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in javmah Woocommerce Customers Order History allows Exploiting Incorrectly Configur... |
| CVE-2024-37123 | MEDIUM | 5.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in VowelWeb Ibtana allows Exploiting Incorrectly Configured Access Control Security ... |
| CVE-2024-37096 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in Popup Box Team Popup allows Exploiting Incorrectly Configured Access Control Secu... |
| CVE-2024-37095 | MEDIUM | 4.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in Envira Gallery Team Envira Photo Gallery allows Exploiting Incorrectly Configured... |
| CVE-2024-27525 | MEDIUM | 4.6 | 0.4% | Nov 1, 2024 | Cross Site Scripting vulnerability in Chamilo LMS v.1.11.26 allows a remote attacker to escalate privileges via a crafte... |
| CVE-2024-51407 | MEDIUM | 6.2 | 0.2% | Nov 1, 2024 | Floodlight SDN OpenFlow Controller v.1.2 has an issue that allows local hosts to construct false broadcast ports causing... |
| CVE-2024-51406 | MEDIUM | 6.2 | 0.2% | Nov 1, 2024 | Floodlight SDN Open Flow Controller v.1.2 has an issue that allows local hosts to build fake LLDP packets that allow spe... |
| CVE-2024-10367 | MEDIUM | 6.4 | 0.3% | Nov 1, 2024 | The Otter Blocks – Gutenberg Blocks, Page Builder for Gutenberg Editor & FSE plugin for WordPress is vulnerable to Store... |
| CVE-2024-10652 | MEDIUM | 6.1 | 0.3% | Nov 1, 2024 | IDExpert from CHANGING Information Technology does not properly validate a parameter for a specific functionality, allow... |
| CVE-2024-10651 | MEDIUM | 4.9 | 0.6% | Nov 1, 2024 | IDExpert from CHANGING Information Technology does not properly validate a specific parameter in the administrator inter... |
| CVE-2024-10232 | MEDIUM | 6.4 | 0.3% | Nov 1, 2024 | The Group Chat & Video Chat by AtomChat plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin... |
| CVE-2024-9655 | MEDIUM | 5.4 | 0.3% | Nov 1, 2024 | The Gutenberg Blocks with AI by Kadence WP – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Si... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now