2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-37220 | MEDIUM | 5.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in OptinlyHQ Optinly allows Exploiting Incorrectly Configured Access Control Securit... |
| CVE-2024-37218 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in WordPress Page Builder Sandwich Team Page Builder Sandwich – Front-End Page Build... |
| CVE-2024-37214 | MEDIUM | 6.5 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in Dropshipping Guru Ali2Woo Lite Exploiting Incorrectly Configured Access Control S... |
| CVE-2024-37209 | MEDIUM | 6.5 | 0.5% | Nov 1, 2024 | Access Control vulnerability in Prism IT Systems User Rights Access Manager allows . This issue affects User Rights Acc... |
| CVE-2024-37207 | MEDIUM | 5.4 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in Theme4Press Demo Awesome allows Exploiting Incorrectly Configured Access Control ... |
| CVE-2024-37204 | MEDIUM | 4.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in PropertyHive PropertyHive allows Exploiting Incorrectly Configured Access Control... |
| CVE-2024-37203 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in Laybuy Laybuy Payment Extension for WooCommerce allows Exploiting Incorrectly Con... |
| CVE-2024-37201 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in javmah Woocommerce Customers Order History allows Exploiting Incorrectly Configur... |
| CVE-2024-37123 | MEDIUM | 5.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in VowelWeb Ibtana allows Exploiting Incorrectly Configured Access Control Security ... |
| CVE-2024-37096 | MEDIUM | 4.3 | 0.3% | Nov 1, 2024 | Missing Authorization vulnerability in Popup Box Team Popup allows Exploiting Incorrectly Configured Access Control Secu... |
| CVE-2024-37095 | MEDIUM | 4.3 | 0.4% | Nov 1, 2024 | Missing Authorization vulnerability in Envira Gallery Team Envira Photo Gallery allows Exploiting Incorrectly Configured... |
| CVE-2024-27525 | MEDIUM | 4.6 | 0.4% | Nov 1, 2024 | Cross Site Scripting vulnerability in Chamilo LMS v.1.11.26 allows a remote attacker to escalate privileges via a crafte... |
| CVE-2024-51407 | MEDIUM | 6.2 | 0.2% | Nov 1, 2024 | Floodlight SDN OpenFlow Controller v.1.2 has an issue that allows local hosts to construct false broadcast ports causing... |
| CVE-2024-51406 | MEDIUM | 6.2 | 0.2% | Nov 1, 2024 | Floodlight SDN Open Flow Controller v.1.2 has an issue that allows local hosts to build fake LLDP packets that allow spe... |
| CVE-2024-10367 | MEDIUM | 6.4 | 0.3% | Nov 1, 2024 | The Otter Blocks – Gutenberg Blocks, Page Builder for Gutenberg Editor & FSE plugin for WordPress is vulnerable to Store... |
| CVE-2024-10652 | MEDIUM | 6.1 | 0.3% | Nov 1, 2024 | IDExpert from CHANGING Information Technology does not properly validate a parameter for a specific functionality, allow... |
| CVE-2024-10651 | MEDIUM | 4.9 | 0.6% | Nov 1, 2024 | IDExpert from CHANGING Information Technology does not properly validate a specific parameter in the administrator inter... |
| CVE-2024-10232 | MEDIUM | 6.4 | 0.3% | Nov 1, 2024 | The Group Chat & Video Chat by AtomChat plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin... |
| CVE-2024-9655 | MEDIUM | 5.4 | 0.3% | Nov 1, 2024 | The Gutenberg Blocks with AI by Kadence WP – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Si... |
| CVE-2024-7424 | MEDIUM | 5.4 | 0.3% | Nov 1, 2024 | The Multiple Page Generator Plugin – MPG plugin for WordPress is vulnerable to unauthorized modification of and access t... |
| CVE-2024-49501 | MEDIUM | 5.7 | 0.2% | Nov 1, 2024 | Sysmac Studio provided by OMRON Corporation contains an incorrect authorization vulnerability. If this vulnerability is ... |
| CVE-2024-21510 | MEDIUM | 5.4 | 0.5% | Nov 1, 2024 | Versions of the package sinatra from 0.0.0 are vulnerable to Reliance on Untrusted Inputs in a Security Decision via the... |
| CVE-2024-10620 | MEDIUM | 6.9 | 0.5% | Nov 1, 2024 | A vulnerability was found in knightliao Disconf 2.6.36. It has been classified as critical. This affects an unknown part... |
| CVE-2024-10605 | MEDIUM | 6.5 | 0.4% | Nov 1, 2024 | A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been classified as problematic. This... |
| CVE-2024-6480 | MEDIUM | 5.4 | 0.3% | Oct 31, 2024 | The SIP Reviews Shortcode for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'no_... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now