2024 CVE Vulnerabilities

39,257 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-9595MEDIUM5.4The TablePress – Tables in WordPress made easy plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
CVE-2024-8915MEDIUM6.4The Category Icon plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions...
CVE-2024-8760MEDIUM5.3The Stackable – Page Builder Gutenberg Blocks plugin for WordPress is vulnerable to CSS Injection in all versions up to,...
CVE-2024-9756MEDIUM4.3The Order Attachments for WooCommerce plugin for WordPress is vulnerable to unauthorized limited arbitrary file uploads ...
CVE-2024-9704MEDIUM5.4The Social Sharing (by Danny) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'dvk_so...
CVE-2024-9824MEDIUM4.3The ImagePress – Image Gallery plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a...
CVE-2024-9778MEDIUM4.3The ImagePress – Image Gallery plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, a...
CVE-2024-9776MEDIUM4.8The ImagePress – Image Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in a...
CVE-2024-9670MEDIUM6.1The 2D Tag Cloud plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg wi...
CVE-2024-9656MEDIUM6.4The Mynx Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all vers...
CVE-2024-9187MEDIUM4.3The Read more By Adam plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check ...
CVE-2024-7489MEDIUM4.4The Forms for Mailchimp by Optin Cat – Grow Your MailChimp List plugin for WordPress is vulnerable to Stored Cross-Site ...
CVE-2024-9860MEDIUM5.4The Bridge Core plugin for WordPress is vulnerable to unauthorized modification of data or loss of data due to a missing...
CVE-2024-9592MEDIUM6.1The Easy PayPal Gift Certificate plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and...
CVE-2024-48937MEDIUM6.1Znuny before LTS 6.5.1 through 6.5.10 and 7.0.1 through 7.0.16 allows XSS. JavaScript code in the short description of t...
CVE-2024-45184MEDIUM6.2An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with chipset Exynos 9820, 9825, 980,...
CVE-2024-48041MEDIUM6.5Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CreativeMindsSolut...
CVE-2024-48040MEDIUM6.5Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in tainacan Tainacan ...
CVE-2024-47353MEDIUM6.1URL Redirection to Untrusted Site ('Open Redirect') vulnerability in quomodosoft ElementsReady Addons for Elementor elem...
CVE-2024-9539MEDIUM4.3An information disclosure vulnerability was identified in GitHub Enterprise Server via attacker uploaded asset URL allow...
CVE-2024-44807MEDIUM5.3A directory listing issue in the baserCMS plugin in D-ZERO CO., LTD. BurgerEditor and BurgerEditor Limited Edition befor...
CVE-2024-44157MEDIUM5.5A stack buffer overflow was addressed through improved input validation. This issue is fixed in Apple TV 1.5.0.152 for W...
CVE-2024-46215MEDIUM6.5A vulnerability was discovered in KM08-708H-v1.1, There is a buffer overflow in the sub_445BDC() function within the /us...
CVE-2024-44731MEDIUM4.7Mirotalk before commit 9de226 was discovered to contain a DOM-based cross-site scripting (XSS) vulnerability which allow...
CVE-2024-44415MEDIUM6.5A vulnerability was discovered in DI_8200-16.07.26A1, There is a buffer overflow in the dbsrv_asp function; The strcpy f...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now