2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-9595 | MEDIUM | 5.4 | 0.3% | Oct 12, 2024 | The TablePress – Tables in WordPress made easy plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the... |
| CVE-2024-8915 | MEDIUM | 6.4 | 0.3% | Oct 12, 2024 | The Category Icon plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions... |
| CVE-2024-8760 | MEDIUM | 5.3 | 0.5% | Oct 12, 2024 | The Stackable – Page Builder Gutenberg Blocks plugin for WordPress is vulnerable to CSS Injection in all versions up to,... |
| CVE-2024-9756 | MEDIUM | 4.3 | 0.9% | Oct 12, 2024 | The Order Attachments for WooCommerce plugin for WordPress is vulnerable to unauthorized limited arbitrary file uploads ... |
| CVE-2024-9704 | MEDIUM | 5.4 | 0.2% | Oct 12, 2024 | The Social Sharing (by Danny) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'dvk_so... |
| CVE-2024-9824 | MEDIUM | 4.3 | 0.3% | Oct 12, 2024 | The ImagePress – Image Gallery plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a... |
| CVE-2024-9778 | MEDIUM | 4.3 | 0.2% | Oct 12, 2024 | The ImagePress – Image Gallery plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, a... |
| CVE-2024-9776 | MEDIUM | 4.8 | 0.3% | Oct 12, 2024 | The ImagePress – Image Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in a... |
| CVE-2024-9670 | MEDIUM | 6.1 | 0.3% | Oct 12, 2024 | The 2D Tag Cloud plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg wi... |
| CVE-2024-9656 | MEDIUM | 6.4 | 0.3% | Oct 12, 2024 | The Mynx Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all vers... |
| CVE-2024-9187 | MEDIUM | 4.3 | 0.3% | Oct 12, 2024 | The Read more By Adam plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check ... |
| CVE-2024-7489 | MEDIUM | 4.4 | 0.3% | Oct 12, 2024 | The Forms for Mailchimp by Optin Cat – Grow Your MailChimp List plugin for WordPress is vulnerable to Stored Cross-Site ... |
| CVE-2024-9860 | MEDIUM | 5.4 | 0.3% | Oct 12, 2024 | The Bridge Core plugin for WordPress is vulnerable to unauthorized modification of data or loss of data due to a missing... |
| CVE-2024-9592 | MEDIUM | 6.1 | 0.1% | Oct 12, 2024 | The Easy PayPal Gift Certificate plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and... |
| CVE-2024-48937 | MEDIUM | 6.1 | 0.4% | Oct 11, 2024 | Znuny before LTS 6.5.1 through 6.5.10 and 7.0.1 through 7.0.16 allows XSS. JavaScript code in the short description of t... |
| CVE-2024-45184 | MEDIUM | 6.2 | 0.2% | Oct 11, 2024 | An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with chipset Exynos 9820, 9825, 980,... |
| CVE-2024-48041 | MEDIUM | 6.5 | 0.3% | Oct 11, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CreativeMindsSolut... |
| CVE-2024-48040 | MEDIUM | 6.5 | 0.5% | Oct 11, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in tainacan Tainacan ... |
| CVE-2024-47353 | MEDIUM | 6.1 | 0.2% | Oct 11, 2024 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in quomodosoft ElementsReady Addons for Elementor elem... |
| CVE-2024-9539 | MEDIUM | 4.3 | 0.6% | Oct 11, 2024 | An information disclosure vulnerability was identified in GitHub Enterprise Server via attacker uploaded asset URL allow... |
| CVE-2024-44807 | MEDIUM | 5.3 | 0.5% | Oct 11, 2024 | A directory listing issue in the baserCMS plugin in D-ZERO CO., LTD. BurgerEditor and BurgerEditor Limited Edition befor... |
| CVE-2024-44157 | MEDIUM | 5.5 | 0.2% | Oct 11, 2024 | A stack buffer overflow was addressed through improved input validation. This issue is fixed in Apple TV 1.5.0.152 for W... |
| CVE-2024-46215 | MEDIUM | 6.5 | 2.9% | Oct 11, 2024 | A vulnerability was discovered in KM08-708H-v1.1, There is a buffer overflow in the sub_445BDC() function within the /us... |
| CVE-2024-44731 | MEDIUM | 4.7 | 0.4% | Oct 11, 2024 | Mirotalk before commit 9de226 was discovered to contain a DOM-based cross-site scripting (XSS) vulnerability which allow... |
| CVE-2024-44415 | MEDIUM | 6.5 | 0.3% | Oct 11, 2024 | A vulnerability was discovered in DI_8200-16.07.26A1, There is a buffer overflow in the dbsrv_asp function; The strcpy f... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now