2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-9610MEDIUM6.1The Language Switcher plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_a...
CVE-2024-9587MEDIUM4.3The Linkz.ai plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check o...
CVE-2024-9586MEDIUM5.3The Linkz.ai plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check o...
CVE-2024-9543MEDIUM6.4The PowerPress Podcasting plugin by Blubrry plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl...
CVE-2024-9538MEDIUM6.5The ShopLentor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including...
CVE-2024-9507MEDIUM4.9The Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form buil...
CVE-2024-9436MEDIUM6.1The PublishPress Revisions: Duplicate Posts, Submit, Approve and Schedule Content Changes plugin for WordPress is vulner...
CVE-2024-9346MEDIUM6.1The Embed videos and respect privacy plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'v' pa...
CVE-2024-9232MEDIUM6.1The Download Plugins and Themes in ZIP from Dashboard plugin for WordPress is vulnerable to Reflected Cross-Site Scripti...
CVE-2024-9221MEDIUM6.1The Tainacan plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg withou...
CVE-2024-9211MEDIUM6.1The FULL – Cliente plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg ...
CVE-2024-9051MEDIUM6.4The WP Ultimate Post Grid plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wpupg-grid-...
CVE-2024-8913MEDIUM4.3The The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce plugin for WordPre...
CVE-2024-7514MEDIUM6.5The WordPress Comments Import & Export plugin for WordPress is vulnerable to to arbitrary file read due to insufficient ...
CVE-2024-6971MEDIUM4.4A path traversal vulnerability exists in the parisneo/lollms-webui repository, specifically in the `lollms_file_system.p...
CVE-2024-5005MEDIUM4.3An issue has been discovered discovered in GitLab EE/CE affecting all versions starting from 11.4 before 17.2.9, all ver...
CVE-2024-48987MEDIUM6.6Snipe-IT before 7.0.10 allows remote code execution (associated with cookie serialization) when an attacker knows the AP...
CVE-2024-45315MEDIUM5.5The Improper link resolution before file access ('Link Following') vulnerability in SonicWall Connect Tunnel (version 12...
CVE-2024-47872MEDIUM5.4Gradio is an open-source Python package designed for quick prototyping. This vulnerability involves **Cross-Site Scripti...
CVE-2024-47168MEDIUM4.3Gradio is an open-source Python package designed for quick prototyping. This vulnerability involves data exposure due to...
CVE-2024-47166MEDIUM5.3Gradio is an open-source Python package designed for quick prototyping. This vulnerability involves a **one-level read p...
CVE-2024-47165MEDIUM5.4Gradio is an open-source Python package designed for quick prototyping. This vulnerability relates to **CORS origin vali...
CVE-2024-47164MEDIUM6.5Gradio is an open-source Python package designed for quick prototyping. This vulnerability relates to the **bypass of di...
CVE-2024-9810MEDIUM6.1A vulnerability was found in SourceCodester Record Management System 1.0. It has been rated as problematic. Affected by ...
CVE-2024-9809MEDIUM6.5A vulnerability was found in SourceCodester Online Eyewear Shop 1.0. It has been declared as critical. Affected by this ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now