2024 CVE Vulnerabilities
39,257 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-9232 | MEDIUM | 6.1 | 0.3% | Oct 11, 2024 | The Download Plugins and Themes in ZIP from Dashboard plugin for WordPress is vulnerable to Reflected Cross-Site Scripti... |
| CVE-2024-9221 | MEDIUM | 6.1 | 0.4% | Oct 11, 2024 | The Tainacan plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg withou... |
| CVE-2024-9211 | MEDIUM | 6.1 | 0.4% | Oct 11, 2024 | The FULL – Cliente plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg ... |
| CVE-2024-9051 | MEDIUM | 6.4 | 0.3% | Oct 11, 2024 | The WP Ultimate Post Grid plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wpupg-grid-... |
| CVE-2024-8913 | MEDIUM | 4.3 | 0.4% | Oct 11, 2024 | The The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce plugin for WordPre... |
| CVE-2024-7514 | MEDIUM | 6.5 | 1.0% | Oct 11, 2024 | The WordPress Comments Import & Export plugin for WordPress is vulnerable to to arbitrary file read due to insufficient ... |
| CVE-2024-6971 | MEDIUM | 4.4 | 0.3% | Oct 11, 2024 | A path traversal vulnerability exists in the parisneo/lollms-webui repository, specifically in the `lollms_file_system.p... |
| CVE-2024-5005 | MEDIUM | 4.3 | 0.4% | Oct 11, 2024 | An issue has been discovered discovered in GitLab EE/CE affecting all versions starting from 11.4 before 17.2.9, all ver... |
| CVE-2024-48987 | MEDIUM | 6.6 | 1.0% | Oct 11, 2024 | Snipe-IT before 7.0.10 allows remote code execution (associated with cookie serialization) when an attacker knows the AP... |
| CVE-2024-45315 | MEDIUM | 5.5 | 0.2% | Oct 11, 2024 | The Improper link resolution before file access ('Link Following') vulnerability in SonicWall Connect Tunnel (version 12... |
| CVE-2024-47872 | MEDIUM | 5.4 | 0.3% | Oct 10, 2024 | Gradio is an open-source Python package designed for quick prototyping. This vulnerability involves **Cross-Site Scripti... |
| CVE-2024-47168 | MEDIUM | 4.3 | 0.3% | Oct 10, 2024 | Gradio is an open-source Python package designed for quick prototyping. This vulnerability involves data exposure due to... |
| CVE-2024-47166 | MEDIUM | 5.3 | 0.4% | Oct 10, 2024 | Gradio is an open-source Python package designed for quick prototyping. This vulnerability involves a **one-level read p... |
| CVE-2024-47165 | MEDIUM | 5.4 | 0.3% | Oct 10, 2024 | Gradio is an open-source Python package designed for quick prototyping. This vulnerability relates to **CORS origin vali... |
| CVE-2024-47164 | MEDIUM | 6.5 | 0.7% | Oct 10, 2024 | Gradio is an open-source Python package designed for quick prototyping. This vulnerability relates to the **bypass of di... |
| CVE-2024-9810 | MEDIUM | 6.1 | 0.4% | Oct 10, 2024 | A vulnerability was found in SourceCodester Record Management System 1.0. It has been rated as problematic. Affected by ... |
| CVE-2024-9809 | MEDIUM | 6.5 | 0.4% | Oct 10, 2024 | A vulnerability was found in SourceCodester Online Eyewear Shop 1.0. It has been declared as critical. Affected by this ... |
| CVE-2024-9808 | MEDIUM | 6.5 | 0.4% | Oct 10, 2024 | A vulnerability was found in SourceCodester Online Eyewear Shop 1.0. It has been classified as critical. Affected is an ... |
| CVE-2024-9807 | MEDIUM | 4.8 | 0.4% | Oct 10, 2024 | A vulnerability was found in Craig Rodway Classroombookings 2.8.7 and classified as problematic. This issue affects some... |
| CVE-2024-9806 | MEDIUM | 4.8 | 0.4% | Oct 10, 2024 | A vulnerability has been found in Craig Rodway Classroombookings up to 2.8.6 and classified as problematic. This vulnera... |
| CVE-2024-47648 | MEDIUM | 6.1 | 0.3% | Oct 10, 2024 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Metagauss EventPrime eventprime-event-calendar-mana... |
| CVE-2024-47354 | MEDIUM | 4.7 | 0.3% | Oct 10, 2024 | URL Redirection to Untrusted Site ('Open Redirect') vulnerability in wp.insider Simple Membership After Login Redirectio... |
| CVE-2024-9805 | MEDIUM | 5.4 | 0.4% | Oct 10, 2024 | A vulnerability was found in code-projects Blood Bank System 1.0. It has been rated as problematic. This issue affects s... |
| CVE-2024-9804 | MEDIUM | 4.9 | 0.4% | Oct 10, 2024 | A vulnerability was found in code-projects Blood Bank System 1.0. It has been declared as critical. This vulnerability a... |
| CVE-2024-9803 | MEDIUM | 5.4 | 0.4% | Oct 10, 2024 | A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been classified as problematic. This... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now