2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-53823 | MEDIUM | 5.4 | 0.2% | Dec 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in POSIMYTH The Plus ... |
| CVE-2024-53821 | HIGH | 7.1 | 0.3% | Dec 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Genetech Pie Regis... |
| CVE-2024-53820 | MEDIUM | 6.5 | 0.2% | Dec 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in captivateaudio Cap... |
| CVE-2024-53817 | HIGH | 7.6 | 0.4% | Dec 6, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in acowebs Product La... |
| CVE-2024-53815 | HIGH | 8.5 | 0.5% | Dec 6, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in DOTonPAPER Pinpoin... |
| CVE-2024-53813 | MEDIUM | 6.5 | 0.3% | Dec 6, 2024 | Missing Authorization vulnerability in WP Travel WP Travel wp-travel allows Exploiting Incorrectly Configured Access Con... |
| CVE-2024-53812 | HIGH | 7.1 | 0.3% | Dec 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jacques Malgrange ... |
| CVE-2024-53811 | MEDIUM | 6.6 | 0.3% | Dec 6, 2024 | Unrestricted Upload of File with Dangerous Type vulnerability in POSIMYTH WDesignkit wdesignkit allows Upload a Web Shel... |
| CVE-2024-53810 | CRITICAL | 9.1 | 0.4% | Dec 6, 2024 | Missing Authorization vulnerability in N-Media Simple User Registration wp-registration allows Accessing Functionality N... |
| CVE-2024-53809 | MEDIUM | 4.3 | 0.2% | Dec 6, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Bob Namaste! LMS namaste-lms allows Cross Site Request Forgery.This i... |
| CVE-2024-53808 | HIGH | 7.2 | 0.6% | Dec 6, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Basix NEX-Forms ne... |
| CVE-2024-53807 | CRITICAL | 9.8 | 0.4% | Dec 6, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in brandtoss WP Mails... |
| CVE-2024-53806 | MEDIUM | 5.4 | 0.4% | Dec 6, 2024 | Missing Authorization vulnerability in yonifre Maspik – Spam blacklist contact-forms-anti-spam allows Exploiting Incorre... |
| CVE-2024-53805 | CRITICAL | 9.8 | 0.6% | Dec 6, 2024 | Missing Authorization vulnerability in brandtoss WP Mailster wp-mailster allows Exploiting Incorrectly Configured Access... |
| CVE-2024-53804 | HIGH | 7.5 | 0.6% | Dec 6, 2024 | Insertion of Sensitive Information Into Sent Data vulnerability in brandtoss WP Mailster wp-mailster allows Retrieve Emb... |
| CVE-2024-53803 | HIGH | 8.8 | 0.5% | Dec 6, 2024 | Missing Authorization vulnerability in brandtoss WP Mailster wp-mailster allows Exploiting Incorrectly Configured Access... |
| CVE-2024-53802 | MEDIUM | 5.4 | 0.3% | Dec 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FuturioWP Futurio ... |
| CVE-2024-53801 | MEDIUM | 5.4 | 0.4% | Dec 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Pa... |
| CVE-2024-53799 | MEDIUM | 4.3 | 0.4% | Dec 6, 2024 | Missing Authorization vulnerability in BAKKBONE Australia FloristPress bakkbone-florist-companion allows Exploiting Inco... |
| CVE-2024-53797 | MEDIUM | 5.4 | 0.3% | Dec 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Beaver Builder Bea... |
| CVE-2024-53796 | MEDIUM | 5.4 | 0.3% | Dec 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themesflat themesf... |
| CVE-2024-53795 | MEDIUM | 5.3 | 0.5% | Dec 6, 2024 | Missing Authorization vulnerability in andy_moyle Church Admin church-admin allows Accessing Functionality Not Properly ... |
| CVE-2024-53794 | MEDIUM | 6.5 | 0.3% | Dec 6, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ryo Arkhe Blocks a... |
| CVE-2024-52335 | CRITICAL | 9.8 | 0.7% | Dec 6, 2024 | A vulnerability has been identified in syngo.plaza VB30E (All versions < VB30E_HF05). The affected application do not pr... |
| CVE-2024-51815 | CRITICAL | 9 | 0.5% | Dec 6, 2024 | Improper Control of Generation of Code ('Code Injection') vulnerability in Cristián Lávaque s2Member s2member allows Cod... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now