2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-11420MEDIUM5.4The Blocksy theme for WordPress is vulnerable to Stored Cross-Site Scripting via the Contact Info Block link parameter i...
CVE-2024-11341MEDIUM4.3The Simple Redirection plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu...
CVE-2024-11324MEDIUM6.1The Accounting for WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of ad...
CVE-2024-10848MEDIUM6.4The NewsMunch theme for WordPress is vulnerable to Stored Cross-Site Scripting via a malicious display name in all versi...
CVE-2024-10777MEDIUM4.3The AnyWhere Elementor plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, ...
CVE-2024-10056MEDIUM6.4The Contact Form Builder by vcita plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's liv...
CVE-2024-10937MEDIUM5.3The Related Posts, Inline Related Posts, Contextual Related Posts, Related Content By PickPlugins plugin for WordPress i...
CVE-2024-11429HIGH8.8The Free Responsive Testimonials, Social Proof Reviews, and Customer Reviews – Stars Testimonials plugin for WordPress i...
CVE-2024-42195MEDIUM6.8HCL DevOps Deploy / HCL Launch is vulnerable to HTML injection. This vulnerability may allow a user to embed arbitrary H...
CVE-2024-10178MEDIUM5.4The Gutentor – Gutenberg Blocks – Page Builder for Gutenberg Editor plugin for WordPress is vulnerable to Stored Cross-S...
CVE-2024-10881MEDIUM6.4The LUNA RADIO PLAYER plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'lunaradio' shortcode in...
CVE-2024-54014LOW3.6Improper authorization in handler for custom URL scheme issue in 'Skylark' App for Android 6.2.13 and earlier and 'Skyla...
CVE-2024-12188CRITICAL9.8A vulnerability was found in 1000 Projects Library Management System 1.0. It has been declared as critical. Affected by ...
CVE-2024-12187CRITICAL9.8A vulnerability was found in 1000 Projects Library Management System 1.0. It has been classified as critical. Affected i...
CVE-2024-54221CRITICAL9.3Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in roninwp FAT Servic...
CVE-2024-12186HIGH7.8A vulnerability was found in code-projects Hotel Management System 1.0 and classified as problematic. This issue affects...
CVE-2024-12185HIGH7.8A vulnerability has been found in code-projects Hotel Management System 1.0 and classified as problematic. This vulnerab...
CVE-2024-53982HIGH8.7ZOO-Project is a C-based WPS (Web Processing Service) implementation. A path traversal vulnerability was discovered in Z...
CVE-2024-12183MEDIUM5.4A vulnerability, which was classified as problematic, was found in DedeCMS 5.7.116. This affects the function RemoveXSS ...
CVE-2024-12182MEDIUM5.4A vulnerability, which was classified as problematic, has been found in DedeCMS 5.7.116. Affected by this issue is some ...
CVE-2024-12181MEDIUM5.4A vulnerability classified as problematic was found in DedeCMS 5.7.116. Affected by this vulnerability is an unknown fun...
CVE-2024-12180MEDIUM5.4A vulnerability classified as problematic has been found in DedeCMS 5.7.116. Affected is an unknown function of the file...
CVE-2024-54675MEDIUM6.1app/webroot/js/workflows-editor/workflows-editor.js in MISP through 2.5.2 has stored XSS in the editor interface for an ...
CVE-2024-54674MEDIUM6.1app/View/GalaxyClusters/cluster_export_misp_galaxy.ctp in MISP through 2.5.2 has stored XSS when exporting custom cluste...
CVE-2024-51210MEDIUM5.3Firepad through 1.5.11 allows remote attackers, who have knowledge of a pad ID, to retrieve both the current text of a d...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now