2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-41175 | MEDIUM | 5.5 | 0.2% | Aug 27, 2024 | The IPC-Diagnostics package included in TwinCAT/BSD is vulnerable to a local denial-of-service attack by a low privilege... |
| CVE-2024-7304 | MEDIUM | 5.4 | 0.4% | Aug 27, 2024 | The Ninja Tables – Easiest Data Table Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG ... |
| CVE-2024-6804 | MEDIUM | 5.4 | 0.4% | Aug 27, 2024 | The Jeg Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all vers... |
| CVE-2024-6688 | MEDIUM | 4.3 | 0.3% | Aug 27, 2024 | The Oxygen Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability c... |
| CVE-2024-45036 | MEDIUM | 4.3 | 0.3% | Aug 26, 2024 | Tophat is a mobile applications testing harness. An Improper Access Control vulnerability can expose the `TOPHAT_APP_TOK... |
| CVE-2024-43915 | MEDIUM | 5.4 | 0.2% | Aug 26, 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Dylan James... |
| CVE-2024-43356 | MEDIUM | 4.3 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in bobbingwide.This issue affects oik: from n/a through 4.12.0. |
| CVE-2024-43340 | MEDIUM | 4.3 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Nasirahmed Advanced Form Integration.This issue affects Advanced Form... |
| CVE-2024-43339 | MEDIUM | 6.1 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WebinarPress allows Cross-Site Scripting (XSS).This issue affects Web... |
| CVE-2024-43337 | MEDIUM | 4.3 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Brave Brave Popup Builder.This issue affects Brave Popup Builder: fro... |
| CVE-2024-43336 | MEDIUM | 4.3 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WP User Manager WP User Manager wp-user-manager.This issue affects WP... |
| CVE-2024-43316 | MEDIUM | 4.3 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Checkout Plugins Stripe Payments For WooCommerce by Checkout.This iss... |
| CVE-2024-43301 | MEDIUM | 5.4 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Fonts Plugin Fonts allows Stored XSS.This issue affects Fonts: from n... |
| CVE-2024-43299 | MEDIUM | 5.4 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Softaculous SpeedyCache speedycache.This issue affects SpeedyCache: f... |
| CVE-2024-43295 | MEDIUM | 4.3 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Passionate Programmers B.V. WP Data Access.This issue affects WP Data... |
| CVE-2024-43269 | MEDIUM | 4.3 | 0.2% | Aug 26, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WPBackItUp Backup and Restore WordPress.This issue affects Backup and... |
| CVE-2024-43257 | MEDIUM | 6.5 | 0.4% | Aug 26, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Nouthemes Leopard - WordPress offload media.... |
| CVE-2024-43255 | MEDIUM | 6.1 | 0.2% | Aug 26, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in zookatron MyBookTa... |
| CVE-2024-43251 | MEDIUM | 6.5 | 0.4% | Aug 26, 2024 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Bit Apps Bit Form Pro.This issue affects Bit... |
| CVE-2024-43214 | MEDIUM | 5.3 | 0.3% | Aug 26, 2024 | Missing Authorization vulnerability in Saad Iqbal myCred mycred.This issue affects myCred: from n/a through <= 2.7.2. |
| CVE-2024-8105 | MEDIUM | 6.4 | 0.2% | Aug 26, 2024 | A vulnerability exists in UEFI implementations that use a hard-coded software-based Platform Key (PK). An attacker in po... |
| CVE-2024-44797 | MEDIUM | 6.1 | 0.4% | Aug 26, 2024 | A cross-site scripting (XSS) vulnerability in the component /managers/enable_requests.php of Gazelle commit 63b3370 allo... |
| CVE-2024-44796 | MEDIUM | 6.1 | 0.5% | Aug 26, 2024 | A cross-site scripting (XSS) vulnerability in the component /auth/AzureRedirect.php of PicUploader commit fcf82ea allows... |
| CVE-2024-44795 | MEDIUM | 6.1 | 0.3% | Aug 26, 2024 | A cross-site scripting (XSS) vulnerability in the component /login/disabled.php of Gazelle commit 63b3370 allows attacke... |
| CVE-2024-44794 | MEDIUM | 6.1 | 0.3% | Aug 26, 2024 | A cross-site scripting (XSS) vulnerability in the component /master/auth/OnedriveRedirect.php of PicUploader commit fcf8... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now