2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2024-4744HIGH7.3Missing Authorization vulnerability in Avirtum iPages Flipbook.This issue affects iPages Flipbook: from n/a through 1.5....
CVE-2024-4328HIGH8.1A Cross-Site Request Forgery (CSRF) vulnerability exists in the clear_personality_files_list function of the parisneo/lo...
CVE-2024-35742HIGH7.3Missing Authorization vulnerability in Code Parrots Easy Forms for Mailchimp.This issue affects Easy Forms for Mailchimp...
CVE-2024-35741HIGH8.8Missing Authorization vulnerability in Awesome Support Team Awesome Support.This issue affects Awesome Support: from n/a...
CVE-2024-35729HIGH8.8Missing Authorization vulnerability in Tickera Tickera tickera-event-ticketing-system allows Exploiting Incorrectly Conf...
CVE-2024-35727HIGH8.8Missing Authorization vulnerability in actpro Extra Product Options for WooCommerce.This issue affects Extra Product Opt...
CVE-2024-35726HIGH8.8Missing Authorization vulnerability in ThemeKraft WooBuddy.This issue affects WooBuddy: from n/a through 3.4.19.
CVE-2024-35725HIGH8.8Missing Authorization vulnerability in LA-Studio LA-Studio Element Kit for Elementor.This issue affects LA-Studio Elemen...
CVE-2024-35724HIGH8.8Missing Authorization vulnerability in Bosa Themes Bosa Elementor Addons and Templates for WooCommerce.This issue affect...
CVE-2024-35723HIGH8.8Missing Authorization vulnerability in Andrew Dashboard To-Do List dashboard-to-do-list.This issue affects Dashboard To-...
CVE-2024-35722HIGH8.8Missing Authorization vulnerability in A WP Life Slider Responsive Slideshow – Image slider, Gallery slideshow.This issu...
CVE-2024-35721HIGH8.8Missing Authorization vulnerability in A WP Life Image Gallery – Lightbox Gallery, Responsive Photo Gallery, Masonry Gal...
CVE-2024-35720HIGH8.8Missing Authorization vulnerability in A WP Life Album Gallery – WordPress Gallery.This issue affects Album Gallery – Wo...
CVE-2024-35717HIGH8.8Missing Authorization vulnerability in A WP Life Media Slider – Photo Sleder, Video Slider, Link Slider, Carousal Slides...
CVE-2024-23524HIGH8.8Missing Authorization vulnerability in ONTRAPORT Inc. PilotPress.This issue affects PilotPress: from n/a through 2.0.30.
CVE-2024-22296HIGH8.8Missing Authorization vulnerability in Code for Recovery 12 Step Meeting List.This issue affects 12 Step Meeting List: f...
CVE-2024-21751HIGH8.8Missing Authorization vulnerability in RabbitLoader.This issue affects RabbitLoader: from n/a through 2.19.13.
CVE-2024-37880HIGH7.5The Kyber reference implementation before 9b8d306, when compiled by LLVM Clang through 18.x with some common optimizatio...
CVE-2024-5389HIGH8.1In lunary-ai/lunary version 1.2.13, an insufficient granularity of access control vulnerability allows users to create, ...
CVE-2024-37570HIGH8.8On Mitel 6869i 4.5.0.41 devices, the Manual Firmware Update (upgrade.html) page does not perform sanitization on the use...
CVE-2024-37569HIGH8.8An issue was discovered on Mitel 6869i through 4.5.0.41 and 5.x through 5.0.0.1018 devices. A command injection vulnerab...
CVE-2024-5585HIGH8.8In PHP versions 8.1.* before 8.1.29, 8.2.* before 8.2.20, 8.3.* before 8.3.8, the fix for CVE-2024-1874 does not work if...
CVE-2024-37568HIGH7.5lepture Authlib before 1.3.1 has algorithm confusion with asymmetric public keys. Unless an algorithm is specified in a ...
CVE-2024-35662HIGH8.8Missing Authorization vulnerability in Andreas Sofantzis Simple COD Fees for WooCommerce.This issue affects Simple COD F...
CVE-2024-32081HIGH8.8Missing Authorization vulnerability in Websupporter Filter Custom Fields & Taxonomies Light.This issue affects Filter Cu...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now