2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-4744 | HIGH | 7.3 | 0.3% | Jun 10, 2024 | Missing Authorization vulnerability in Avirtum iPages Flipbook.This issue affects iPages Flipbook: from n/a through 1.5.... |
| CVE-2024-4328 | HIGH | 8.1 | 0.2% | Jun 10, 2024 | A Cross-Site Request Forgery (CSRF) vulnerability exists in the clear_personality_files_list function of the parisneo/lo... |
| CVE-2024-35742 | HIGH | 7.3 | 0.3% | Jun 10, 2024 | Missing Authorization vulnerability in Code Parrots Easy Forms for Mailchimp.This issue affects Easy Forms for Mailchimp... |
| CVE-2024-35741 | HIGH | 8.8 | 0.3% | Jun 10, 2024 | Missing Authorization vulnerability in Awesome Support Team Awesome Support.This issue affects Awesome Support: from n/a... |
| CVE-2024-35729 | HIGH | 8.8 | 0.3% | Jun 10, 2024 | Missing Authorization vulnerability in Tickera Tickera tickera-event-ticketing-system allows Exploiting Incorrectly Conf... |
| CVE-2024-35727 | HIGH | 8.8 | 0.3% | Jun 10, 2024 | Missing Authorization vulnerability in actpro Extra Product Options for WooCommerce.This issue affects Extra Product Opt... |
| CVE-2024-35726 | HIGH | 8.8 | 0.4% | Jun 10, 2024 | Missing Authorization vulnerability in ThemeKraft WooBuddy.This issue affects WooBuddy: from n/a through 3.4.19. |
| CVE-2024-35725 | HIGH | 8.8 | 0.4% | Jun 10, 2024 | Missing Authorization vulnerability in LA-Studio LA-Studio Element Kit for Elementor.This issue affects LA-Studio Elemen... |
| CVE-2024-35724 | HIGH | 8.8 | 0.3% | Jun 10, 2024 | Missing Authorization vulnerability in Bosa Themes Bosa Elementor Addons and Templates for WooCommerce.This issue affect... |
| CVE-2024-35723 | HIGH | 8.8 | 0.3% | Jun 10, 2024 | Missing Authorization vulnerability in Andrew Dashboard To-Do List dashboard-to-do-list.This issue affects Dashboard To-... |
| CVE-2024-35722 | HIGH | 8.8 | 0.4% | Jun 10, 2024 | Missing Authorization vulnerability in A WP Life Slider Responsive Slideshow – Image slider, Gallery slideshow.This issu... |
| CVE-2024-35721 | HIGH | 8.8 | 0.4% | Jun 10, 2024 | Missing Authorization vulnerability in A WP Life Image Gallery – Lightbox Gallery, Responsive Photo Gallery, Masonry Gal... |
| CVE-2024-35720 | HIGH | 8.8 | 0.4% | Jun 10, 2024 | Missing Authorization vulnerability in A WP Life Album Gallery – WordPress Gallery.This issue affects Album Gallery – Wo... |
| CVE-2024-35717 | HIGH | 8.8 | 0.4% | Jun 10, 2024 | Missing Authorization vulnerability in A WP Life Media Slider – Photo Sleder, Video Slider, Link Slider, Carousal Slides... |
| CVE-2024-23524 | HIGH | 8.8 | 0.3% | Jun 10, 2024 | Missing Authorization vulnerability in ONTRAPORT Inc. PilotPress.This issue affects PilotPress: from n/a through 2.0.30. |
| CVE-2024-22296 | HIGH | 8.8 | 0.3% | Jun 10, 2024 | Missing Authorization vulnerability in Code for Recovery 12 Step Meeting List.This issue affects 12 Step Meeting List: f... |
| CVE-2024-21751 | HIGH | 8.8 | 0.3% | Jun 10, 2024 | Missing Authorization vulnerability in RabbitLoader.This issue affects RabbitLoader: from n/a through 2.19.13. |
| CVE-2024-37880 | HIGH | 7.5 | 0.7% | Jun 10, 2024 | The Kyber reference implementation before 9b8d306, when compiled by LLVM Clang through 18.x with some common optimizatio... |
| CVE-2024-5389 | HIGH | 8.1 | 0.4% | Jun 9, 2024 | In lunary-ai/lunary version 1.2.13, an insufficient granularity of access control vulnerability allows users to create, ... |
| CVE-2024-37570 | HIGH | 8.8 | 1.1% | Jun 9, 2024 | On Mitel 6869i 4.5.0.41 devices, the Manual Firmware Update (upgrade.html) page does not perform sanitization on the use... |
| CVE-2024-37569 | HIGH | 8.8 | 3.2% | Jun 9, 2024 | An issue was discovered on Mitel 6869i through 4.5.0.41 and 5.x through 5.0.0.1018 devices. A command injection vulnerab... |
| CVE-2024-5585 | HIGH | 8.8 | 28.8% | Jun 9, 2024 | In PHP versions 8.1.* before 8.1.29, 8.2.* before 8.2.20, 8.3.* before 8.3.8, the fix for CVE-2024-1874 does not work if... |
| CVE-2024-37568 | HIGH | 7.5 | 0.4% | Jun 9, 2024 | lepture Authlib before 1.3.1 has algorithm confusion with asymmetric public keys. Unless an algorithm is specified in a ... |
| CVE-2024-35662 | HIGH | 8.8 | 0.4% | Jun 9, 2024 | Missing Authorization vulnerability in Andreas Sofantzis Simple COD Fees for WooCommerce.This issue affects Simple COD F... |
| CVE-2024-32081 | HIGH | 8.8 | 0.4% | Jun 9, 2024 | Missing Authorization vulnerability in Websupporter Filter Custom Fields & Taxonomies Light.This issue affects Filter Cu... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now