2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-6226MEDIUM6.1The WpStickyBar WordPress plugin through 2.1.0 does not sanitise and escape a parameter before outputting it back in th...
CVE-2024-6224MEDIUM5.9The Send email only on Reply to My Comment WordPress plugin through 1.0.6 does not have CSRF check in some places, and i...
CVE-2024-6223MEDIUM6.1The Send email only on Reply to My Comment WordPress plugin through 1.0.6 does not sanitise and escape a parameter befor...
CVE-2024-6021MEDIUM6.8The Donation Block For PayPal WordPress plugin through 2.1.0 does not sanitise and escape form submissions, leading to a...
CVE-2024-5809MEDIUM6.1The WP Ajax Contact Form WordPress plugin through 2.2.2 does not sanitise and escape a parameter before outputting it ba...
CVE-2024-5808MEDIUM4.3The WP Ajax Contact Form WordPress plugin through 2.2.2 does not have CSRF check in place when deleting emails from the ...
CVE-2024-4096MEDIUM5.9The Responsive Tabs WordPress plugin through 4.0.8 does not sanitise and escape some of its Tab settings, which could al...
CVE-2024-3986MEDIUM4.8The SportsPress WordPress plugin before 2.7.22 does not sanitise and escape some of its settings, which could allow hig...
CVE-2024-3669MEDIUM6.8The Web Directory Free WordPress plugin before 1.7.2 does not sanitise and escape a parameter before outputting it back ...
CVE-2024-3113MEDIUM5.9The FormFlow: WhatsApp Social and Advanced Form Builder with Easy Lead Collection WordPress plugin before 2.12.2 does no...
CVE-2024-1287MEDIUM6.5The pmpro-member-directory WordPress plugin before 1.2.6 does not prevent users with at least the contributor role from ...
CVE-2024-1286MEDIUM4.9The pmpro-membership-maps WordPress plugin before 0.7 does not prevent users with at least the contributor role from lea...
CVE-2024-7218MEDIUM6.1A flaw has been found in SourceCodester/Campcodes School Log Management System 1.0. Affected is an unknown function of t...
CVE-2024-7216MEDIUM5.3A vulnerability was found in TOTOLINK LR1200 9.3.1cu.2832. It has been classified as problematic. This affects an unknow...
CVE-2024-40836MEDIUM5.5A logic issue was addressed with improved checks. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPad...
CVE-2024-40835MEDIUM5.5A logic issue was addressed with improved checks. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPad...
CVE-2024-40834MEDIUM4.4This issue was addressed by adding an additional prompt for user consent. This issue is fixed in macOS Monterey 12.7.6, ...
CVE-2024-40833MEDIUM5.5A logic issue was addressed with improved checks. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, macOS Monterey 12...
CVE-2024-40829MEDIUM4.6The issue was addressed with improved checks. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 1...
CVE-2024-40827MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ven...
CVE-2024-40824MEDIUM5.5This issue was addressed through improved state management. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonom...
CVE-2024-40823MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ven...
CVE-2024-40818MEDIUM4.6This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 16.7.9 and iPadOS...
CVE-2024-40817MEDIUM6.1The issue was addressed with improved UI handling. This issue is fixed in Safari 17.6, macOS Monterey 12.7.6, macOS Sono...
CVE-2024-40816MEDIUM5.5An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Monterey 12.7.6, macOS ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now