2024 CVE Vulnerabilities

39,225 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-7153MEDIUM6.9A vulnerability classified as problematic has been found in Netgear WN604 up to 20240719. Affected is an unknown functio...
CVE-2024-6703MEDIUM5.4The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner...
CVE-2024-6897MEDIUM6.4The aThemes Starter Sites plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all ...
CVE-2024-6627MEDIUM5.4The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's PDF Vi...
CVE-2024-6521MEDIUM4.4The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner...
CVE-2024-6520MEDIUM4.4The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner...
CVE-2024-6518MEDIUM4.4The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner...
CVE-2024-5614MEDIUM5.3The Piotnet Addons For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up...
CVE-2024-6569MEDIUM5.3The Campaign Monitor for WordPress plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and...
CVE-2024-6458MEDIUM6.4The WooCommerce Product Table Lite plugin for WordPress is vulnerable to unauthorized post title modification due to a m...
CVE-2024-5969MEDIUM5.3The AIomatic - Automatic AI Content Writer for WordPress is vulnerable to arbitrary email sending vulnerability in versi...
CVE-2024-42029MEDIUM6.3xdg-desktop-portal-hyprland (aka an XDG Desktop Portal backend for Hyprland) before 1.3.3 allows OS command execution, e...
CVE-2024-6661MEDIUM4.4The ParityPress – Parity Pricing with Discount Rules plugin for WordPress is vulnerable to Stored Cross-Site Scripting v...
CVE-2024-6634MEDIUM6.4The Master Currency WP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's currencyconver...
CVE-2024-6591MEDIUM5.8The Ultimate WordPress Auction Plugin plugin for WordPress is vulnerable to unauthorized email creation and sending due ...
CVE-2024-6573MEDIUM5.3The Intelligence plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.4.0....
CVE-2024-6566MEDIUM5.3The Aramex Shipping WooCommerce plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and in...
CVE-2024-6549MEDIUM5.3The Admin Post Navigation plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and includin...
CVE-2024-6548MEDIUM5.3The Add Admin JavaScript plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including...
CVE-2024-6547MEDIUM5.3The Add Admin CSS plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 2.0.1...
CVE-2024-6546MEDIUM5.3The One Click Close Comments plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and inclu...
CVE-2024-6545MEDIUM5.3The Admin Trim Interface plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including...
CVE-2024-4410MEDIUM5.4The IgnitionDeck Crowdfunding Platform plugin for WordPress is vulnerable to Missing Authorization in versions up to, an...
CVE-2024-1804MEDIUM4.3The Tutor LMS – Migration Tool plugin for WordPress is vulnerable to unauthorized modification of data due to a missing ...
CVE-2024-1798MEDIUM5.3The Tutor LMS – Migration Tool plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabi...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now