2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-7153 | MEDIUM | 6.9 | 0.5% | Jul 27, 2024 | A vulnerability classified as problematic has been found in Netgear WN604 up to 20240719. Affected is an unknown functio... |
| CVE-2024-6703 | MEDIUM | 5.4 | 0.3% | Jul 27, 2024 | The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner... |
| CVE-2024-6897 | MEDIUM | 6.4 | 0.3% | Jul 27, 2024 | The aThemes Starter Sites plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all ... |
| CVE-2024-6627 | MEDIUM | 5.4 | 0.3% | Jul 27, 2024 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's PDF Vi... |
| CVE-2024-6521 | MEDIUM | 4.4 | 0.3% | Jul 27, 2024 | The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner... |
| CVE-2024-6520 | MEDIUM | 4.4 | 0.3% | Jul 27, 2024 | The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner... |
| CVE-2024-6518 | MEDIUM | 4.4 | 0.3% | Jul 27, 2024 | The Contact Form Plugin by Fluent Forms for Quiz, Survey, and Drag & Drop WP Form Builder plugin for WordPress is vulner... |
| CVE-2024-5614 | MEDIUM | 5.3 | 0.4% | Jul 27, 2024 | The Piotnet Addons For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up... |
| CVE-2024-6569 | MEDIUM | 5.3 | 0.8% | Jul 27, 2024 | The Campaign Monitor for WordPress plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and... |
| CVE-2024-6458 | MEDIUM | 6.4 | 0.3% | Jul 27, 2024 | The WooCommerce Product Table Lite plugin for WordPress is vulnerable to unauthorized post title modification due to a m... |
| CVE-2024-5969 | MEDIUM | 5.3 | 0.4% | Jul 27, 2024 | The AIomatic - Automatic AI Content Writer for WordPress is vulnerable to arbitrary email sending vulnerability in versi... |
| CVE-2024-42029 | MEDIUM | 6.3 | 0.8% | Jul 27, 2024 | xdg-desktop-portal-hyprland (aka an XDG Desktop Portal backend for Hyprland) before 1.3.3 allows OS command execution, e... |
| CVE-2024-6661 | MEDIUM | 4.4 | 0.3% | Jul 27, 2024 | The ParityPress – Parity Pricing with Discount Rules plugin for WordPress is vulnerable to Stored Cross-Site Scripting v... |
| CVE-2024-6634 | MEDIUM | 6.4 | 0.3% | Jul 27, 2024 | The Master Currency WP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's currencyconver... |
| CVE-2024-6591 | MEDIUM | 5.8 | 0.4% | Jul 27, 2024 | The Ultimate WordPress Auction Plugin plugin for WordPress is vulnerable to unauthorized email creation and sending due ... |
| CVE-2024-6573 | MEDIUM | 5.3 | 0.4% | Jul 27, 2024 | The Intelligence plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.4.0.... |
| CVE-2024-6566 | MEDIUM | 5.3 | 0.4% | Jul 27, 2024 | The Aramex Shipping WooCommerce plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and in... |
| CVE-2024-6549 | MEDIUM | 5.3 | 0.4% | Jul 27, 2024 | The Admin Post Navigation plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and includin... |
| CVE-2024-6548 | MEDIUM | 5.3 | 0.4% | Jul 27, 2024 | The Add Admin JavaScript plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including... |
| CVE-2024-6547 | MEDIUM | 5.3 | 0.4% | Jul 27, 2024 | The Add Admin CSS plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 2.0.1... |
| CVE-2024-6546 | MEDIUM | 5.3 | 0.4% | Jul 27, 2024 | The One Click Close Comments plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and inclu... |
| CVE-2024-6545 | MEDIUM | 5.3 | 0.4% | Jul 27, 2024 | The Admin Trim Interface plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including... |
| CVE-2024-4410 | MEDIUM | 5.4 | 0.4% | Jul 27, 2024 | The IgnitionDeck Crowdfunding Platform plugin for WordPress is vulnerable to Missing Authorization in versions up to, an... |
| CVE-2024-1804 | MEDIUM | 4.3 | 0.3% | Jul 27, 2024 | The Tutor LMS – Migration Tool plugin for WordPress is vulnerable to unauthorized modification of data due to a missing ... |
| CVE-2024-1798 | MEDIUM | 5.3 | 0.4% | Jul 27, 2024 | The Tutor LMS – Migration Tool plugin for WordPress is vulnerable to unauthorized access of data due to a missing capabi... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now