2024 CVE Vulnerabilities
39,225 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-39875 | MEDIUM | 4.3 | 0.3% | Jul 9, 2024 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). The affected application ... |
| CVE-2024-39871 | MEDIUM | 5.4 | 0.2% | Jul 9, 2024 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected applications do ... |
| CVE-2024-39869 | MEDIUM | 6.5 | 0.3% | Jul 9, 2024 | A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.2 SP1). Affected products allow t... |
| CVE-2024-37996 | MEDIUM | 4.8 | 0.2% | Jul 9, 2024 | A vulnerability has been identified in JT Open (All versions < V11.5), JT2Go (All versions < V2406.0003), PLM XML SDK (A... |
| CVE-2024-37499 | MEDIUM | 6.5 | 0.6% | Jul 9, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in vCita Online Booking & S... |
| CVE-2024-37464 | MEDIUM | 4.9 | 0.9% | Jul 9, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in WPZOOM Beaver Builder Ad... |
| CVE-2024-5946 | MEDIUM | 6.4 | 0.3% | Jul 9, 2024 | The Squelch Tabs and Accordions Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘ta... |
| CVE-2024-5632 | MEDIUM | 5.3 | 0.2% | Jul 9, 2024 | Longse NVR (Network Video Recorder) model NVR3608PGE2W, as well as products based on this device, create a WiFi network ... |
| CVE-2024-5631 | MEDIUM | 6 | 0.2% | Jul 9, 2024 | Longse NVR (Network Video Recorder) model NVR3608PGE2W, as well as products based on this device, are transmitting user'... |
| CVE-2024-4862 | MEDIUM | 5.4 | 0.5% | Jul 9, 2024 | The WPBITS Addons For Elementor Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via sever... |
| CVE-2024-37442 | MEDIUM | 5.5 | 0.4% | Jul 9, 2024 | Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in Phot... |
| CVE-2024-37437 | MEDIUM | 5.4 | 0.3% | Jul 9, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Elementor Elemento... |
| CVE-2024-37430 | MEDIUM | 5.3 | 0.4% | Jul 9, 2024 | Authentication Bypass by Spoofing vulnerability in patreon Patreon WordPress patreon-connect.This issue affects Patreon ... |
| CVE-2024-37224 | MEDIUM | 6.5 | 0.6% | Jul 9, 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in smartypants SP Project &... |
| CVE-2024-6168 | MEDIUM | 4.3 | 0.2% | Jul 9, 2024 | The Just Custom Fields plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu... |
| CVE-2024-6167 | MEDIUM | 4.3 | 0.3% | Jul 9, 2024 | The Just Custom Fields plugin for WordPress is vulnerable to unauthorized access of functionality due to a missing capab... |
| CVE-2024-5993 | MEDIUM | 5.4 | 0.5% | Jul 9, 2024 | The Cliengo – Chatbot plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit... |
| CVE-2024-5992 | MEDIUM | 6.5 | 0.5% | Jul 9, 2024 | The Cliengo – Chatbot plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit... |
| CVE-2024-5937 | MEDIUM | 6.4 | 0.3% | Jul 9, 2024 | The Simple Alert Boxes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Alert shortcod... |
| CVE-2024-5856 | MEDIUM | 4.3 | 0.4% | Jul 9, 2024 | The Comment Images Reloaded plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability ... |
| CVE-2024-5810 | MEDIUM | 5.3 | 0.4% | Jul 9, 2024 | The WP2Speed Faster – Optimize PageSpeed Insights Score 90-100 plugin for WordPress is vulnerable to unauthorized access... |
| CVE-2024-5704 | MEDIUM | 4.3 | 0.4% | Jul 9, 2024 | The XPlainer – WooCommerce Product FAQ [WooCommerce Accordion FAQ Plugin plugin for WordPress is vulnerable to unauthori... |
| CVE-2024-5669 | MEDIUM | 6.4 | 0.4% | Jul 9, 2024 | The XPlainer – WooCommerce Product FAQ [WooCommerce Accordion FAQ Plugin] plugin for WordPress is vulnerable to unauthor... |
| CVE-2024-5648 | MEDIUM | 5.4 | 0.5% | Jul 9, 2024 | The LearnDash LMS – Reports plugin for WordPress is vulnerable to unauthorized modification of data due to a missing cap... |
| CVE-2024-5600 | MEDIUM | 5.4 | 0.3% | Jul 9, 2024 | The SCSS Happy Compiler – Compile SCSS to CSS & Automatic Enqueue plugin for WordPress is vulnerable to Stored Cross-Sit... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now