2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-3523 | HIGH | 8.8 | 0.7% | Apr 9, 2024 | A vulnerability classified as critical was found in Campcodes Online Event Management System 1.0. This vulnerability aff... |
| CVE-2024-3522 | HIGH | 8.8 | 0.7% | Apr 9, 2024 | A vulnerability classified as critical has been found in Campcodes Online Event Management System 1.0. This affects an u... |
| CVE-2024-3313 | HIGH | 8.6 | 0.3% | Apr 9, 2024 | SUBNET Solutions Inc. has identified vulnerabilities in third-party components used in PowerSYSTEM Server 2021 and Subs... |
| CVE-2024-3446 | HIGH | 8.2 | 0.3% | Apr 9, 2024 | A double free vulnerability was found in QEMU virtio devices (virtio-gpu, virtio-serial-bus, virtio-crypto), where the m... |
| CVE-2024-3213 | HIGH | 8.2 | 0.8% | Apr 9, 2024 | The Relevanssi – A Better Search plugin for WordPress is vulnerable to unauthorized modification of data due to a missin... |
| CVE-2024-2871 | HIGH | 7.7 | 0.5% | Apr 9, 2024 | The Media Library Assistant plugin for WordPress is vulnerable to SQL Injection via the plugin's shortcode(s) in all ver... |
| CVE-2024-2693 | HIGH | 8.8 | 0.8% | Apr 9, 2024 | The Link Whisper Free plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 0... |
| CVE-2024-2501 | HIGH | 7.5 | 0.9% | Apr 9, 2024 | The Hubbub Lite – Fast, Reliable Social Sharing Buttons plugin for WordPress is vulnerable to PHP Object Injection in al... |
| CVE-2024-2344 | HIGH | 7.2 | 0.8% | Apr 9, 2024 | The Avada theme for WordPress is vulnerable to SQL Injection via the 'entry' parameter in all versions up to, and includ... |
| CVE-2024-2342 | HIGH | 8.8 | 0.6% | Apr 9, 2024 | The Appointment Booking Calendar — Simply Schedule Appointments Booking Plugin plugin for WordPress is vulnerable to SQL... |
| CVE-2024-2125 | HIGH | 8.8 | 0.4% | Apr 9, 2024 | The EnvíaloSimple: Email Marketing y Newsletters plugin for WordPress is vulnerable to Cross-Site Request Forgery in all... |
| CVE-2024-2112 | HIGH | 7.5 | 0.7% | Apr 9, 2024 | The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is vulnerable to Sensiti... |
| CVE-2024-2018 | HIGH | 8.8 | 0.9% | Apr 9, 2024 | The WP Activity Log Premium plugin for WordPress is vulnerable to SQL Injection via the entry->roles parameter in all ve... |
| CVE-2024-24245 | HIGH | 7.8 | 0.2% | Apr 9, 2024 | An issue in Canimaan Software LTD ClamXAV v3.1.2 through v3.6.1 and fixed in v.3.6.2 allows a local attacker to escalate... |
| CVE-2024-1991 | HIGH | 8.8 | 0.9% | Apr 9, 2024 | The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vu... |
| CVE-2024-1990 | HIGH | 8.8 | 0.8% | Apr 9, 2024 | The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vu... |
| CVE-2024-1934 | HIGH | 7.5 | 0.7% | Apr 9, 2024 | The WP Compress – Image Optimizer plugin for WordPress is vulnerable to unauthorized modification of data due to a missi... |
| CVE-2024-1893 | HIGH | 8.8 | 0.8% | Apr 9, 2024 | The Easy Property Listings plugin for WordPress is vulnerable to time-based SQL Injection via the ‘property_status’ shor... |
| CVE-2024-1812 | HIGH | 7.2 | 0.5% | Apr 9, 2024 | The Everest Forms plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including... |
| CVE-2024-1792 | HIGH | 7.5 | 0.8% | Apr 9, 2024 | The CMB2 plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 2.10.1 via des... |
| CVE-2024-1774 | HIGH | 7.2 | 0.5% | Apr 9, 2024 | The Customily Product Personalizer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via user cookies in... |
| CVE-2024-1315 | HIGH | 8.8 | 0.5% | Apr 9, 2024 | The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to Cross-Site Req... |
| CVE-2024-1308 | HIGH | 7.5 | 0.7% | Apr 9, 2024 | The WooCommerce Cloak Affiliate Links plugin for WordPress is vulnerable to unauthorized modification of data due to a m... |
| CVE-2024-0952 | HIGH | 7.2 | 0.9% | Apr 9, 2024 | The WP ERP | Complete HR solution with recruitment & job listings | WooCommerce CRM & Accounting plugin for WordPress is... |
| CVE-2024-31507 | HIGH | 8.6 | 0.5% | Apr 9, 2024 | Sourcecodester Online Graduate Tracer System v1.0 is vulnerable to SQL Injection via the "request" parameter in admin/fe... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now