2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-12650MEDIUM5.4An attacker with low privileges can manipulate the requested memory size, causing the application to use an invalid memo...
CVE-2024-11153MEDIUM5.3The Content Control – The Ultimate Content Restriction Plugin! Restrict Content, Create Conditional Blocks & More plugin...
CVE-2024-5667MEDIUM6.4Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled Featherlight.js Ja...
CVE-2024-13839MEDIUM6.1The Staff Directory Plugin: Company Directory plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due t...
CVE-2024-13815MEDIUM6.5The The Listingo theme for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including...
CVE-2024-13811MEDIUM4.3The Lafka - Multi Store Burger - Pizza & Food Delivery WooCommerce Theme theme for WordPress is vulnerable to unauthoriz...
CVE-2024-13810MEDIUM4.3The Zass - WooCommerce Theme for Handmade Artists and Artisans theme for WordPress is vulnerable to unauthorized access ...
CVE-2024-13809MEDIUM6.5The Hero Slider - WordPress Slider Plugin plugin for WordPress is vulnerable to SQL Injection via several parameters in ...
CVE-2024-13780MEDIUM6.5The Hero Mega Menu - Responsive WordPress Menu Plugin plugin for WordPress is vulnerable to arbitrary file deletion due ...
CVE-2024-13779MEDIUM6.1The Hero Mega Menu - Responsive WordPress Menu Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripti...
CVE-2024-13778MEDIUM6.5The Hero Mega Menu - Responsive WordPress Menu Plugin plugin for WordPress is vulnerable to SQL Injection via several fu...
CVE-2024-13757MEDIUM5.4The Master Slider – Responsive Touch Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl...
CVE-2024-13747MEDIUM4.3The WooMail - WooCommerce Email Customizer plugin for WordPress is vulnerable to unauthorized loss of data due to a miss...
CVE-2024-12815MEDIUM6.4The Point Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'point_maker' shortco...
CVE-2024-11731MEDIUM5.4The Master Slider – Responsive Touch Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl...
CVE-2024-8682MEDIUM5.3The JNews - WordPress Newspaper Magazine Blog AMP Theme theme for WordPress is vulnerable to unauthorized user registrat...
CVE-2024-13866MEDIUM6.4The Simple Notification plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and inc...
CVE-2024-13827MEDIUM6.1The Razorpay Subscription Button Elementor Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting d...
CVE-2024-13350MEDIUM5.4The SearchIQ – The Search Solution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 's...
CVE-2024-0141MEDIUM6.8NVIDIA Hopper HGX for 8-GPU contains a vulnerability in the GPU vBIOS that may allow a malicious actor with tenant level...
CVE-2024-9135MEDIUM5.3On affected platforms running Arista EOS with BGP Link State configured, BGP peer flap can cause the BGP agent to leak m...
CVE-2024-8000MEDIUM5.3On affected platforms running Arista EOS with 802.1X configured, certain conditions may occur where a dynamic ACL is rec...
CVE-2024-9618MEDIUM5.4The Master Addons – Elementor Addons with White Label, Free Widgets, Hover Effects, Conditions, & Animations plugin for ...
CVE-2024-13724MEDIUM4.3The Wallet System for WooCommerce – Wallet, Wallet Cashback, Refunds, Partial Payment, Wallet Restriction plugin for Wor...
CVE-2024-13682MEDIUM4.3The Wallet System for WooCommerce – Wallet, Wallet Cashback, Refunds, Partial Payment, Wallet Restriction plugin for Wor...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now