2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-1793 | HIGH | 7.2 | 0.9% | Mar 13, 2024 | The AWeber – Free Sign Up Form and Landing Page Builder Plugin for Lead Generation and Email Newsletter Growth plugin fo... |
| CVE-2024-1772 | HIGH | 8.8 | 1.0% | Mar 13, 2024 | The Play.ht – Make Your Blog Posts Accessible With Text to Speech Audio plugin for WordPress is vulnerable to PHP Object... |
| CVE-2024-1751 | HIGH | 8.8 | 3.1% | Mar 13, 2024 | The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to time-based SQL Injection via ... |
| CVE-2024-1536 | HIGH | 7.4 | 0.5% | Mar 13, 2024 | The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress... |
| CVE-2024-1505 | HIGH | 8.8 | 0.8% | Mar 13, 2024 | The Academy LMS – eLearning and online course solution for WordPress plugin for WordPress is vulnerable to privilege esc... |
| CVE-2024-1311 | HIGH | 8.8 | 1.5% | Mar 13, 2024 | The Brizy – Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validatio... |
| CVE-2024-1203 | HIGH | 8.8 | 0.8% | Mar 13, 2024 | The Conversios – Google Analytics 4 (GA4), Meta Pixel & more Via Google Tag Manager For WooCommerce plugin for WordPress... |
| CVE-2024-0683 | HIGH | 7.5 | 1.2% | Mar 13, 2024 | The Bulgarisation for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to missing capability ch... |
| CVE-2024-0368 | HIGH | 8.6 | 0.8% | Mar 13, 2024 | The Hustle – Email Marketing, Lead Generation, Optins, Popups plugin for WordPress is vulnerable to Sensitive Informatio... |
| CVE-2024-0161 | HIGH | 8.4 | 0.2% | Mar 13, 2024 | Dell PowerEdge Server BIOS and Dell Precision Rack BIOS contain an Improper SMM communication buffer verification vulner... |
| CVE-2024-28684 | HIGH | 8.8 | 0.3% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/module_... |
| CVE-2024-28675 | HIGH | 8.8 | 0.3% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /dede/diy_edit.php |
| CVE-2024-28665 | HIGH | 8.8 | 0.3% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/article... |
| CVE-2024-28432 | HIGH | 8.8 | 0.3% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/article... |
| CVE-2024-28431 | HIGH | 8.8 | 0.3% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/catalog... |
| CVE-2024-2415 | HIGH | 7.8 | 0.7% | Mar 13, 2024 | Command injection vulnerability in Movistar 4G router affecting version ES_WLD71-T1_v2.0.201820. This vulnerability allo... |
| CVE-2024-2414 | HIGH | 8.8 | 0.3% | Mar 13, 2024 | The primary channel is unprotected on Movistar 4G router affecting E version S_WLD71-T1_v2.0.201820. This device has the... |
| CVE-2024-26529 | HIGH | 7.5 | 0.8% | Mar 13, 2024 | An issue in mz-automation libiec61850 v.1.5.3 and before, allows a remote attacker to cause a denial of service (DoS) vi... |
| CVE-2024-2400 | HIGH | 8.8 | 0.7% | Mar 13, 2024 | Use after free in Performance Manager in Google Chrome prior to 122.0.6261.128 allowed a remote attacker to potentially ... |
| CVE-2024-2107 | HIGH | 7.5 | 0.5% | Mar 12, 2024 | The Blossom Spa theme for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including... |
| CVE-2024-24092 | HIGH | 7.8 | 0.3% | Mar 12, 2024 | SQL Injection vulnerability in Code-projects.org Scholars Tracking System 1.0 allows attackers to run arbitrary code via... |
| CVE-2024-23300 | HIGH | 7.8 | 0.3% | Mar 12, 2024 | A use-after-free issue was addressed with improved memory management. This issue is fixed in GarageBand 10.4.11. Process... |
| CVE-2024-28186 | HIGH | 7.1 | 0.6% | Mar 12, 2024 | FreeScout is an open source help desk and shared inbox built with PHP. A vulnerability has been identified in the Free ... |
| CVE-2024-28121 | HIGH | 8.8 | 1.6% | Mar 12, 2024 | stimulus_reflex is a system to extend the capabilities of both Rails and Stimulus by intercepting user interactions and ... |
| CVE-2024-27894 | HIGH | 8.8 | 1.9% | Mar 12, 2024 | The Pulsar Functions Worker includes a capability that permits authenticated users to create functions where the functio... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now