2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-5188 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress... |
| CVE-2024-5038 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The Colibri Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s)... |
| CVE-2024-5259 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The MultiVendorX Marketplace – WooCommerce MultiVendor Marketplace Solution plugin for WordPress is vulnerable to Stored... |
| CVE-2024-5221 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The Qi Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's file uploader in all ve... |
| CVE-2024-5665 | MEDIUM | 4.3 | 0.4% | Jun 6, 2024 | The Login/Signup Popup ( Inline Form + Woocommerce ) plugin for WordPress is vulnerable to unauthorized access of data d... |
| CVE-2024-3049 | MEDIUM | 5.9 | 0.5% | Jun 6, 2024 | A flaw was found in Booth, a cluster ticket manager. If a specially-crafted hash is passed to gcry_md_get_algo_dlen(), i... |
| CVE-2024-5615 | MEDIUM | 5.3 | 0.5% | Jun 6, 2024 | The Open Graph plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including... |
| CVE-2024-5449 | MEDIUM | 4.3 | 0.3% | Jun 6, 2024 | The WP Dark Mode – WordPress Dark Mode Plugin for Improved Accessibility, Dark Theme, Night Mode, and Social Sharing plu... |
| CVE-2024-5162 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The WordPress prettyPhoto plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ parameter in a... |
| CVE-2024-5161 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The Magical Addons For Elementor ( Header Footer Builder, Free Elementor Widgets, Elementor Templates Library ) plugin f... |
| CVE-2024-5152 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The ElementsReady Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘_id’ p... |
| CVE-2024-5141 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The Rotating Tweets (Twitter widget and shortcode) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via... |
| CVE-2024-4707 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The Materialis Companion plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's materialis_c... |
| CVE-2024-4608 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The SellKit – Funnel builder and checkout optimizer for WooCommerce to sell more, faster plugin for WordPress is vulnera... |
| CVE-2024-4459 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The Themesflat Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's w... |
| CVE-2024-4458 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The Themesflat Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting in several widgets... |
| CVE-2024-4364 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The Qi Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's button wi... |
| CVE-2024-4212 | MEDIUM | 5.4 | 0.4% | Jun 6, 2024 | The Themesflat Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's T... |
| CVE-2024-2922 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The Themesflat Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via widget tags in... |
| CVE-2024-1175 | MEDIUM | 5.3 | 0.4% | Jun 6, 2024 | The WP-Recall – Registration, Profile, Commerce & More plugin for WordPress is vulnerable to unauthorized loss of data d... |
| CVE-2024-0972 | MEDIUM | 5.3 | 0.4% | Jun 6, 2024 | The BuddyPress Members Only plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, ... |
| CVE-2024-2017 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The Countdown, Coming Soon, Maintenance – Countdown & Clock plugin for WordPress is vulnerable to unauthorized access du... |
| CVE-2024-5342 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The Simple Image Popup Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'sip... |
| CVE-2024-5224 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The Easy Social Like Box – Popup – Sidebar Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ... |
| CVE-2024-5001 | MEDIUM | 5.4 | 0.3% | Jun 6, 2024 | The Image Hover Effects for Elementor with Lightbox and Flipbox plugin for WordPress is vulnerable to Stored Cross-Site ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now