2024 CVE Vulnerabilities
39,256 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-11502 | MEDIUM | 5.4 | 0.3% | May 15, 2025 | The Planning Center Online Giving WordPress plugin through 1.0.0 does not validate and escape some of its shortcode attr... |
| CVE-2024-11373 | MEDIUM | 4.3 | 0.2% | May 15, 2025 | The Connexion Logs WordPress plugin through 3.0.2 does not have CSRF check in place when updating its settings, which co... |
| CVE-2024-11372 | HIGH | 7.2 | 0.5% | May 15, 2025 | The Connexion Logs WordPress plugin through 3.0.2 does not sanitize and escape a parameter before using it in a SQL stat... |
| CVE-2024-11269 | HIGH | 7.2 | 0.5% | May 15, 2025 | The AHAthat Plugin WordPress plugin through 1.6 does not sanitize and escape a parameter before using it in a SQL statem... |
| CVE-2024-11267 | HIGH | 8.8 | 0.5% | May 15, 2025 | The JSP Store Locator WordPress plugin through 1.0 does not sanitize and escape a parameter before using it in a SQL sta... |
| CVE-2024-11266 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Geocache Stat Bar Widget WordPress plugin through 0.911 does not sanitise and escape some of its settings, which cou... |
| CVE-2024-11221 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Full Screen (Page) Background Image Slideshow WordPress plugin through 1.1 does not sanitise and escape some of its ... |
| CVE-2024-11190 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The jwp-a11y WordPress plugin through 4.1.7 does not sanitise and escape some of its settings, which could allow high pr... |
| CVE-2024-11189 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Social Share And Social Locker WordPress plugin before 1.4.2 does not sanitise and escape some of its settings, whi... |
| CVE-2024-11141 | MEDIUM | 6.1 | 0.1% | May 15, 2025 | The Sailthru Triggermail WordPress plugin through 1.1 does not sanitise and escape some of its settings and is missing C... |
| CVE-2024-11140 | LOW | 3.5 | 0.3% | May 15, 2025 | The Real WP Shop Lite Ajax eCommerce Shopping Cart WordPress plugin through 2.0.8 does not sanitise and escape some of i... |
| CVE-2024-11109 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The WP Google Review Slider WordPress plugin before 15.6 does not sanitise and escape some of its settings, which could ... |
| CVE-2024-10818 | MEDIUM | 5.4 | 0.3% | May 15, 2025 | The JSFiddle Shortcode WordPress plugin before 1.1.3 does not validate and escape some of its shortcode attributes befor... |
| CVE-2024-10677 | MEDIUM | 4.3 | 0.2% | May 15, 2025 | The BTEV WordPress plugin through 2.0.2 does not have CSRF check in place when updating its settings, which could allow ... |
| CVE-2024-10639 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Auto Prune Posts WordPress plugin before 3.0.0 does not sanitise and escape some of its settings, which could allow ... |
| CVE-2024-10634 | MEDIUM | 4.3 | 0.2% | May 15, 2025 | The Nokaut Offers Box WordPress plugin through 1.4.0 does not have CSRF check in place when updating its settings, which... |
| CVE-2024-10632 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Nokaut Offers Box WordPress plugin through 1.4.0 does not sanitize and escape some of its settings, which could allo... |
| CVE-2024-10631 | MEDIUM | 6.5 | 0.3% | May 15, 2025 | The Countdown Timer for WordPress Block Editor WordPress plugin through 1.0.5 does not validate and escape some of its b... |
| CVE-2024-10504 | MEDIUM | 5.4 | 0.3% | May 15, 2025 | The Contact Form, Survey, Quiz & Popup Form Builder WordPress plugin before 1.7.1 does not sanitise and escape some par... |
| CVE-2024-10475 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Responsive Contact Form Builder & Lead Generation Plugin WordPress plugin before 1.9.8 does not sanitise and escape ... |
| CVE-2024-10362 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Social Media Share Buttons & Social Sharing Icons WordPress plugin before 2.9.1 does not sanitize and escape some of... |
| CVE-2024-10149 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Social Slider Feed WordPress plugin before 2.2.9 does not sanitise and escape some of its settings, which could allo... |
| CVE-2024-10145 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Hubbub Lite WordPress plugin before 1.34.4 does not sanitise and escape some of its settings, which could allow hig... |
| CVE-2024-10144 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The Photo Gallery, Images, Slider in Rbs Image Gallery WordPress plugin before 3.2.22 does not sanitise and escape some ... |
| CVE-2024-10143 | MEDIUM | 4.8 | 0.3% | May 15, 2025 | The MB Custom Post Types & Custom Taxonomies WordPress plugin before 2.7.7 does not sanitise and escape some of its sett... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now