2024 CVE Vulnerabilities

39,228 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-8444MEDIUM5.4The Download Manager WordPress plugin before 3.3.00 doesn't sanitize some of it's shortcode parameters, leading to cross...
CVE-2024-10223MEDIUM6.4The WP Team – WordPress Team Member Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plu...
CVE-2024-10108HIGH7.2The WPAdverts – Classifieds Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ad...
CVE-2024-8871MEDIUM6.1The Pricing Tables WordPress Plugin – Easy Pricing Tables plugin for WordPress is vulnerable to Reflected Cross-Site Scr...
CVE-2024-10399MEDIUM4.3The Download Monitor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability...
CVE-2024-9886MEDIUM6.4The WP Baidu Map plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'baidu_map' shortcod...
CVE-2024-9885MEDIUM6.4The Widget or Sidebar Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'side...
CVE-2024-9884MEDIUM6.4The T(-) Countdown plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'tminus' shortcode...
CVE-2024-9846HIGH7.3The The Enable Shortcodes inside Widgets,Comments and Experts plugin for WordPress is vulnerable to arbitrary shortcode ...
CVE-2024-8792MEDIUM6.1The Subscribe to Comments plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_que...
CVE-2024-8627MEDIUM5.4The Ultimate TinyMCE plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'field' shortcode in all ...
CVE-2024-10509CRITICAL9.8A vulnerability, which was classified as critical, has been found in Codezips Online Institute Management System 1.0. Th...
CVE-2024-10507CRITICAL9.8A vulnerability classified as critical was found in Codezips Free Exam Hall Seating Management System 1.0. This vulnerab...
CVE-2024-10506HIGH7.2A vulnerability classified as critical has been found in code-projects Blood Bank System 1.0. This affects an unknown pa...
CVE-2024-10505HIGH7.2A vulnerability was found in wuzhicms 4.1.0. It has been classified as critical. Affected is the function add/edit of th...
CVE-2024-10503MEDIUM6.1A vulnerability was found in Klokan MapTiler tileserver-gl 2.3.1 and classified as problematic. This issue affects some ...
CVE-2024-10502HIGH8.8A vulnerability has been found in ESAFENET CDG 5 and classified as critical. This vulnerability affects the function get...
CVE-2024-10501HIGH8.8A vulnerability, which was classified as critical, was found in ESAFENET CDG 5. This affects the function findById of th...
CVE-2024-10500HIGH8.8A vulnerability, which was classified as critical, has been found in ESAFENET CDG 5. Affected by this issue is some unkn...
CVE-2024-51568CRITICAL9.8CyberPanel (aka Cyber Panel) before 2.3.5 allows Command Injection via completePath in the ProcessUtilities.outputExecut...
CVE-2024-51567CRITICAL9.8upgrademysqlstatus in databases/views.py in CyberPanel (aka Cyber Panel) before 5b08cd6 allows remote attackers to bypas...
CVE-2024-51378CRITICAL9.8getresetstatus in dns/views.py and ftp/views.py in CyberPanel (aka Cyber Panel) before 1c0c6cb allows remote attackers t...
CVE-2024-50348MEDIUM5.4InstantCMS is a free and open source content management system. In photo upload function in the photo album page there i...
CVE-2024-9997HIGH7.8A maliciously crafted DWG file when parsed in acdb25.dll through Autodesk AutoCAD can force a Memory Corruption vulnerab...
CVE-2024-9996HIGH7.8A maliciously crafted DWG file, when parsed in acdb25.dll through Autodesk AutoCAD, may force an Out-of-Bounds Write vul...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now