2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-5193 | MEDIUM | 5.5 | 0.7% | May 22, 2024 | A security vulnerability has been detected in Ritlabs TinyWeb Server 1.94. This vulnerability affects unknown code of th... |
| CVE-2024-4262 | MEDIUM | 6.4 | 0.3% | May 22, 2024 | The Piotnet Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets ... |
| CVE-2024-5031 | MEDIUM | 6.4 | 0.3% | May 22, 2024 | The Memberpress plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions up to, and inclu... |
| CVE-2024-5025 | MEDIUM | 5.4 | 0.3% | May 22, 2024 | The Memberpress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘arglist’ parameter in all ver... |
| CVE-2024-4896 | MEDIUM | 5.4 | 0.3% | May 22, 2024 | The WPB Elementor Addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ parameter in al... |
| CVE-2024-4362 | MEDIUM | 5.4 | 0.4% | May 22, 2024 | The SiteOrigin Widgets Bundle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'siteor... |
| CVE-2024-2036 | MEDIUM | 4.3 | 0.4% | May 22, 2024 | The ApplyOnline – Application Form Builder and Manager plugin for WordPress is vulnerable to unauthorized access of data... |
| CVE-2024-3671 | MEDIUM | 6.4 | 0.3% | May 22, 2024 | The Print-O-Matic plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'print-me' shortcod... |
| CVE-2024-3666 | MEDIUM | 6.4 | 0.3% | May 22, 2024 | The Opal Estate Pro – Property Management and Submission plugin for WordPress is vulnerable to Stored Cross-Site Scripti... |
| CVE-2024-2953 | MEDIUM | 4.8 | 0.3% | May 22, 2024 | The LuckyWP Table of Contents plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple parameters ... |
| CVE-2024-2163 | MEDIUM | 6.4 | 0.3% | May 22, 2024 | The Ninja Beaver Add-ons for Beaver Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl... |
| CVE-2024-2119 | MEDIUM | 6.1 | 0.4% | May 22, 2024 | The LuckyWP Table of Contents plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the attrs paramet... |
| CVE-2024-0632 | MEDIUM | 4.4 | 0.3% | May 22, 2024 | The Automatic Translator with Google Translate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the... |
| CVE-2024-3927 | MEDIUM | 5.3 | 0.4% | May 22, 2024 | The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for W... |
| CVE-2024-3663 | MEDIUM | 4.3 | 0.3% | May 22, 2024 | The WP Scraper plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the wp_scr... |
| CVE-2024-3198 | MEDIUM | 6.4 | 0.3% | May 22, 2024 | The WP Font Awesome Share Icons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wp... |
| CVE-2024-2088 | MEDIUM | 6.5 | 0.3% | May 22, 2024 | The NextScripts: Social Networks Auto-Poster plugin for WordPress is vulnerable to Sensitive Information Exposure in all... |
| CVE-2024-1762 | MEDIUM | 6.1 | 0.4% | May 22, 2024 | The NextScripts: Social Networks Auto-Poster plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the H... |
| CVE-2024-1446 | MEDIUM | 4.3 | 0.2% | May 22, 2024 | The NextScripts: Social Networks Auto-Poster plugin for WordPress is vulnerable to Cross-Site Request Forgery in all ver... |
| CVE-2024-5092 | MEDIUM | 5.4 | 0.3% | May 22, 2024 | The Elegant Addons for elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Swit... |
| CVE-2024-4971 | MEDIUM | 5.4 | 0.3% | May 22, 2024 | The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘id’ ... |
| CVE-2024-3611 | MEDIUM | 6.4 | 0.3% | May 22, 2024 | The Toolbar Extras for Elementor & More – WordPress Admin Bar Enhanced plugin for WordPress is vulnerable to Stored Cros... |
| CVE-2024-3066 | MEDIUM | 5.4 | 0.3% | May 22, 2024 | The Elegant Addons for elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widg... |
| CVE-2024-35162 | MEDIUM | 6.5 | 0.7% | May 22, 2024 | Path traversal vulnerability exists in Download Plugins and Themes from Dashboard versions prior to 1.8.6. If this vulne... |
| CVE-2024-31340 | MEDIUM | 4.8 | 0.2% | May 22, 2024 | TP-Link Tether versions prior to 4.5.13 and TP-Link Tapo versions prior to 3.3.6 do not properly validate certificates, ... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now