2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-5193MEDIUM5.5A security vulnerability has been detected in Ritlabs TinyWeb Server 1.94. This vulnerability affects unknown code of th...
CVE-2024-4262MEDIUM6.4The Piotnet Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets ...
CVE-2024-5031MEDIUM6.4The Memberpress plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions up to, and inclu...
CVE-2024-5025MEDIUM5.4The Memberpress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘arglist’ parameter in all ver...
CVE-2024-4896MEDIUM5.4The WPB Elementor Addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ parameter in al...
CVE-2024-4362MEDIUM5.4The SiteOrigin Widgets Bundle plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'siteor...
CVE-2024-2036MEDIUM4.3The ApplyOnline – Application Form Builder and Manager plugin for WordPress is vulnerable to unauthorized access of data...
CVE-2024-3671MEDIUM6.4The Print-O-Matic plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'print-me' shortcod...
CVE-2024-3666MEDIUM6.4The Opal Estate Pro – Property Management and Submission plugin for WordPress is vulnerable to Stored Cross-Site Scripti...
CVE-2024-2953MEDIUM4.8The LuckyWP Table of Contents plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple parameters ...
CVE-2024-2163MEDIUM6.4The Ninja Beaver Add-ons for Beaver Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl...
CVE-2024-2119MEDIUM6.1The LuckyWP Table of Contents plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the attrs paramet...
CVE-2024-0632MEDIUM4.4The Automatic Translator with Google Translate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
CVE-2024-3927MEDIUM5.3The Element Pack Elementor Addons (Header Footer, Template Library, Dynamic Grid & Carousel, Remote Arrows) plugin for W...
CVE-2024-3663MEDIUM4.3The WP Scraper plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the wp_scr...
CVE-2024-3198MEDIUM6.4The WP Font Awesome Share Icons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wp...
CVE-2024-2088MEDIUM6.5The NextScripts: Social Networks Auto-Poster plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
CVE-2024-1762MEDIUM6.1The NextScripts: Social Networks Auto-Poster plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the H...
CVE-2024-1446MEDIUM4.3The NextScripts: Social Networks Auto-Poster plugin for WordPress is vulnerable to Cross-Site Request Forgery in all ver...
CVE-2024-5092MEDIUM5.4The Elegant Addons for elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Swit...
CVE-2024-4971MEDIUM5.4The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘id’ ...
CVE-2024-3611MEDIUM6.4The Toolbar Extras for Elementor & More – WordPress Admin Bar Enhanced plugin for WordPress is vulnerable to Stored Cros...
CVE-2024-3066MEDIUM5.4The Elegant Addons for elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widg...
CVE-2024-35162MEDIUM6.5Path traversal vulnerability exists in Download Plugins and Themes from Dashboard versions prior to 1.8.6. If this vulne...
CVE-2024-31340MEDIUM4.8TP-Link Tether versions prior to 4.5.13 and TP-Link Tapo versions prior to 3.3.6 do not properly validate certificates, ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now