2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-4672 | MEDIUM | 6.1 | 0.7% | May 14, 2024 | A vulnerability classified as problematic was found in Campcodes Complete Web-Based School Management System 1.0. Affect... |
| CVE-2024-4630 | MEDIUM | 6.4 | 0.4% | May 14, 2024 | The Starter Templates — Elementor, WordPress & Beaver Builder Templates plugin for WordPress is vulnerable to Stored Cro... |
| CVE-2024-4606 | MEDIUM | 5.4 | 0.3% | May 14, 2024 | Deserialization of Untrusted Data vulnerability in BdThemes Ultimate Store Kit Elementor Addons.This issue affects Ultim... |
| CVE-2024-4597 | MEDIUM | 6.5 | 0.3% | May 14, 2024 | An issue has been discovered in GitLab EE affecting all versions from 16.7 before 16.9.7, all versions starting from 16.... |
| CVE-2024-4574 | MEDIUM | 6.4 | 0.6% | May 14, 2024 | The Graphina – Elementor Charts and Graphs plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multipl... |
| CVE-2024-4567 | MEDIUM | 5.4 | 0.4% | May 14, 2024 | The Themify Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's themify_button... |
| CVE-2024-4539 | MEDIUM | 6.5 | 0.8% | May 14, 2024 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.4 prior to 16.9.7, starting from 16... |
| CVE-2024-4490 | MEDIUM | 6.4 | 0.5% | May 14, 2024 | The Elegant Themes Divi theme, Extra theme, and Divi Page Builder plugin for WordPress are vulnerable to DOM-Based Store... |
| CVE-2024-4487 | MEDIUM | 5.4 | 0.4% | May 14, 2024 | The Blocksy Companion plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG uploads in versions up t... |
| CVE-2024-4481 | MEDIUM | 5.4 | 0.3% | May 14, 2024 | The Gutenberg Blocks with AI by Kadence WP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'li... |
| CVE-2024-4463 | MEDIUM | 4.3 | 0.2% | May 14, 2024 | The Squelch Tabs and Accordions Shortcodes plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versi... |
| CVE-2024-4449 | MEDIUM | 5.4 | 0.3% | May 14, 2024 | The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress... |
| CVE-2024-4448 | MEDIUM | 6.4 | 0.5% | May 14, 2024 | The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress... |
| CVE-2024-4446 | MEDIUM | 6.4 | 0.4% | May 14, 2024 | The Content Views – Post Grid & Filter, Recent Posts, Category Posts, & More (Gutenberg Blocks and Shortcode) plugin for... |
| CVE-2024-4444 | MEDIUM | 6.5 | 0.7% | May 14, 2024 | The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to bypass to user registration in versions up t... |
| CVE-2024-4430 | MEDIUM | 5.4 | 0.5% | May 14, 2024 | The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ph... |
| CVE-2024-4425 | MEDIUM | 5.4 | 0.4% | May 14, 2024 | The access control in CemiPark software stores integration (e.g. FTP or SIP) credentials in plain-text. An attacker who ... |
| CVE-2024-4424 | MEDIUM | 6.1 | 0.4% | May 14, 2024 | The access control in CemiPark software does not properly validate user-entered data, which allows the stored cross-site... |
| CVE-2024-4417 | MEDIUM | 4.4 | 0.4% | May 14, 2024 | The Falang multilanguage for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin setti... |
| CVE-2024-4411 | MEDIUM | 6.4 | 0.4% | May 14, 2024 | The Mihdan: Yandex Turbo Feed plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortco... |
| CVE-2024-4398 | MEDIUM | 6.4 | 0.5% | May 14, 2024 | The HTML5 Audio Player- Best WordPress Audio Player Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scrip... |
| CVE-2024-4386 | MEDIUM | 6.4 | 0.4% | May 14, 2024 | The Gallery Block (Meow Gallery) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘data_atts’ p... |
| CVE-2024-4383 | MEDIUM | 5.4 | 0.4% | May 14, 2024 | The Simple Membership plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'swpm_paypal_su... |
| CVE-2024-4339 | MEDIUM | 5.4 | 0.3% | May 14, 2024 | The Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Ecommerce Slider) plugin for WordPress is ... |
| CVE-2024-4335 | MEDIUM | 5.4 | 0.4% | May 14, 2024 | The Rank Math SEO with AI Best SEO Tools plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘text... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now