2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-24710 | MEDIUM | 4.3 | 0.3% | May 3, 2024 | Missing Authorization vulnerability in SlickRemix Feed Them Social.This issue affects Feed Them Social: from n/a through... |
| CVE-2024-33947 | MEDIUM | 6.1 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metagauss Registra... |
| CVE-2024-33945 | MEDIUM | 6.5 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in solverwp.Com Elebl... |
| CVE-2024-33943 | MEDIUM | 5.9 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HappyKite Ultimate... |
| CVE-2024-33940 | MEDIUM | 5.9 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ashan Jay EventON ... |
| CVE-2024-33936 | MEDIUM | 6.5 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Twinpictures Print... |
| CVE-2024-33935 | MEDIUM | 6.5 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pascal Bajorat PB ... |
| CVE-2024-33934 | MEDIUM | 6.5 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Kailey Lampert Min... |
| CVE-2024-33932 | MEDIUM | 6.5 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vinod Dalvi Login ... |
| CVE-2024-33928 | MEDIUM | 6.1 | 0.3% | May 3, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CodeBard CodeBard'... |
| CVE-2024-4439 | MEDIUM | 6.1 | 70.8% | May 3, 2024 | WordPress Core is vulnerable to Stored Cross-Site Scripting via user display names in the Avatar block in various versio... |
| CVE-2024-3703 | MEDIUM | 4.7 | 0.5% | May 3, 2024 | The Carousel Slider WordPress plugin before 2.2.10 does not validate and escape some of its Slide options before outputt... |
| CVE-2024-3692 | MEDIUM | 6.1 | 0.4% | May 3, 2024 | The Gutenverse WordPress plugin before 1.9.1 does not validate the htmlTag option in various of its block before output... |
| CVE-2024-3637 | MEDIUM | 6.1 | 0.5% | May 3, 2024 | The Responsive Contact Form Builder & Lead Generation Plugin WordPress plugin through 1.8.9 does not sanitise and escape... |
| CVE-2024-34408 | MEDIUM | 5.3 | 0.2% | May 3, 2024 | Tencent libpag through 4.3.51 has an integer overflow in DecodeStream::checkEndOfFile() in codec/utils/DecodeStream.cpp ... |
| CVE-2024-34404 | MEDIUM | 6.8 | 0.4% | May 3, 2024 | A vulnerability was discovered in the Alta Recovery Vault feature of Veritas NetBackup before 10.4 and NetBackup Applian... |
| CVE-2024-34403 | MEDIUM | 5.9 | 1.3% | May 3, 2024 | An issue was discovered in uriparser through 0.9.7. ComposeQueryMallocExMm in UriQuery.c has an integer overflow via a l... |
| CVE-2024-34401 | MEDIUM | 6.1 | 0.4% | May 3, 2024 | Savsoft Quiz 6.0 allows stored XSS via the index.php/quiz/insert_quiz/ quiz_name parameter. |
| CVE-2024-30302 | MEDIUM | 5.5 | 0.4% | May 2, 2024 | Acrobat Reader versions 20.005.30539, 23.008.20470 and earlier are affected by a Use After Free vulnerability that could... |
| CVE-2024-4216 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | pgAdmin <= 8.5 is affected by XSS vulnerability in /settings/store API response json payload. This vulnerability allows ... |
| CVE-2024-33394 | MEDIUM | 5.9 | 0.3% | May 2, 2024 | An issue in kubevirt kubevirt v1.2.0 and before allows a local attacker to execute arbitrary code via a crafted command ... |
| CVE-2024-4334 | MEDIUM | 6.4 | 0.6% | May 2, 2024 | The Supreme Modules Lite – Divi Theme, Extra Theme and Divi Builder plugin for WordPress is vulnerable to DOM-Based Cros... |
| CVE-2024-4324 | MEDIUM | 6.4 | 0.4% | May 2, 2024 | The WP Video Lightbox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘width’ parameter in all... |
| CVE-2024-4265 | MEDIUM | 5.4 | 0.6% | May 2, 2024 | The Master Addons – Free Widgets, Hover Effects, Toggle, Conditions, Animations for Elementor plugin for WordPress is vu... |
| CVE-2024-4203 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The Premium Addons Pro for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the maps widg... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now