2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-9373MEDIUM5.4The Elemenda plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up t...
CVE-2024-9366MEDIUM5.4The Easy Menu Manager | WPZest plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in...
CVE-2024-9364MEDIUM4.3The SendGrid for WordPress plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability c...
CVE-2024-9361MEDIUM4.3The Bulk images optimizer: Resize, optimize, convert to webp, rename … plugin for WordPress is vulnerable to unauthorize...
CVE-2024-9350MEDIUM6.1The DPD Baltic Shipping plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'search_value' para...
CVE-2024-8916MEDIUM5.4The Suki Sites Import plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all vers...
CVE-2024-8790MEDIUM6.1The Social Share With Floating Bar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use o...
CVE-2024-8740MEDIUM6.1The GetResponse Forms by Optin Cat plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use o...
CVE-2024-10119CRITICAL9.8The wireless router WRTM326 from SECOM does not properly validate a specific parameter. An unauthenticated remote attack...
CVE-2024-10049MEDIUM6.1The Edit WooCommerce Templates plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘page’ param...
CVE-2024-10040MEDIUM4.3The Infinite-Scroll plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and includin...
CVE-2024-10014MEDIUM5.4The Flat UI Button plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's flatbtn shortcode ...
CVE-2024-9264HIGH8.8The SQL Expressions experimental feature of Grafana allows for the evaluation of `duckdb` queries containing user input....
CVE-2024-10118CRITICAL9.8SECOM WRTR-304GN-304TW-UPSC does not properly filter user input in the specific functionality. Unauthenticated remote at...
CVE-2024-49023MEDIUM5.3Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2024-43596HIGH8.8Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2024-43595HIGH8.8Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2024-43587HIGH8.1Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2024-43580MEDIUM5.4Microsoft Edge (Chromium-based) Spoofing Vulnerability
CVE-2024-43579HIGH8.3Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2024-43578HIGH8.3Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2024-43566CRITICAL9.8Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2024-10093HIGH7.8A vulnerability, which was classified as critical, was found in VSO ConvertXtoDvd 7.0.0.83. Affected is an unknown funct...
CVE-2024-7316MEDIUM5.9Improper Validation of Specified Quantity in Input vulnerability in Mitsubishi Electric CNC Series allows a remote unaut...
CVE-2024-33453HIGH8.1Buffer Overflow vulnerability in esp-idf v.5.1 allows a remote attacker to obtain sensitive information via the external...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now