2024 CVE Vulnerabilities

39,227 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-3681MEDIUM6.1The Interactive World Maps plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the search (s) param...
CVE-2024-3677MEDIUM6.4The Ultimate 410 Gone Status Code plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 410 entries ...
CVE-2024-3675MEDIUM6.4The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi...
CVE-2024-3674MEDIUM6.4The Inline Google Spreadsheet Viewer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ...
CVE-2024-3670MEDIUM6.4The Leaflet Maps Marker (Google Maps, OpenStreetMap, Bing Maps) plugin for WordPress is vulnerable to Stored Cross-Site ...
CVE-2024-3650MEDIUM5.4The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Accordi...
CVE-2024-3649MEDIUM5.3The Contact Form by WPForms – Drag & Drop Form Builder for WordPress plugin for WordPress is vulnerable to price manipul...
CVE-2024-3647MEDIUM6.4The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's post...
CVE-2024-3607MEDIUM4.3The PropertyHive plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on th...
CVE-2024-3606MEDIUM4.3The ProfileGrid – User Profiles, Memberships, Groups and Communities plugin for WordPress is vulnerable to unauthorized ...
CVE-2024-3601MEDIUM5.3The Poll Maker – Best WordPress Poll Plugin plugin for WordPress is vulnerable to unauthorized access of data due to a m...
CVE-2024-3599MEDIUM5.3The WP Cookie Consent ( for GDPR, CCPA & ePrivacy ) plugin for WordPress is vulnerable to unauthorized loss of data due ...
CVE-2024-3588MEDIUM5.4The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Countdo...
CVE-2024-3585MEDIUM5.3The Send PDF for Contact Form 7 plugin for WordPress is vulnerable to unauthorized access of form submissions due to a m...
CVE-2024-3581MEDIUM4.3The MaxGalleria plugin for WordPress is vulnerable to unauthorized image upload due to a missing capability check on the...
CVE-2024-3554MEDIUM5.4The All in One SEO – Best WordPress SEO Plugin – Easily Improve SEO Rankings & Increase Traffic plugin for WordPress is ...
CVE-2024-3553MEDIUM6.5The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to unauthorized modification of ...
CVE-2024-3550MEDIUM5.4The WP Shortcodes Plugin — Shortcodes Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
CVE-2024-3546MEDIUM4.3The WordPress Backup & Migration plugin for WordPress is vulnerable to unauthorized access of data due to a missing capa...
CVE-2024-3520MEDIUM4.3The Country State City Dropdown CF7 plugin for WordPress is vulnerable to unauthorized modification of data due to a mis...
CVE-2024-3517MEDIUM5.4The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ...
CVE-2024-3489MEDIUM5.4The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the Countdow...
CVE-2024-3473MEDIUM6.1The Header Footer Code Manager Pro plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the message ...
CVE-2024-3341MEDIUM5.4The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ...
CVE-2024-3340MEDIUM5.4The Colibri Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'colibri-gal...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now