2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-3681 | MEDIUM | 6.1 | 0.5% | May 2, 2024 | The Interactive World Maps plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the search (s) param... |
| CVE-2024-3677 | MEDIUM | 6.4 | 0.5% | May 2, 2024 | The Ultimate 410 Gone Status Code plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 410 entries ... |
| CVE-2024-3675 | MEDIUM | 6.4 | 0.6% | May 2, 2024 | The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi... |
| CVE-2024-3674 | MEDIUM | 6.4 | 0.4% | May 2, 2024 | The Inline Google Spreadsheet Viewer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ... |
| CVE-2024-3670 | MEDIUM | 6.4 | 0.4% | May 2, 2024 | The Leaflet Maps Marker (Google Maps, OpenStreetMap, Bing Maps) plugin for WordPress is vulnerable to Stored Cross-Site ... |
| CVE-2024-3650 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Accordi... |
| CVE-2024-3649 | MEDIUM | 5.3 | 0.7% | May 2, 2024 | The Contact Form by WPForms – Drag & Drop Form Builder for WordPress plugin for WordPress is vulnerable to price manipul... |
| CVE-2024-3647 | MEDIUM | 6.4 | 0.4% | May 2, 2024 | The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's post... |
| CVE-2024-3607 | MEDIUM | 4.3 | 0.6% | May 2, 2024 | The PropertyHive plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on th... |
| CVE-2024-3606 | MEDIUM | 4.3 | 0.5% | May 2, 2024 | The ProfileGrid – User Profiles, Memberships, Groups and Communities plugin for WordPress is vulnerable to unauthorized ... |
| CVE-2024-3601 | MEDIUM | 5.3 | 0.6% | May 2, 2024 | The Poll Maker – Best WordPress Poll Plugin plugin for WordPress is vulnerable to unauthorized access of data due to a m... |
| CVE-2024-3599 | MEDIUM | 5.3 | 0.5% | May 2, 2024 | The WP Cookie Consent ( for GDPR, CCPA & ePrivacy ) plugin for WordPress is vulnerable to unauthorized loss of data due ... |
| CVE-2024-3588 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Countdo... |
| CVE-2024-3585 | MEDIUM | 5.3 | 0.7% | May 2, 2024 | The Send PDF for Contact Form 7 plugin for WordPress is vulnerable to unauthorized access of form submissions due to a m... |
| CVE-2024-3581 | MEDIUM | 4.3 | 0.6% | May 2, 2024 | The MaxGalleria plugin for WordPress is vulnerable to unauthorized image upload due to a missing capability check on the... |
| CVE-2024-3554 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The All in One SEO – Best WordPress SEO Plugin – Easily Improve SEO Rankings & Increase Traffic plugin for WordPress is ... |
| CVE-2024-3553 | MEDIUM | 6.5 | 0.5% | May 2, 2024 | The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to unauthorized modification of ... |
| CVE-2024-3550 | MEDIUM | 5.4 | 0.6% | May 2, 2024 | The WP Shortcodes Plugin — Shortcodes Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the... |
| CVE-2024-3546 | MEDIUM | 4.3 | 0.5% | May 2, 2024 | The WordPress Backup & Migration plugin for WordPress is vulnerable to unauthorized access of data due to a missing capa... |
| CVE-2024-3520 | MEDIUM | 4.3 | 0.4% | May 2, 2024 | The Country State City Dropdown CF7 plugin for WordPress is vulnerable to unauthorized modification of data due to a mis... |
| CVE-2024-3517 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ... |
| CVE-2024-3489 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the Countdow... |
| CVE-2024-3473 | MEDIUM | 6.1 | 0.5% | May 2, 2024 | The Header Footer Code Manager Pro plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the message ... |
| CVE-2024-3341 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ... |
| CVE-2024-3340 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Colibri Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'colibri-gal... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now