2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-3338 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Colibri Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via image alt data parameter ... |
| CVE-2024-3337 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Colibri Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'colibri_bre... |
| CVE-2024-3312 | MEDIUM | 5.3 | 0.6% | May 2, 2024 | The Easy Custom Auto Excerpt plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to,... |
| CVE-2024-3308 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Im... |
| CVE-2024-3307 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Co... |
| CVE-2024-3295 | MEDIUM | 6.5 | 0.9% | May 2, 2024 | The User Registration – Custom Registration Form, Login Form, and User Profile WordPress Plugin plugin for WordPress is ... |
| CVE-2024-3287 | MEDIUM | 5.3 | 0.6% | May 2, 2024 | The SmartCrawl WordPress SEO checker, SEO analyzer, SEO optimizer plugin for WordPress is vulnerable to unauthorized ld+... |
| CVE-2024-3275 | MEDIUM | 4.3 | 0.5% | May 2, 2024 | The eRoom – Zoom Meetings & Webinars plugin for WordPress is vulnerable to Sensitive Information Exposure in all version... |
| CVE-2024-3233 | MEDIUM | 4.3 | 0.4% | May 2, 2024 | The Ivory Search – WordPress Search Plugin plugin for WordPress is vulnerable to unauthorized modification of data due t... |
| CVE-2024-3215 | MEDIUM | 4.3 | 0.3% | May 2, 2024 | The Paid Memberships Pro – Content Restriction, User Registration, & Paid Subscriptions plugin for WordPress is vulnerab... |
| CVE-2024-3206 | MEDIUM | 4.3 | 0.6% | May 2, 2024 | The Different Menu in Different Pages – Control Menu Visibility (All in One) plugin for WordPress is vulnerable to unaut... |
| CVE-2024-3199 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The The Plus Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the countdown wi... |
| CVE-2024-3197 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The The Plus Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via custom attribute... |
| CVE-2024-3161 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Jeg Elementor Kit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the countdown widget's attri... |
| CVE-2024-3107 | MEDIUM | 4.3 | 0.6% | May 2, 2024 | The Spectra – WordPress Gutenberg Blocks plugin for WordPress is vulnerable to Path Traversal in versions up to, and inc... |
| CVE-2024-3074 | MEDIUM | 6.4 | 0.5% | May 2, 2024 | The Elementor ImageBox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the image box widget in all... |
| CVE-2024-3071 | MEDIUM | 4.3 | 0.4% | May 2, 2024 | The ACF On-The-Go plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability ch... |
| CVE-2024-3045 | MEDIUM | 6.1 | 0.6% | May 2, 2024 | The PDF Invoices & Packing Slips for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via s... |
| CVE-2024-3023 | MEDIUM | 4.4 | 0.4% | May 2, 2024 | The AnnounceKit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up ... |
| CVE-2024-3021 | MEDIUM | 4.4 | 0.5% | May 2, 2024 | The Mhr Post Ticker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Header Title value in all ... |
| CVE-2024-33949 | MEDIUM | 6.5 | 0.3% | May 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vark Min and Max P... |
| CVE-2024-33948 | MEDIUM | 5.5 | 0.3% | May 2, 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pixel Industry Twe... |
| CVE-2024-2967 | MEDIUM | 4.4 | 0.5% | May 2, 2024 | The Guest posting / Frontend Posting wordpress plugin – WP Front User Submit / Front Editor plugin for WordPress is vuln... |
| CVE-2024-2960 | MEDIUM | 4.3 | 0.2% | May 2, 2024 | The SVS Pricing Tables plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu... |
| CVE-2024-2959 | MEDIUM | 4.3 | 0.2% | May 2, 2024 | The SVS Pricing Tables plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now