2024 CVE Vulnerabilities

39,228 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-2959MEDIUM4.3The SVS Pricing Tables plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu...
CVE-2024-2958MEDIUM4.8The SVS Pricing Tables plugin for WordPress is vulnerable to Stored Cross-Site Scripting via pricing table settings in a...
CVE-2024-2867MEDIUM5.4The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePres...
CVE-2024-2840MEDIUM5.4The Enhanced Media Library plugin for WordPress is vulnerable to Stored Cross-Site Scripting via media upload functional...
CVE-2024-2797MEDIUM5.3The MailerLite – Signup forms (official) plugin for WordPress is vulnerable to unauthorized plugin setting changes due t...
CVE-2024-2790MEDIUM5.4The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Accord...
CVE-2024-2765MEDIUM5.4The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugi...
CVE-2024-2752MEDIUM5.5The Where Did You Hear About Us Checkout Field for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site S...
CVE-2024-2751MEDIUM5.4The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘exad_infob...
CVE-2024-2750MEDIUM5.4The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the URL attribu...
CVE-2024-2542MEDIUM6.4The Jotform Online Forms – Drag & Drop Form Builder, Securely Embed Contact Forms plugin for WordPress is vulnerable to ...
CVE-2024-2503MEDIUM5.4The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Grid W...
CVE-2024-2401MEDIUM4.4The Admin Page Spider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versio...
CVE-2024-2349MEDIUM6.4The Fancy Elementor Flipbox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Fancy Elementor Fl...
CVE-2024-2346MEDIUM5.4The FileBird – WordPress Media Library Folders & File Manager plugin for WordPress is vulnerable to Insecure Direct Obje...
CVE-2024-2345MEDIUM5.4The FileBird – WordPress Media Library Folders & File Manager plugin for WordPress is vulnerable to Stored Cross-Site Sc...
CVE-2024-2328MEDIUM5.4The Real Media Library: Media Library Folder & File Manager plugin for WordPress is vulnerable to Stored Cross-Site Scri...
CVE-2024-2324MEDIUM5.4The FileOrganizer – Manage WordPress and Website Files plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
CVE-2024-2273MEDIUM5.4The Gutenberg Blocks by Kadence Blocks – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Site S...
CVE-2024-2109MEDIUM5.3The Booster Extension plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in...
CVE-2024-2085MEDIUM5.4The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 's...
CVE-2024-2084MEDIUM5.4The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl...
CVE-2024-2082MEDIUM6.1The EleForms – All In One Form Integration including DB for Elementor plugin for WordPress is vulnerable to Stored Cross...
CVE-2024-2043MEDIUM5.3The EleForms – All In One Form Integration including DB for Elementor plugin for WordPress is vulnerable to unauthorized...
CVE-2024-1993MEDIUM6.4The Icon Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all v...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now