2024 CVE Vulnerabilities
39,228 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-2959 | MEDIUM | 4.3 | 0.2% | May 2, 2024 | The SVS Pricing Tables plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and inclu... |
| CVE-2024-2958 | MEDIUM | 4.8 | 0.3% | May 2, 2024 | The SVS Pricing Tables plugin for WordPress is vulnerable to Stored Cross-Site Scripting via pricing table settings in a... |
| CVE-2024-2867 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePres... |
| CVE-2024-2840 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Enhanced Media Library plugin for WordPress is vulnerable to Stored Cross-Site Scripting via media upload functional... |
| CVE-2024-2797 | MEDIUM | 5.3 | 0.5% | May 2, 2024 | The MailerLite – Signup forms (official) plugin for WordPress is vulnerable to unauthorized plugin setting changes due t... |
| CVE-2024-2790 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Accord... |
| CVE-2024-2765 | MEDIUM | 5.4 | 0.5% | May 2, 2024 | The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugi... |
| CVE-2024-2752 | MEDIUM | 5.5 | 0.4% | May 2, 2024 | The Where Did You Hear About Us Checkout Field for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site S... |
| CVE-2024-2751 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘exad_infob... |
| CVE-2024-2750 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the URL attribu... |
| CVE-2024-2542 | MEDIUM | 6.4 | 0.3% | May 2, 2024 | The Jotform Online Forms – Drag & Drop Form Builder, Securely Embed Contact Forms plugin for WordPress is vulnerable to ... |
| CVE-2024-2503 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Grid W... |
| CVE-2024-2401 | MEDIUM | 4.4 | 0.4% | May 2, 2024 | The Admin Page Spider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versio... |
| CVE-2024-2349 | MEDIUM | 6.4 | 0.4% | May 2, 2024 | The Fancy Elementor Flipbox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Fancy Elementor Fl... |
| CVE-2024-2346 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The FileBird – WordPress Media Library Folders & File Manager plugin for WordPress is vulnerable to Insecure Direct Obje... |
| CVE-2024-2345 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The FileBird – WordPress Media Library Folders & File Manager plugin for WordPress is vulnerable to Stored Cross-Site Sc... |
| CVE-2024-2328 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Real Media Library: Media Library Folder & File Manager plugin for WordPress is vulnerable to Stored Cross-Site Scri... |
| CVE-2024-2324 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The FileOrganizer – Manage WordPress and Website Files plugin for WordPress is vulnerable to Stored Cross-Site Scripting... |
| CVE-2024-2273 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The Gutenberg Blocks by Kadence Blocks – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Site S... |
| CVE-2024-2109 | MEDIUM | 5.3 | 0.5% | May 2, 2024 | The Booster Extension plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and in... |
| CVE-2024-2085 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 's... |
| CVE-2024-2084 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl... |
| CVE-2024-2082 | MEDIUM | 6.1 | 0.4% | May 2, 2024 | The EleForms – All In One Form Integration including DB for Elementor plugin for WordPress is vulnerable to Stored Cross... |
| CVE-2024-2043 | MEDIUM | 5.3 | 0.5% | May 2, 2024 | The EleForms – All In One Form Integration including DB for Elementor plugin for WordPress is vulnerable to unauthorized... |
| CVE-2024-1993 | MEDIUM | 6.4 | 0.4% | May 2, 2024 | The Icon Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all v... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now