2024 CVE Vulnerabilities
39,228 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-1959 | MEDIUM | 6.4 | 0.4% | May 2, 2024 | The Social Sharing Plugin – Social Warfare plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plu... |
| CVE-2024-1842 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The wpbakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Custom Heading tag attribute in a... |
| CVE-2024-1841 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The wpbakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Title tag attribute in all v... |
| CVE-2024-1840 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The wpbakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Author tag attribute in all ... |
| CVE-2024-1809 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The Analytify – Google Analytics Dashboard For WordPress (GA4 analytics made easy) plugin for WordPress is vulnerable to... |
| CVE-2024-1805 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The wpbakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the button onclick attribute in all v... |
| CVE-2024-1759 | MEDIUM | 5.4 | 0.3% | May 2, 2024 | The WP ULike – Most Advanced WordPress Marketing Toolkit plugin for WordPress is vulnerable to Stored Cross-Site Scripti... |
| CVE-2024-1716 | MEDIUM | 4.3 | 0.4% | May 2, 2024 | The Admin Bar Remover plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabilit... |
| CVE-2024-1688 | MEDIUM | 5.3 | 0.5% | May 2, 2024 | The Woo Total Sales plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check ... |
| CVE-2024-1679 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Print Labels with Barcodes. Create price tags, product labels, order labels for WooCommerce plugin for WordPress is ... |
| CVE-2024-1678 | MEDIUM | 5.3 | 0.4% | May 2, 2024 | The Subway – Private Site Option plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up... |
| CVE-2024-1584 | MEDIUM | 5.3 | 0.4% | May 2, 2024 | The Analytify – Google Analytics Dashboard For WordPress (GA4 analytics made easy) plugin for WordPress is vulnerable to... |
| CVE-2024-1572 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The WP ULike plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wp_ulike' shortcode in ... |
| CVE-2024-1533 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ... |
| CVE-2024-1416 | MEDIUM | 4.3 | 0.3% | May 2, 2024 | The Responsive Contact Form Builder & Lead Generation Plugin plugin for WordPress is vulnerable to unauthorized access t... |
| CVE-2024-1415 | MEDIUM | 4.3 | 0.3% | May 2, 2024 | The Responsive Contact Form Builder & Lead Generation Plugin plugin for WordPress is vulnerable to Cross-Site Request Fo... |
| CVE-2024-1396 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ... |
| CVE-2024-1386 | MEDIUM | 6.4 | 0.4% | May 2, 2024 | The MailerLite – Signup forms (official) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi... |
| CVE-2024-1348 | MEDIUM | 5.4 | 0.4% | May 2, 2024 | The Shortcodes and extra features for Phlox theme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via ... |
| CVE-2024-0908 | MEDIUM | 5.3 | 0.5% | May 2, 2024 | The Advanced Post Block – Display Posts, Pages, or Custom Posts on Your Page plugin for WordPress is vulnerable to unaut... |
| CVE-2024-0848 | MEDIUM | 6.1 | 0.4% | May 2, 2024 | The AA Cash Calculator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘invoice’ parameter ... |
| CVE-2024-0847 | MEDIUM | 4.3 | 0.2% | May 2, 2024 | The 5280 Bootstrap Modal Contact Form plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions u... |
| CVE-2024-0710 | MEDIUM | 5.3 | 1.0% | May 2, 2024 | The GP Unique ID plugin for WordPress is vulnerable to Unique ID Modification in all versions up to, and including, 1.5.... |
| CVE-2024-0629 | MEDIUM | 5.3 | 0.4% | May 2, 2024 | The 2Checkout Payment Gateway for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data du... |
| CVE-2024-0615 | MEDIUM | 5.3 | 0.5% | May 2, 2024 | The Content Control – The Ultimate Content Restriction Plugin! Restrict Content, Create Conditional Blocks & More plugin... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now