2024 CVE Vulnerabilities
39,235 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-27665 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | Unifiedtransform v2.X is vulnerable to Stored Cross-Site Scripting (XSS) via file upload feature in Syllabus module. |
| CVE-2024-3545 | MEDIUM | 4.3 | 0.3% | Apr 9, 2024 | Improper permission handling in the vault offline cache feature in Devolutions Remote Desktop Manager 2024.1.20 and earl... |
| CVE-2024-3267 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's bt_bb_price_lis... |
| CVE-2024-3266 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the URL attribute of widgets... |
| CVE-2024-3244 | MEDIUM | 5.4 | 0.5% | Apr 9, 2024 | The EmbedPress – Embed PDF, Google Docs, Vimeo, Wistia, Embed YouTube Videos, Audios, Maps & Embed Any Documents in Gute... |
| CVE-2024-3208 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | The Sydney Toolbox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Filterable Gallery... |
| CVE-2024-3167 | MEDIUM | 6.4 | 0.5% | Apr 9, 2024 | The Ocean Extra plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘twitter_username’ parameter i... |
| CVE-2024-3097 | MEDIUM | 5.3 | 38.0% | Apr 9, 2024 | The WordPress Gallery Plugin – NextGEN Gallery plugin for WordPress is vulnerable to unauthorized access of data due to ... |
| CVE-2024-3064 | MEDIUM | 6.4 | 0.4% | Apr 9, 2024 | The Elementor Addons, Widgets and Enhancements – Stax plugin for WordPress is vulnerable to Stored Cross-Site Scripting ... |
| CVE-2024-3053 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | The Forminator – Contact Form, Payment Form & Custom Form Builder plugin for WordPress is vulnerable to Stored Cross-Sit... |
| CVE-2024-2974 | MEDIUM | 5.3 | 0.5% | Apr 9, 2024 | The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress... |
| CVE-2024-2946 | MEDIUM | 5.4 | 0.3% | Apr 9, 2024 | The ShopLentor – WooCommerce Builder for Elementor & Gutenberg +12 Modules – All in One Solution (formerly WooLentor) pl... |
| CVE-2024-2847 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | The WordPress File Upload plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s... |
| CVE-2024-2845 | MEDIUM | 6.4 | 0.4% | Apr 9, 2024 | The BetterDocs – Best Documentation, FAQ & Knowledge Base Plugin with AI Support & Instant Answer For Elementor & Gutenb... |
| CVE-2024-2792 | MEDIUM | 6.4 | 0.5% | Apr 9, 2024 | The Elementor Addon Elements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via widgets in all versio... |
| CVE-2024-2789 | MEDIUM | 5.4 | 0.3% | Apr 9, 2024 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Calend... |
| CVE-2024-2788 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Title HTML... |
| CVE-2024-2787 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Page Title HTML... |
| CVE-2024-2786 | MEDIUM | 5.4 | 0.5% | Apr 9, 2024 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several widgets in ... |
| CVE-2024-2783 | MEDIUM | 5.4 | 0.4% | Apr 9, 2024 | The GamiPress – The #1 gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPr... |
| CVE-2024-2738 | MEDIUM | 6.1 | 0.6% | Apr 9, 2024 | The Permalink Manager Lite and Pro plugins for WordPress are vulnerable to Reflected Cross-Site Scripting via the ‘s’ pa... |
| CVE-2024-2654 | MEDIUM | 6.8 | 0.9% | Apr 9, 2024 | The File Manager plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 7.2.5 v... |
| CVE-2024-2650 | MEDIUM | 6.4 | 0.4% | Apr 9, 2024 | The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress... |
| CVE-2024-2623 | MEDIUM | 6.4 | 0.4% | Apr 9, 2024 | The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress... |
| CVE-2024-2543 | MEDIUM | 4.3 | 0.6% | Apr 9, 2024 | The Permalink Manager Lite plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now