2024 CVE Vulnerabilities

39,235 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-2261MEDIUM4.3The Event Tickets and Registration plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions ...
CVE-2024-2226MEDIUM5.4The Otter Blocks – Gutenberg Blocks, Page Builder for Gutenberg Editor & FSE plugin for WordPress is vulnerable to Store...
CVE-2024-2222MEDIUM4.3The Advanced Classifieds & Directory Pro plugin for WordPress is vulnerable to unauthorized loss of data due to a missin...
CVE-2024-2200MEDIUM6.1The Contact Form by BestWebSoft plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘cntctfrm_c...
CVE-2024-2198MEDIUM6.1The Contact Form by BestWebSoft plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘cntctfrm_c...
CVE-2024-2187MEDIUM5.4The Beaver Builder Addons by WPZOOM plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Testimonia...
CVE-2024-2186MEDIUM5.4The Beaver Builder Addons by WPZOOM plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Team Membe...
CVE-2024-2185MEDIUM5.4The Beaver Builder Addons by WPZOOM plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Box ...
CVE-2024-2183MEDIUM5.4The Beaver Builder Addons by WPZOOM plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Heading wi...
CVE-2024-2181MEDIUM5.4The Beaver Builder Addons by WPZOOM plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Button wid...
CVE-2024-2165MEDIUM5.4The SEOPress – On-site SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the image alt parameter...
CVE-2024-2138MEDIUM5.4The JetWidgets For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Animated Box widg...
CVE-2024-2117MEDIUM5.4The Elementor Website Builder – More than Just a Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Sc...
CVE-2024-2093MEDIUM5.3The VK All in One Expansion Unit plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up...
CVE-2024-2081MEDIUM5.4The Best WordPress Gallery Plugin – FooGallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
CVE-2024-2039MEDIUM6.4The Stackable – Page Builder Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ...
CVE-2024-2033MEDIUM4.3The Video Conferencing with Zoom plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up...
CVE-2024-2027MEDIUM5.4The Real Media Library: Media Library Folder & File Manager plugin for WordPress is vulnerable to Stored Cross-Site Scri...
CVE-2024-2026MEDIUM5.4The Passster plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's content_protector shortc...
CVE-2024-1999MEDIUM5.4The Gutenberg Blocks by Kadence Blocks – Page Builder Features plugin for WordPress is vulnerable to Stored Cross-Site S...
CVE-2024-1984MEDIUM5.3The Graphene theme for WordPress is vulnerable to unauthorized access of data via meta tag in all versions up to, and in...
CVE-2024-1974MEDIUM6.5The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Directory Traversal in all versions up...
CVE-2024-1960MEDIUM5.4The ShopLentor – WooCommerce Builder for Elementor & Gutenberg +12 Modules – All in One Solution (formerly WooLentor) pl...
CVE-2024-1948MEDIUM5.4The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the block content in...
CVE-2024-1904MEDIUM4.3The MasterStudy LMS plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check ...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now