2024 CVE Vulnerabilities

39,236 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-1176MEDIUM5.3The HT Easy GA4 – Google Analytics WordPress Plugin plugin for WordPress is vulnerable to unauthorized modification of d...
CVE-2024-1158MEDIUM4.3The Post Form – Registration Form – Profile Form for User Profiles – Frontend Content Forms for User Submissions (UGC) p...
CVE-2024-1127MEDIUM4.3The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to unauthorized access of data...
CVE-2024-1126MEDIUM4.3The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to unauthorized access of data...
CVE-2024-1083MEDIUM5.3The Simple Restrict plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and incl...
CVE-2024-1080MEDIUM5.4The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the vi...
CVE-2024-1074MEDIUM5.4The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the au...
CVE-2024-1038MEDIUM6.1The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to DOM-Based Reflected Cross-Site Scripti...
CVE-2024-0976MEDIUM6.1The WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce plugin for WordPress is vulnerable ...
CVE-2024-0898MEDIUM4.8The Chat Bubble – Floating Chat with Contact Chat Icons, Messages, Telegram, Email, SMS, Call me back plugin for WordPre...
CVE-2024-0897MEDIUM5.4The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the im...
CVE-2024-0896MEDIUM5.4The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the bu...
CVE-2024-0871MEDIUM5.4The Beaver Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Icon Widget 'fl_builder_dat...
CVE-2024-0839MEDIUM5.3The FeedWordPress plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and incl...
CVE-2024-0830MEDIUM4.3The Comments Extra Fields For Post,Pages and CPT plugin for WordPress is vulnerable to Cross-Site Request Forgery in all...
CVE-2024-0829MEDIUM4.3The Comments Extra Fields For Post,Pages and CPT plugin for WordPress is vulnerable to Missing Authorization in all vers...
CVE-2024-0828MEDIUM6.3The Play.ht – Make Your Blog Posts Accessible With Text to Speech Audio plugin for WordPress is vulnerable to unauthoriz...
CVE-2024-0827MEDIUM4.3The Play.ht – Make Your Blog Posts Accessible With Text to Speech Audio plugin for WordPress is vulnerable to Cross-Site...
CVE-2024-0700MEDIUM5.4The Simple Tweet plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Tweet this text value in all ...
CVE-2024-0687MEDIUM5.3The Restrict User Access – Ultimate Membership & Content Protection plugin for WordPress is vulnerable to Information Ex...
CVE-2024-0681MEDIUM5.3The Page Restriction WordPress (WP) – Protect WP Pages/Post plugin for WordPress is vulnerable to information disclosure...
CVE-2024-0631MEDIUM5.3The Duitku Payment Gateway plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capa...
CVE-2024-0614MEDIUM4.8The Events Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions ...
CVE-2024-0592MEDIUM5.4The Related Posts for WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, ...
CVE-2024-0591MEDIUM6.1The wpDataTables – WordPress Data Table, Dynamic Tables & Table Charts Plugin plugin for WordPress is vulnerable to Refl...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now