2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-0449 | MEDIUM | 4.8 | 0.5% | Mar 13, 2024 | The ArtiBot Free Chat Bot for WordPress WebSites plugin for WordPress is vulnerable to Stored Cross-Site Scripting via a... |
| CVE-2024-0447 | MEDIUM | 5 | 0.6% | Mar 13, 2024 | The ArtiBot Free Chat Bot for WordPress WebSites plugin for WordPress is vulnerable to unauthorized modification of data... |
| CVE-2024-0385 | MEDIUM | 4.3 | 0.6% | Mar 13, 2024 | The Categorify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check... |
| CVE-2024-0377 | MEDIUM | 5.3 | 0.7% | Mar 13, 2024 | The LifterLMS – WordPress LMS Plugin for eLearning plugin for WordPress is vulnerable to unauthorized modification of da... |
| CVE-2024-0369 | MEDIUM | 4.3 | 0.4% | Mar 13, 2024 | The Bulk Edit Post Titles plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capab... |
| CVE-2024-0326 | MEDIUM | 6.4 | 0.6% | Mar 13, 2024 | The Premium Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Link... |
| CVE-2024-25155 | MEDIUM | 6.1 | 0.4% | Mar 13, 2024 | In FileCatalyst Direct 3.8.8 and earlier through 3.8.6, the web server does not properly sanitize illegal characters in ... |
| CVE-2024-25154 | MEDIUM | 5.3 | 0.5% | Mar 13, 2024 | Improper URL validation leads to path traversal in FileCatalyst Direct 3.8.8 and earlier allowing an encoded payload to ... |
| CVE-2024-2247 | MEDIUM | 6.1 | 0.5% | Mar 13, 2024 | JFrog Artifactory versions below 7.77.7, 7.82.1, are vulnerable to DOM-based cross-site scripting due to improper handli... |
| CVE-2024-26629 | MEDIUM | 5.5 | 0.2% | Mar 13, 2024 | In the Linux kernel, the following vulnerability has been resolved: nfsd: fix RELEASE_LOCKOWNER The test on so_count i... |
| CVE-2024-1508 | MEDIUM | 5.4 | 0.3% | Mar 13, 2024 | The Prime Slider – Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'setti... |
| CVE-2024-1507 | MEDIUM | 5.4 | 0.4% | Mar 13, 2024 | The Prime Slider – Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'title... |
| CVE-2024-28668 | MEDIUM | 6.1 | 0.4% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/mychann... |
| CVE-2024-28667 | MEDIUM | 6.1 | 0.2% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/templet... |
| CVE-2024-28666 | MEDIUM | 5.5 | 0.2% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/media_a... |
| CVE-2024-28430 | MEDIUM | 6.1 | 0.2% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/catalog... |
| CVE-2024-28429 | MEDIUM | 5.5 | 0.2% | Mar 13, 2024 | DedeCMS v5.7 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via the component /dede/archive... |
| CVE-2024-2416 | MEDIUM | 6.5 | 0.2% | Mar 13, 2024 | Cross-Site Request Forgery vulnerability in Movistar's 4G router affecting version ES_WLD71-T1_v2.0.201820. This vulnera... |
| CVE-2024-2123 | MEDIUM | 6.1 | 26.7% | Mar 13, 2024 | The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugi... |
| CVE-2024-28623 | MEDIUM | 6.1 | 1.3% | Mar 13, 2024 | RiteCMS v3.0.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component main_menu/edit_sec... |
| CVE-2024-27440 | MEDIUM | 4.8 | 0.2% | Mar 13, 2024 | The Toyoko Inn official App for iOS versions prior to 1.13.0 and Toyoko Inn official App for Android versions prior 1.3.... |
| CVE-2024-2412 | MEDIUM | 5.3 | 0.4% | Mar 13, 2024 | The disabling function of the user registration page for Heimavista Rpage and Epage is not properly implemented, allowin... |
| CVE-2024-1582 | MEDIUM | 5.4 | 0.3% | Mar 13, 2024 | The WP Go Maps (formerly WP Google Maps) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugi... |
| CVE-2024-1421 | MEDIUM | 5.4 | 0.3% | Mar 12, 2024 | The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘b... |
| CVE-2024-1397 | MEDIUM | 5.4 | 0.5% | Mar 12, 2024 | The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the pl... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now