2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-0611 | MEDIUM | 4.8 | 0.7% | Mar 2, 2024 | The Master Slider – Responsive Touch Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the sl... |
| CVE-2024-0378 | MEDIUM | 6.1 | 0.6% | Mar 2, 2024 | The AI Engine: Chatbots, Generators, Assistants, GPT 4 and more! plugin for WordPress is vulnerable to Stored Cross-Site... |
| CVE-2024-1775 | MEDIUM | 5.4 | 0.4% | Mar 2, 2024 | The Nextend Social Login and Register plugin for WordPress is vulnerable to a self-based Reflected Cross-Site Scripting ... |
| CVE-2024-1592 | MEDIUM | 4.3 | 0.2% | Mar 2, 2024 | The Complianz – GDPR/CCPA Cookie Consent plugin for WordPress is vulnerable to Cross-Site Request Forgery in all version... |
| CVE-2024-25064 | MEDIUM | 4.3 | 0.4% | Mar 2, 2024 | Due to insufficient server-side validation, an attacker with login privileges could access certain resources that the at... |
| CVE-2024-25438 | MEDIUM | 6.1 | 0.4% | Mar 1, 2024 | A cross-site scripting (XSS) vulnerability in the Submission module of Pkp Ojs v3.3 allows attackers to execute arbitrar... |
| CVE-2024-25436 | MEDIUM | 6.1 | 0.4% | Mar 1, 2024 | A cross-site scripting (XSS) vulnerability in the Production module of Pkp Ojs v3.3 allows attackers to execute arbitrar... |
| CVE-2024-25434 | MEDIUM | 5.4 | 0.4% | Mar 1, 2024 | A cross-site scripting (XSS) vulnerability in Pkp Ojs v3.3 allows attackers to execute arbitrary web scripts or HTML via... |
| CVE-2024-24512 | MEDIUM | 6.1 | 0.5% | Mar 1, 2024 | Cross Site Scripting vulnerability in Pkp OJS v.3.4 allows an attacker to execute arbitrary code via the input subtitle ... |
| CVE-2024-24511 | MEDIUM | 6.1 | 0.5% | Mar 1, 2024 | Cross Site Scripting vulnerability in Pkp OJS v.3.4 allows an attacker to execute arbitrary code via the Input Title com... |
| CVE-2024-27744 | MEDIUM | 6.1 | 1.3% | Mar 1, 2024 | Cross Site Scripting vulnerability in Petrol Pump Mangement Software v.1.0 allows an attacker to execute arbitrary code ... |
| CVE-2024-27743 | MEDIUM | 6.1 | 1.3% | Mar 1, 2024 | Cross Site Scripting vulnerability in Petrol Pump Mangement Software v.1.0 allows an attacker to execute arbitrary code ... |
| CVE-2024-23492 | MEDIUM | 5.7 | 0.2% | Mar 1, 2024 | A weak encoding is used to transmit credentials for WS203VICM. |
| CVE-2024-20328 | MEDIUM | 5.3 | 84.8% | Mar 1, 2024 | A vulnerability in the VirusEvent feature of ClamAV could allow a local attacker to inject arbitrary commands with the p... |
| CVE-2024-2075 | MEDIUM | 5.4 | 0.5% | Mar 1, 2024 | A vulnerability was found in SourceCodester Daily Habit Tracker 1.0. It has been declared as problematic. Affected by th... |
| CVE-2024-2074 | MEDIUM | 6.3 | 0.8% | Mar 1, 2024 | A vulnerability was found in Mini-Tmall up to 20231017 and classified as critical. This issue affects some unknown proce... |
| CVE-2024-2072 | MEDIUM | 5.4 | 0.5% | Mar 1, 2024 | A vulnerability, which was classified as problematic, was found in SourceCodester Flashcard Quiz App 1.0. This affects a... |
| CVE-2024-2071 | MEDIUM | 5.4 | 0.5% | Mar 1, 2024 | A vulnerability, which was classified as problematic, has been found in SourceCodester FAQ Management System 1.0. Affect... |
| CVE-2024-27734 | MEDIUM | 6.1 | 0.5% | Mar 1, 2024 | A Cross Site Scripting vulnerability in CSZ CMS v.1.3.0 allows an attacker to execute arbitrary code via a crafted scrip... |
| CVE-2024-27559 | MEDIUM | 6.3 | 0.2% | Mar 1, 2024 | Stupid Simple CMS v1.2.4 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /save_settings.... |
| CVE-2024-27558 | MEDIUM | 6.1 | 0.4% | Mar 1, 2024 | Stupid Simple CMS 1.2.4 is vulnerable to Cross Site Scripting (XSS) within the blog title of the settings. |
| CVE-2024-2070 | MEDIUM | 6.1 | 0.5% | Mar 1, 2024 | A vulnerability classified as problematic was found in SourceCodester FAQ Management System 1.0. Affected by this vulner... |
| CVE-2024-2069 | MEDIUM | 5.3 | 0.5% | Mar 1, 2024 | A vulnerability classified as critical has been found in SourceCodester FAQ Management System 1.0. Affected is an unknow... |
| CVE-2024-2068 | MEDIUM | 6.1 | 2.5% | Mar 1, 2024 | A vulnerability was found in SourceCodester Computer Inventory System 1.0. It has been rated as problematic. This issue ... |
| CVE-2024-27499 | MEDIUM | 6.5 | 0.5% | Mar 1, 2024 | Bagisto v1.5.1 is vulnerable for Cross site scripting(XSS) via png file upload vulnerability in product review option. |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now