2024 CVE Vulnerabilities
39,236 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-22459 | MEDIUM | 6.5 | 0.5% | Feb 28, 2024 | Dell ECS, versions 3.6 through 3.6.2.5, and 3.7 through 3.7.0.6, and 3.8 through 3.8.0.4 versions, contain an improper a... |
| CVE-2024-1954 | MEDIUM | 6.3 | 0.2% | Feb 28, 2024 | The Oliver POS – A WooCommerce Point of Sale (POS) plugin for WordPress is vulnerable to Cross-Site Request Forgery in a... |
| CVE-2024-1791 | MEDIUM | 5.4 | 0.4% | Feb 28, 2024 | The CodeMirror Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Code Mirror block in all... |
| CVE-2024-1566 | MEDIUM | 6.5 | 0.5% | Feb 28, 2024 | The Redirects plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check ... |
| CVE-2024-1516 | MEDIUM | 5.3 | 0.4% | Feb 28, 2024 | The WP eCommerce plugin for WordPress is vulnerable to unauthorized arbitrary post creation due to a missing capability ... |
| CVE-2024-1476 | MEDIUM | 5.3 | 0.5% | Feb 28, 2024 | The Under Construction / Maintenance Mode from Acurax plugin for WordPress is vulnerable to Sensitive Information Exposu... |
| CVE-2024-1368 | MEDIUM | 5.3 | 0.4% | Feb 28, 2024 | The Page Duplicator plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability ... |
| CVE-2024-1136 | MEDIUM | 5.3 | 0.5% | Feb 28, 2024 | The Coming Soon Page & Maintenance Mode plugin for WordPress is vulnerable to unauthorized access of data due to an impr... |
| CVE-2024-0975 | MEDIUM | 5.3 | 0.5% | Feb 28, 2024 | The WordPress Access Control plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to,... |
| CVE-2024-0786 | MEDIUM | 6.5 | 0.7% | Feb 28, 2024 | The Conversios – Google Analytics 4 (GA4), Meta Pixel & more Via Google Tag Manager For WooCommerce plugin for WordPress... |
| CVE-2024-0768 | MEDIUM | 4.3 | 0.3% | Feb 28, 2024 | The Envo's Elementor Templates & Widgets for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forger... |
| CVE-2024-0767 | MEDIUM | 4.3 | 0.3% | Feb 28, 2024 | The Envo's Elementor Templates & Widgets for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forger... |
| CVE-2024-0766 | MEDIUM | 4.3 | 0.5% | Feb 28, 2024 | The Envo's Elementor Templates & Widgets for WooCommerce plugin for WordPress is vulnerable to unauthorized modification... |
| CVE-2024-0682 | MEDIUM | 5.3 | 0.5% | Feb 28, 2024 | The Page Restrict plugin for WordPress is vulnerable to information disclosure in all versions up to, and including, 2.5... |
| CVE-2024-0680 | MEDIUM | 5.3 | 0.6% | Feb 28, 2024 | The WP Private Content Plus plugin for WordPress is vulnerable to information disclosure in all versions up to, and incl... |
| CVE-2024-0433 | MEDIUM | 4.3 | 0.3% | Feb 28, 2024 | The Gestpay for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and ... |
| CVE-2024-0432 | MEDIUM | 4.3 | 0.3% | Feb 28, 2024 | The Gestpay for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and ... |
| CVE-2024-0431 | MEDIUM | 4.3 | 0.3% | Feb 28, 2024 | The Gestpay for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and ... |
| CVE-2024-27913 | MEDIUM | 6.5 | 0.3% | Feb 28, 2024 | ospf_te_parse_te in ospfd/ospf_te.c in FRRouting (FRR) through 9.1 allows remote attackers to cause a denial of service ... |
| CVE-2024-1943 | MEDIUM | 4.3 | 0.2% | Feb 28, 2024 | The Yuki theme for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including 1.3.14. Th... |
| CVE-2024-1568 | MEDIUM | 6.4 | 0.3% | Feb 28, 2024 | The Seraphinite Accelerator plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and... |
| CVE-2024-1388 | MEDIUM | 4.3 | 0.3% | Feb 28, 2024 | The Yuki theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the... |
| CVE-2024-22723 | MEDIUM | 4.9 | 0.9% | Feb 28, 2024 | Webtrees 2.1.18 is vulnerable to Directory Traversal. By manipulating the "media_folder" parameter in the URL, an attack... |
| CVE-2024-0550 | MEDIUM | 6.5 | 0.7% | Feb 28, 2024 | A user who is privileged already `manager` or `admin` can set their profile picture via the frontend API using a relativ... |
| CVE-2024-1932 | MEDIUM | 4.8 | 0.4% | Feb 28, 2024 | Unrestricted Upload of File with Dangerous Type in freescout-helpdesk/freescout |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now