2024 CVE Vulnerabilities

39,256 CVEs published in 2024.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2024-13429MEDIUM4.3The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to...
CVE-2024-13428MEDIUM5.3The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to...
CVE-2024-13425MEDIUM4.3The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to...
CVE-2024-13372MEDIUM5.3The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to...
CVE-2024-13371MEDIUM5.3The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to...
CVE-2024-12825MEDIUM5.4The Custom Related Posts plugin for WordPress is vulnerable to unauthorized access & modification of data due to a missi...
CVE-2024-13341MEDIUM6.5The MultiLoca - WooCommerce Multi Locations Inventory Management plugin for WordPress is vulnerable to SQL Injection via...
CVE-2024-11829MEDIUM5.4The The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce plugin for WordPre...
CVE-2024-13099MEDIUM5.4The Widget4Call WordPress plugin through 1.0.7 does not sanitise and escape a parameter before outputting it back in the...
CVE-2024-13098MEDIUM5.4The WordPress Email Newsletter WordPress plugin through 1.1 does not sanitise and escape a parameter before outputting i...
CVE-2024-13097MEDIUM5.4The WP Finance WordPress plugin through 1.3.6 does not sanitise and escape a parameter before outputting it back in the ...
CVE-2024-13096MEDIUM4.6The WP Finance WordPress plugin through 1.3.6 does not have CSRF check in some places, and is missing sanitisation as we...
CVE-2024-12768MEDIUM5.4The Responsive iframe WordPress plugin through 1.2.0 does not validate and escape some of its block options before outpu...
CVE-2024-12041MEDIUM5.3The Directorist: AI-Powered WordPress Business Directory Plugin with Classified Ads Listings plugin for WordPress is vul...
CVE-2024-53296MEDIUM4.9Dell PowerProtect DD versions prior to 7.10.1.50 and 7.13.1.20 contain a Stack-based Buffer Overflow vulnerability in th...
CVE-2024-13651MEDIUM4.3The RapidLoad – Optimize Web Vitals Automatically plugin for WordPress is vulnerable to unauthorized modification of dat...
CVE-2024-13547MEDIUM5.4The aThemes Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Accordi...
CVE-2024-12620MEDIUM5.3The AnimateGL Animations for WordPress – Elementor & Gutenberg Blocks Animations plugin for WordPress is vulnerable to u...
CVE-2024-12184MEDIUM5.3The WordPress Contact Forms by Cimatti plugin for WordPress is vulnerable to unauthorized access of data due to a missin...
CVE-2024-11780MEDIUM5.4The Site Search 360 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ss360-resultbloc...
CVE-2024-57435MEDIUM6.5In macrozheng mall-tiny 1.0.1, an attacker can send null data through the resource creation interface resulting in a nul...
CVE-2024-53354MEDIUM6.5Multiple SQL injection vulnerabilities in EasyVirt DCScope <= 8.6.0 and CO2Scope <= 1.3.0 allows remote authenticated at...
CVE-2024-49349MEDIUM5.4IBM Financial Transaction Manager for SWIFT Services for Multiplatforms 3.2.4.0 through 3.2.4.1 is vulnerable to stored ...
CVE-2024-49339MEDIUM5.4IBM Financial Transaction Manager for SWIFT Services for Multiplatforms 3.2.4.0 through 3.2.4.1 is vulnerable to stored ...
CVE-2024-42671MEDIUM6.1A Host Header Poisoning Open Redirect issue in slabiak Appointment Scheduler v.1.0.5 allows a remote attacker to redirec...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now