2024 CVE Vulnerabilities

39,240 CVEs published in 2024.

CVE IDSeverityCVSSDescription
CVE-2024-5808MEDIUM4.3The WP Ajax Contact Form WordPress plugin through 2.2.2 does not have CSRF check in place when deleting emails from the ...
CVE-2024-5807HIGH7.2The Business Card WordPress plugin through 1.0.0 does not prevent high privilege users like administrators from uploadin...
CVE-2024-5765CRITICAL9.8The WpStickyBar WordPress plugin through 2.1.0 does not properly sanitise and escape a parameter before using it in a S...
CVE-2024-4096MEDIUM5.9The Responsive Tabs WordPress plugin through 4.0.8 does not sanitise and escape some of its Tab settings, which could al...
CVE-2024-3986MEDIUM4.8The SportsPress WordPress plugin before 2.7.22 does not sanitise and escape some of its settings, which could allow hig...
CVE-2024-3669MEDIUM6.8The Web Directory Free WordPress plugin before 1.7.2 does not sanitise and escape a parameter before outputting it back ...
CVE-2024-3113MEDIUM5.9The FormFlow: WhatsApp Social and Advanced Form Builder with Easy Lead Collection WordPress plugin before 2.12.2 does no...
CVE-2024-1287MEDIUM6.5The pmpro-member-directory WordPress plugin before 1.2.6 does not prevent users with at least the contributor role from ...
CVE-2024-1286MEDIUM4.9The pmpro-membership-maps WordPress plugin before 0.7 does not prevent users with at least the contributor role from lea...
CVE-2024-7218MEDIUM6.1A flaw has been found in SourceCodester/Campcodes School Log Management System 1.0. Affected is an unknown function of t...
CVE-2024-7217HIGH8.8A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been declared as critical. This vulnerability affects t...
CVE-2024-7216MEDIUM5.3A vulnerability was found in TOTOLINK LR1200 9.3.1cu.2832. It has been classified as problematic. This affects an unknow...
CVE-2024-7215HIGH8.8A vulnerability was found in TOTOLINK LR1200 9.3.1cu.2832 and classified as critical. Affected by this issue is the func...
CVE-2024-7214HIGH8.8A vulnerability has been found in TOTOLINK LR350 9.3.5u.6369_B20220309 and classified as critical. Affected by this vuln...
CVE-2024-7213HIGH8.8A vulnerability, which was classified as critical, was found in TOTOLINK A7000R 9.1.0u.6268_B20220504. Affected is the f...
CVE-2024-7212HIGH8.8A vulnerability, which was classified as critical, has been found in TOTOLINK A7000R 9.1.0u.6268_B20220504. This issue a...
CVE-2024-40836MEDIUM5.5A logic issue was addressed with improved checks. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPad...
CVE-2024-40835MEDIUM5.5A logic issue was addressed with improved checks. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPad...
CVE-2024-40834MEDIUM4.4This issue was addressed by adding an additional prompt for user consent. This issue is fixed in macOS Monterey 12.7.6, ...
CVE-2024-40833MEDIUM5.5A logic issue was addressed with improved checks. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, macOS Monterey 12...
CVE-2024-40832LOW3.3The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.6. An app may be able to view a con...
CVE-2024-40829MEDIUM4.6The issue was addressed with improved checks. This issue is fixed in iOS 16.7.9 and iPadOS 16.7.9, iOS 17.6 and iPadOS 1...
CVE-2024-40828HIGH7.8The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ven...
CVE-2024-40827MEDIUM5.5The issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ven...
CVE-2024-40824MEDIUM5.5This issue was addressed through improved state management. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonom...

Check if your code is affected by 2024 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now