2024 CVE Vulnerabilities
39,219 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-52812 | MEDIUM | 5.4 | 0.3% | Mar 10, 2025 | LF Edge eKuiper is an internet-of-things data analytics and stream processing engine. Prior to version 2.0.8, auser with... |
| CVE-2024-52905 | LOW | 2.7 | 0.3% | Mar 10, 2025 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.3 could disclose sensitiv... |
| CVE-2024-47109 | MEDIUM | 5.3 | 0.3% | Mar 10, 2025 | IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.3 UI could disclosure the installation path ... |
| CVE-2024-12604 | MEDIUM | 6.5 | 0.2% | Mar 10, 2025 | Cleartext Storage of Sensitive Information in an Environment Variable, Weak Password Recovery Mechanism for Forgotten Pa... |
| CVE-2024-57492 | MEDIUM | 5.5 | 0.2% | Mar 10, 2025 | An issue in redoxOS relibc before commit 98aa4ea5 allows a local attacker to cause a denial of service via the round_up_... |
| CVE-2024-13919 | MEDIUM | 6.1 | 0.5% | Mar 10, 2025 | The Laravel framework versions between 11.9.0 and 11.35.1 are susceptible to reflected cross-site scripting due to an im... |
| CVE-2024-13918 | MEDIUM | 6.1 | 0.6% | Mar 10, 2025 | The Laravel framework versions between 11.9.0 and 11.35.1 are susceptible to reflected cross-site scripting due to an im... |
| CVE-2024-11638 | HIGH | 8.8 | 0.5% | Mar 10, 2025 | The Gtbabel WordPress plugin before 6.6.9 does not ensure that the URL to perform code analysis upon belongs to the blog... |
| CVE-2024-43107 | HIGH | 7.2 | 0.2% | Mar 10, 2025 | Improper Certificate Validation (CWE-295) in the Gallagher Milestone Integration Plugin (MIP) permits unauthenticated me... |
| CVE-2024-41724 | HIGH | 8.7 | 0.2% | Mar 10, 2025 | Improper Certificate Validation (CWE-295) in the Gallagher Command Centre SALTO integration allowed an attacker to spoof... |
| CVE-2024-13924 | CRITICAL | 9.1 | 0.4% | Mar 8, 2025 | The Starter Templates by FancyWP plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions... |
| CVE-2024-10326 | MEDIUM | 4.3 | 0.3% | Mar 8, 2025 | The RomethemeKit For Elementor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing ... |
| CVE-2024-13675 | MEDIUM | 5.4 | 0.2% | Mar 8, 2025 | The SlingBlocks – Gutenberg Blocks by FunnelKit (Formerly WooFunnels) plugin for WordPress is vulnerable to Stored Cross... |
| CVE-2024-13649 | MEDIUM | 5.4 | 0.2% | Mar 8, 2025 | The 140+ Widgets | Xpro Addons For Elementor – FREE plugin for WordPress is vulnerable to Stored Cross-Site Scripting vi... |
| CVE-2024-11640 | HIGH | 8.8 | 0.3% | Mar 8, 2025 | The VikRentCar Car Rental Management System plugin for WordPress is vulnerable to Cross-Site Request Forgery in all vers... |
| CVE-2024-13359 | CRITICAL | 9.8 | 0.8% | Mar 8, 2025 | The Product Input Fields for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to insufficien... |
| CVE-2024-13882 | HIGH | 8.8 | 0.7% | Mar 8, 2025 | The Aiomatic - Automatic AI Content Writer & Editor, GPT-3 & GPT-4, ChatGPT ChatBot & AI Toolkit plugin for WordPress is... |
| CVE-2024-13816 | MEDIUM | 5.4 | 0.2% | Mar 8, 2025 | The Aiomatic - Automatic AI Content Writer & Editor, GPT-3 & GPT-4, ChatGPT ChatBot & AI Toolkit plugin for WordPress is... |
| CVE-2024-10321 | MEDIUM | 4.3 | 0.3% | Mar 8, 2025 | The All-in-One Addons for Elementor – WidgetKit plugin for WordPress is vulnerable to Sensitive Information Exposure in ... |
| CVE-2024-13908 | HIGH | 7.2 | 0.8% | Mar 8, 2025 | The SMTP by BestWebSoft plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation... |
| CVE-2024-11087 | CRITICAL | 9.8 | 0.4% | Mar 8, 2025 | The miniOrange Social Login and Register (Discord, Google, Twitter, LinkedIn) Pro Addon plugin for WordPress is vulnerab... |
| CVE-2024-13844 | MEDIUM | 4.9 | 0.4% | Mar 8, 2025 | The Post SMTP plugin for WordPress is vulnerable to generic SQL Injection via the ‘columns’ parameter in all versions up... |
| CVE-2024-13826 | MEDIUM | 5.4 | 0.2% | Mar 8, 2025 | The Email Keep WordPress plugin through 1.1 does not have CSRF check in place when updating its settings, which could al... |
| CVE-2024-13825 | MEDIUM | 6.1 | 0.3% | Mar 8, 2025 | The Email Keep WordPress plugin through 1.1 does not sanitise and escape a parameter before outputting it back in the pa... |
| CVE-2024-12119 | MEDIUM | 5.4 | 0.2% | Mar 8, 2025 | The FooGallery – Responsive Photo Gallery, Image Viewer, Justified, Masonry & Carousel plugin for WordPress is vulnerabl... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now