2024 CVE Vulnerabilities
39,240 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-3513 | MEDIUM | 5.4 | 0.3% | Jul 2, 2024 | The Ultimate Blocks – WordPress Blocks Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ... |
| CVE-2024-38857 | MEDIUM | 6.1 | 0.3% | Jul 2, 2024 | Improper neutralization of input in Checkmk before versions 2.3.0p8, 2.2.0p28, 2.1.0p45, and 2.0.0 (EOL) allows attacker... |
| CVE-2024-37479 | HIGH | 8.8 | 0.4% | Jul 2, 2024 | Local File Inclusion vulnerability in LA-Studio LA-Studio Element Kit for Elementor via "LaStudioKit Progress Bar" widge... |
| CVE-2024-37134 | MEDIUM | 6.7 | 0.2% | Jul 2, 2024 | Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vulnerability. A local h... |
| CVE-2024-37133 | MEDIUM | 6.7 | 0.2% | Jul 2, 2024 | Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vulnerability. A local h... |
| CVE-2024-37132 | MEDIUM | 6.7 | 0.1% | Jul 2, 2024 | Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an incorrect privilege assignment vulnerability. A high p... |
| CVE-2024-37126 | MEDIUM | 6.7 | 0.2% | Jul 2, 2024 | Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vulnerability. A local h... |
| CVE-2024-6172 | CRITICAL | 9.8 | 1.1% | Jul 2, 2024 | The Email Subscribers by Icegram Express – Email Marketing, Newsletters, Automation for WordPress & WooCommerce plugin f... |
| CVE-2024-5219 | MEDIUM | 5.4 | 0.3% | Jul 2, 2024 | The Easy Google Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's file upload feat... |
| CVE-2024-32854 | MEDIUM | 6.7 | 0.2% | Jul 2, 2024 | Dell PowerScale OneFS versions 8.2.2.x through 9.8.0.0 contain an improper privilege management vulnerability. A local h... |
| CVE-2024-32853 | HIGH | 7.8 | 0.2% | Jul 2, 2024 | Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.2 contain an execution with unnecessary privileges vulnerability. A... |
| CVE-2024-32852 | HIGH | 7.5 | 0.2% | Jul 2, 2024 | Dell PowerScale OneFS versions 8.2.2.x through 9.7.0.0 contain use of a broken or risky cryptographic algorithm vulnerab... |
| CVE-2024-0158 | MEDIUM | 6.7 | 0.1% | Jul 2, 2024 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user with admin privilege... |
| CVE-2024-5767 | HIGH | 8.8 | 0.3% | Jul 2, 2024 | The sitetweet WordPress plugin through 0.2 does not have CSRF check in some places, and is missing sanitisation as well ... |
| CVE-2024-5606 | HIGH | 8.8 | 0.6% | Jul 2, 2024 | The Quiz and Survey Master (QSM) WordPress plugin before 9.0.2 is vulnerable does not validate and escape the question_... |
| CVE-2024-4627 | MEDIUM | 5.4 | 0.4% | Jul 2, 2024 | The Rank Math SEO WordPress plugin before 1.0.219 does not sanitise and escape some of its settings, which could allow ... |
| CVE-2024-3999 | MEDIUM | 4.8 | 0.4% | Jul 2, 2024 | The EazyDocs WordPress plugin before 2.5.0 does not sanitise and escape some of its settings, which could allow high pr... |
| CVE-2024-1427 | MEDIUM | 5.4 | 0.3% | Jul 2, 2024 | The The Post Grid – Shortcode, Gutenberg Blocks and Elementor Addon for Post Grid plugin for WordPress is vulnerable to ... |
| CVE-2024-5349 | HIGH | 8.8 | 1.0% | Jul 2, 2024 | The LA-Studio Element Kit for Elementor plugin for WordPress is vulnerable to Local File Inclusion in all versions up to... |
| CVE-2024-5419 | MEDIUM | 5.4 | 0.3% | Jul 2, 2024 | The Void Contact Form 7 Widget For Elementor Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Script... |
| CVE-2024-5938 | MEDIUM | 5.4 | 0.3% | Jul 2, 2024 | The Boot Store theme for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘link’ parameter within the them... |
| CVE-2024-4679 | HIGH | 7.8 | 0.2% | Jul 2, 2024 | Incorrect Default Permissions vulnerability in Hitachi JP1/Extensible SNMP Agent for Windows, Hitachi JP1/Extensible SNM... |
| CVE-2024-2819 | MEDIUM | 6.5 | 0.2% | Jul 2, 2024 | Incorrect Default Permissions, Improper Preservation of Permissions vulnerability in Hitachi Ops Center Common Services ... |
| CVE-2024-39314 | MEDIUM | 4.7 | 0.2% | Jul 1, 2024 | toy-blog is a headless content management system implementation. Starting in version 0.4.3 and prior to version 0.5.0, t... |
| CVE-2024-39313 | MEDIUM | 5.3 | 0.4% | Jul 1, 2024 | toy-blog is a headless content management system implementation. Starting in version 0.5.4 and prior to version 0.6.1, a... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now