2021 CVE Vulnerabilities

23,431 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-47987HIGH7.7Parse Server before 4.10.0 was affected by a supply chain incident in which incorrect version tags were pushed to the of...
CVE-2021-47986HIGH7.7Parse Server before 4.10.0 contains a supply chain vulnerability where incorrect version tags were pushed to the reposit...
CVE-2021-47985HIGH8.5Brother SAPSprint 7.60 contains an unquoted service path vulnerability in the SAPSprint service binary that allows local...
CVE-2021-47984MEDIUM5.1WordPress Plugin WP24 Domain Check 1.6.2 contains a stored cross-site scripting vulnerability that allows authenticated ...
CVE-2021-47983MEDIUM5.1WordPress Plugin Stripe Payments 2.0.39 contains a stored cross-site scripting vulnerability that allows authenticated a...
CVE-2021-47982MEDIUM5.1WordPress Plugin WP-Paginate 2.1.3 contains a stored cross-site scripting vulnerability that allows authenticated attack...
CVE-2021-4481HIGH8.3Dräger Protector Software prior to version 6.4.2 contains a local privilege escalation vulnerability due to insecure fil...
CVE-2021-4480HIGH8.3Dräger Protector Software prior to version 6.4.2 contains a local privilege escalation vulnerability due to insecure fil...
CVE-2021-4479MEDIUM6.3Dräger Atlan A350 versions 1.00 up to and including 1.01 contains an improper input handling vulnerability that allows a...
CVE-2021-4478HIGH8.3Dräger CC-Vision Basic before 7.5.3 and Dräger CC-Vision E-Cal before 7.2.5.0 contain an out-of-bounds write vulnerabili...
CVE-2021-46747HIGH7.1Insufficient granularity of access control in ASP (AMD Secure Processor) may allow an attacker with an untrusted user sp...
CVE-2021-21508MEDIUM6.7Dell VxRail versions before 7.0.200 contain a Plain-text Password Storage Vulnerability in VxRail Manager. A sys-admin u...
CVE-2021-47981MEDIUM5.1Quick.CMS 6.7 contains a cross-site scripting vulnerability in the sliders form that allows authenticated attackers to i...
CVE-2021-47980HIGH7.1Fuel CMS 1.4.13 contains a blind SQL injection vulnerability that allows authenticated attackers to manipulate database ...
CVE-2021-47979HIGH8.7WordPress Plugin Backup and Restore 1.0.3 contains an arbitrary file deletion vulnerability that allows authenticated at...
CVE-2021-47978MEDIUM6.9ProcessMaker 3.5.4 contains a local file inclusion vulnerability that allows unauthenticated attackers to read arbitrary...
CVE-2021-47977HIGH8.7WordPress Plugin Anti-Malware Security and Bruteforce Firewall 4.20.59 contains a directory traversal vulnerability that...
CVE-2021-47976HIGH8.7TextPattern CMS 4.9.0-dev contains a remote code execution vulnerability that allows authenticated attackers to upload a...
CVE-2021-47975MEDIUM5.1WP Learn Manager 1.1.2 contains a stored cross-site scripting vulnerability that allows unauthenticated attackers to inj...
CVE-2021-47974HIGH8.5VX Search 13.5.28 contains an unquoted service path vulnerability in both VX Search Server and VX Search Enterprise serv...
CVE-2021-47973HIGH8.7Sticky Notes Widget 3.0.6 contains a denial of service vulnerability that allows attackers to crash the application by p...
CVE-2021-47972HIGH8.7Sticky Notes & Color Widgets 1.4.2 contains a denial of service vulnerability that allows attackers to crash the applica...
CVE-2021-47971HIGH8.7My Notes Safe 5.3 contains a denial of service vulnerability that allows attackers to crash the application by pasting e...
CVE-2021-47970HIGH8.7Macaron Notes 5.5 contains a denial of service vulnerability that allows attackers to crash the application by creating ...
CVE-2021-47969HIGH8.7Color Notes 1.4 contains a denial of service vulnerability that allows attackers to crash the application by pasting exc...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now