2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-32873 | — | — | — | Dec 2, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2021-32872 | — | — | — | Dec 2, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2021-32871 | — | — | — | Dec 2, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2021-32870 | — | — | — | Dec 2, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2021-32869 | — | — | — | Dec 2, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2021-32868 | — | — | — | Dec 2, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2021-32867 | — | — | — | Dec 2, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2021-32866 | — | — | — | Dec 2, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2021-32865 | — | — | — | Dec 2, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2021-32864 | — | — | — | Dec 2, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2021-32863 | — | — | — | Dec 2, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2021-31740 | MEDIUM | 6.1 | 0.4% | Nov 30, 2022 | SEPPMail's web frontend, user input is not embedded correctly in the web page and therefore leads to cross-site scriptin... |
| CVE-2021-4242 | HIGH | 8.8 | 3.0% | Nov 30, 2022 | A vulnerability was found in Sapido BR270n, BRC76n, GR297 and RB1732 and classified as critical. Affected by this issue ... |
| CVE-2021-31693 | MEDIUM | 6.1 | 0.4% | Nov 29, 2022 | The 10Web Photo Gallery plugin through 1.5.68 for WordPress allows XSS via album_gallery_id_0, bwg_album_search_0, and t... |
| CVE-2021-45036 | HIGH | 7.4 | 0.7% | Nov 28, 2022 | Velneo vClient on its 28.1.3 version, could allow an attacker with knowledge of the victims's username and hashed passwo... |
| CVE-2021-25059 | MEDIUM | 4.3 | 0.6% | Nov 28, 2022 | The Download Plugin WordPress plugin before 2.0.0 does not properly validate a user has the required privileges to acces... |
| CVE-2021-29334 | HIGH | 8.8 | 0.3% | Nov 23, 2022 | An issue was discovered in JIZHI CMS 1.9.4. There is a CSRF vulnerability that can add an admin account via index, /admi... |
| CVE-2021-43258 | HIGH | 8.8 | 10.5% | Nov 23, 2022 | CartView.php in ChurchInfo 1.3.0 allows attackers to achieve remote code execution through insecure uploads. This requir... |
| CVE-2021-35284 | CRITICAL | 9.8 | 0.7% | Nov 23, 2022 | SQL Injection vulnerability in function get_user in login_manager.php in rizalafani cms-php v1. |
| CVE-2021-35246 | MEDIUM | 5.3 | 0.3% | Nov 23, 2022 | The application fails to prevent users from connecting to it over unencrypted connections. An attacker able to modify a ... |
| CVE-2021-46854 | HIGH | 7.5 | 1.1% | Nov 23, 2022 | mod_radius in ProFTPD before 1.3.7c allows memory disclosure to RADIUS servers because it copies blocks of 16 characters... |
| CVE-2021-24649 | CRITICAL | 9.8 | 0.6% | Nov 21, 2022 | The WP User Frontend WordPress plugin before 3.5.29 uses a user supplied argument called urhidden in its registration fo... |
| CVE-2021-37936 | MEDIUM | 5.4 | 0.5% | Nov 18, 2022 | It was discovered that Kibana was not sanitizing document fields containing HTML snippets. Using this vulnerability, an ... |
| CVE-2021-33621 | HIGH | 8.8 | 2.3% | Nov 18, 2022 | The cgi gem before 0.1.0.2, 0.2.x before 0.2.2, and 0.3.x before 0.3.5 for Ruby allows HTTP response splitting. This is ... |
| CVE-2021-31739 | MEDIUM | 6.1 | 0.4% | Nov 18, 2022 | The SEPPmail solution is vulnerable to a Cross-Site Scripting vulnerability (XSS), because user input is not correctly e... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now