2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-39940MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2 before 14.3.6, all versions start...
CVE-2021-39939MEDIUM6.5An uncontrolled resource consumption vulnerability in GitLab Runner affecting all versions starting from 13.7 before 14....
CVE-2021-39938MEDIUM6.5A vulnerable regular expression pattern in GitLab CE/EE since version 8.15 before 14.3.6, all versions starting from 14....
CVE-2021-39936MEDIUM4.3Improper access control in GitLab CE/EE affecting all versions starting from 10.7 before 14.3.6, all versions starting f...
CVE-2021-39934MEDIUM4.3Improper access control allows any project member to retrieve the service desk email address in GitLab CE/EE versions st...
CVE-2021-39933MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.10 before 14.3.6, all versions star...
CVE-2021-39932MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 11.0 before 14.3.6, all versions start...
CVE-2021-39931MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 8.11 before 14.3.6, all versions start...
CVE-2021-39930MEDIUM4.3Missing authorization in GitLab EE versions between 12.4 and 14.3.6, between 14.4.0 and 14.4.4, and between 14.5.0 and 1...
CVE-2021-39919MEDIUM4.4In all versions of GitLab CE/EE starting version 14.0 before 14.3.6, all versions starting from 14.4 before 14.4.4, all ...
CVE-2021-39918MEDIUM4.3Incorrect Authorization in GitLab EE affecting all versions starting from 11.1 before 14.3.6, all versions starting from...
CVE-2021-39917MEDIUM6.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.9 before 14.3.6, all versions start...
CVE-2021-39916MEDIUM4.3Lack of an access control check in the External Status Check feature allowed any authenticated user to retrieve the conf...
CVE-2021-39915MEDIUM5.3Improper access control in the GraphQL API in GitLab CE/EE affecting all versions starting from 13.0 before 14.3.6, all ...
CVE-2021-39910MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.6 before 14.3.6, all versions start...
CVE-2021-36169MEDIUM6A Hidden Functionality in Fortinet FortiOS 7.x before 7.0.1, FortiOS 6.4.x before 6.4.7 allows attacker to Execute unaut...
CVE-2021-42549MEDIUM6.1Insufficient Input Validation in the search functionality of Wordpress plugin Lets-Box prior to 1.15.3 allows unauthenti...
CVE-2021-42548MEDIUM6.1Insufficient Input Validation in the search functionality of Wordpress plugin Share-one-Drive prior to 1.15.3 allows una...
CVE-2021-42547MEDIUM6.1Insufficient Input Validation in the search functionality of Wordpress plugin Out-of-the-Box prior to 1.20.3 allows unau...
CVE-2021-42546MEDIUM6.1Insufficient Input Validation in the search functionality of Wordpress plugin Use-Your-Drive prior to 1.18.3 allows unau...
CVE-2021-24972MEDIUM4.8The Pixel Cat WordPress plugin before 2.6.3 does not escape some of its settings, which could allow high privilege users...
CVE-2021-24955MEDIUM6.1The User Registration, Login Form, User Profile & Membership WordPress plugin before 3.2.3 does not escape the data para...
CVE-2021-24954MEDIUM6.1The User Registration, Login Form, User Profile & Membership WordPress plugin before 3.2.3 does not sanitise and escape ...
CVE-2021-24932MEDIUM6.1The Auto Featured Image (Auto Post Thumbnail) WordPress plugin before 3.9.3 does not sanitise and escape the post_id par...
CVE-2021-24925MEDIUM6.1The Modern Events Calendar Lite WordPress plugin before 6.1.5 does not sanitise and escape the current_month_divider par...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now