2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-24785 | MEDIUM | 4.8 | 0.6% | Oct 25, 2021 | The Great Quotes WordPress plugin through 1.0.0 does not sanitise and escape the Quote and Author fields of its Quotes, ... |
| CVE-2021-24779 | MEDIUM | 6.5 | 0.6% | Oct 25, 2021 | The WP Debugging WordPress plugin before 2.11.0 has its update_settings() function hooked to admin_init and is missing a... |
| CVE-2021-24744 | MEDIUM | 4.8 | 0.6% | Oct 25, 2021 | The WordPress Contact Forms by Cimatti WordPress plugin before 1.4.12 does not sanitise and escape the Form Title before... |
| CVE-2021-24699 | MEDIUM | 5.4 | 0.6% | Oct 25, 2021 | The Easy Media Download WordPress plugin before 1.1.7 does not escape the text argument of its shortcode, which could al... |
| CVE-2021-24653 | MEDIUM | 4.8 | 0.6% | Oct 25, 2021 | The Cookie Bar WordPress plugin before 1.8.9 doesn't properly sanitise the Cookie Bar Message setting, which could allow... |
| CVE-2021-24608 | MEDIUM | 4.8 | 0.7% | Oct 25, 2021 | The Formidable Form Builder – Contact Form, Survey & Quiz Forms Plugin for WordPress plugin before 5.0.07 does not sanit... |
| CVE-2021-24544 | MEDIUM | 5.4 | 0.6% | Oct 25, 2021 | The Responsive WordPress Slider WordPress plugin through 2.2.0 does not sanitise and escape some of the Slider options, ... |
| CVE-2021-24543 | MEDIUM | 6.1 | 0.4% | Oct 25, 2021 | The jQuery Reply to Comment WordPress plugin through 1.31 does not have any CSRF check when saving its settings, nor san... |
| CVE-2021-24515 | MEDIUM | 4.8 | 0.6% | Oct 25, 2021 | The Video Gallery WordPress plugin before 1.1.5 does not escape the Title and Description of the videos in a gallery bef... |
| CVE-2021-24514 | MEDIUM | 4.8 | 0.6% | Oct 25, 2021 | The Visual Form Builder WordPress plugin before 3.0.4 does not sanitise or escape its Form Name, allowing high privilege... |
| CVE-2021-24489 | MEDIUM | 4.8 | 0.6% | Oct 25, 2021 | The Request a Quote WordPress plugin before 2.3.9 does not sanitise, validate or escape some of its settings in the admi... |
| CVE-2021-24485 | MEDIUM | 4.8 | 0.6% | Oct 25, 2021 | The Special Text Boxes WordPress plugin before 5.9.110 does not sanitise or escape some of its settings, which could all... |
| CVE-2021-24414 | MEDIUM | 5.4 | 0.6% | Oct 25, 2021 | The Video Player for YouTube WordPress plugin before 1.4 does not sanitise or validate the parameters from its shortcode... |
| CVE-2021-24381 | MEDIUM | 4.8 | 0.6% | Oct 25, 2021 | The Ninja Forms Contact Form WordPress plugin before 3.5.8.2 does not sanitise and escape the custom class name of the f... |
| CVE-2021-0941 | MEDIUM | 6.7 | 0.2% | Oct 25, 2021 | In bpf_skb_change_head of filter.c, there is a possible out of bounds read due to a use after free. This could lead to l... |
| CVE-2021-0940 | MEDIUM | 6.7 | 0.1% | Oct 25, 2021 | In TBD of TBD, there is a possible out of bounds write due to improper locking. This could lead to local escalation of p... |
| CVE-2021-0939 | MEDIUM | 4.4 | 0.1% | Oct 25, 2021 | In set_default_passthru_cfg of passthru.c, there is a possible out of bounds read due to a missing bounds check. This co... |
| CVE-2021-0938 | MEDIUM | 5.5 | 0.1% | Oct 25, 2021 | In memzero_explicit of compiler-clang.h, there is a possible bypass of defense in depth due to uninitialized data. This ... |
| CVE-2021-0935 | MEDIUM | 6.7 | 0.2% | Oct 25, 2021 | In ip6_xmit of ip6_output.c, there is a possible out of bounds write due to a use after free. This could lead to local e... |
| CVE-2021-0663 | MEDIUM | 6.7 | 0.6% | Oct 25, 2021 | In audio DSP, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalat... |
| CVE-2021-0662 | MEDIUM | 6.7 | 0.6% | Oct 25, 2021 | In audio DSP, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalat... |
| CVE-2021-0661 | MEDIUM | 6.7 | 0.6% | Oct 25, 2021 | In audio DSP, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalat... |
| CVE-2021-0634 | MEDIUM | 6.7 | 0.1% | Oct 25, 2021 | In display driver, there is a possible memory corruption due to uninitialized data. This could lead to local escalation ... |
| CVE-2021-0633 | MEDIUM | 6.7 | 0.1% | Oct 25, 2021 | In display driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local es... |
| CVE-2021-0632 | MEDIUM | 6.5 | 0.3% | Oct 25, 2021 | In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informat... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now