2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-30086 | MEDIUM | 6.1 | 0.7% | Sep 28, 2021 | Cross Site Scripting (XSS) vulnerability exists in KindEditor (Chinese versions) 4.1.12, which can be exploited by an at... |
| CVE-2021-41318 | MEDIUM | 6.1 | 5.9% | Sep 28, 2021 | In Progress WhatsUp Gold prior to version 21.1.0, an application endpoint failed to adequately sanitize malicious input.... |
| CVE-2021-29365 | MEDIUM | 5.5 | 0.6% | Sep 28, 2021 | Irfanview 4.57 is affected by an infinite loop when processing a crafted BMP file in the EFFECTS!AutoCrop_W component. T... |
| CVE-2021-29358 | MEDIUM | 5.5 | 0.6% | Sep 28, 2021 | A buffer overflow vulnerability in FORMATS!ReadPVR_W+0xfa of Irfanview 4.57 allows attackers to cause a denial of servic... |
| CVE-2021-22535 | MEDIUM | 4.9 | 0.7% | Sep 28, 2021 | Unauthorized information security disclosure vulnerability on Micro Focus Directory and Resource Administrator (DRA) pro... |
| CVE-2021-36165 | MEDIUM | 5.3 | 0.6% | Sep 28, 2021 | RICON Industrial Cellular Router S9922L 16.10.3(3794) is affected by cleartext storage of sensitive information and send... |
| CVE-2021-41095 | MEDIUM | 6.1 | 0.6% | Sep 27, 2021 | Discourse is an open source discussion platform. There is a cross-site scripting (XSS) vulnerability in versions 2.7.7 a... |
| CVE-2021-20035 | MEDIUM | 6.5 | 3.9% | Sep 27, 2021 | Improper neutralization of special elements in the SMA100 management interface allows a remote authenticated attacker to... |
| CVE-2021-36134 | MEDIUM | 6.5 | 0.5% | Sep 27, 2021 | Out of bounds write vulnerability in the JPEG parsing code of Netop Vision Pro up to and including 9.7.2 allows an adjac... |
| CVE-2021-23445 | MEDIUM | 6.1 | 1.8% | Sep 27, 2021 | This affects the package datatables.net before 1.11.3. If an array is passed to the HTML escape entities function it wou... |
| CVE-2021-40714 | MEDIUM | 6.1 | 1.1% | Sep 27, 2021 | Adobe Experience Manager version 6.5.9.0 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerabili... |
| CVE-2021-40713 | MEDIUM | 5.9 | 1.0% | Sep 27, 2021 | Adobe Experience Manager version 6.5.9.0 (and earlier) is affected by a improper certificate validation vulnerability in... |
| CVE-2021-40712 | MEDIUM | 6.5 | 1.7% | Sep 27, 2021 | Adobe Experience Manager version 6.5.9.0 (and earlier) is affected by a improper input validation vulnerability via the ... |
| CVE-2021-40711 | MEDIUM | 5.4 | 1.4% | Sep 27, 2021 | Adobe Experience Manager version 6.5.9.0 (and earlier) is affected by a stored XSS vulnerability when creating Content F... |
| CVE-2021-39828 | MEDIUM | 6.5 | 1.5% | Sep 27, 2021 | Adobe Digital Editions 4.5.11.187646 (and earlier) are affected by a privilege escalation vulnerability in the Digital E... |
| CVE-2021-39827 | MEDIUM | 6.5 | 1.5% | Sep 27, 2021 | Adobe Digital Editions 4.5.11.187646 (and earlier) are affected by an arbitrary file write vulnerability in the Digital ... |
| CVE-2021-36877 | MEDIUM | 6.5 | 0.4% | Sep 27, 2021 | Cross-Site Request Forgery (CSRF) vulnerability in WordPress uListing plugin (versions <= 2.0.5) makes it possible for a... |
| CVE-2021-36875 | MEDIUM | 4.8 | 0.7% | Sep 27, 2021 | Cross-site Scripting (XSS) vulnerability in Stylemix Directory Listings WordPress plugin – uListing allows Reflected XSS... |
| CVE-2021-36845 | MEDIUM | 4.8 | 0.7% | Sep 27, 2021 | Multiple Authenticated Stored Cross-Site Scripting (XSS) vulnerabilities in YITH Maintenance Mode (WordPress plugin) ver... |
| CVE-2021-36841 | MEDIUM | 5.4 | 0.6% | Sep 27, 2021 | Authenticated Stored Cross-Site Scripting (XSS) vulnerability in YITH Maintenance Mode (WordPress plugin) versions <= 1.... |
| CVE-2021-24671 | MEDIUM | 5.4 | 0.6% | Sep 27, 2021 | The MX Time Zone Clocks WordPress plugin before 3.4.1 does not escape the time_zone attribute of the mxmtzc_time_zone_cl... |
| CVE-2021-24670 | MEDIUM | 5.4 | 0.6% | Sep 27, 2021 | The CoolClock WordPress plugin before 4.3.5 does not escape some shortcode attributes, allowing users with a role as low... |
| CVE-2021-24661 | MEDIUM | 4.3 | 0.7% | Sep 27, 2021 | The PostX – Gutenberg Blocks for Post Grid WordPress plugin before 2.4.10, with Saved Templates Addon enabled, allows us... |
| CVE-2021-24660 | MEDIUM | 5.4 | 0.5% | Sep 27, 2021 | The PostX – Gutenberg Blocks for Post Grid WordPress plugin before 2.4.10, with Saved Templates Addon enabled, allows us... |
| CVE-2021-24659 | MEDIUM | 5.4 | 0.5% | Sep 27, 2021 | The PostX – Gutenberg Blocks for Post Grid WordPress plugin before 2.4.10 allows users with a role as low as Contributor... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now