2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-24394 | HIGH | 7.2 | 1.5% | Sep 6, 2021 | An id GET parameter of the Easy Testimonial Manager WordPress plugin through 1.2.0 is not sanitised, escaped or validate... |
| CVE-2021-24393 | HIGH | 7.2 | 1.5% | Sep 6, 2021 | A c GET parameter of the Comment Highlighter WordPress plugin through 0.13 is not properly sanitised, escaped or validat... |
| CVE-2021-24392 | HIGH | 7.2 | 1.5% | Sep 6, 2021 | An id GET parameter of the WordPress Membership SwiftCloud.io WordPress plugin through 1.0 is not properly sanitised, es... |
| CVE-2021-24391 | HIGH | 8.8 | 1.5% | Sep 6, 2021 | An editid GET parameter of the Cashtomer WordPress plugin through 1.0.0 is not properly sanitised, escaped or validated ... |
| CVE-2021-24390 | HIGH | 7.2 | 1.5% | Sep 6, 2021 | A proid GET parameter of the WordPress支付宝Alipay|财付通Tenpay|贝宝PayPal集成插件 WordPress plugin through 3.7.2 is not sanitised, ... |
| CVE-2021-24303 | HIGH | 8.8 | 1.6% | Sep 6, 2021 | The JiangQie Official Website Mini Program WordPress plugin before 1.1.1 does not escape or validate the id GET paramete... |
| CVE-2021-40524 | HIGH | 7.5 | 4.4% | Sep 5, 2021 | In Pure-FTPd before 1.0.50, an incorrect max_filesize quota mechanism in the server allows attackers to upload files of ... |
| CVE-2021-40523 | HIGH | 7.5 | 0.9% | Sep 5, 2021 | In Contiki 3.0, Telnet option negotiation is mishandled. During negotiation between a server and a client, the server ma... |
| CVE-2021-40516 | HIGH | 7.5 | 1.5% | Sep 5, 2021 | WeeChat before 3.2.1 allows remote attackers to cause a denial of service (crash) via a crafted WebSocket frame that tri... |
| CVE-2021-30624 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30624 Use after free in Autofill |
| CVE-2021-30623 | HIGH | 8.8 | 3.8% | Sep 3, 2021 | Chromium: CVE-2021-30623 Use after free in Bookmarks |
| CVE-2021-30622 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30622 Use after free in WebApp Installs |
| CVE-2021-30620 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30620 Insufficient policy enforcement in Blink |
| CVE-2021-30618 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30618 Inappropriate implementation in DevTools |
| CVE-2021-30616 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30616 Use after free in Media |
| CVE-2021-30614 | HIGH | 8.8 | 4.2% | Sep 3, 2021 | Chromium: CVE-2021-30614 Heap buffer overflow in TabStrip |
| CVE-2021-30613 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30613 Use after free in Base internals |
| CVE-2021-30612 | HIGH | 8.8 | 2.6% | Sep 3, 2021 | Chromium: CVE-2021-30612 Use after free in WebRTC |
| CVE-2021-30611 | HIGH | 8.8 | 2.6% | Sep 3, 2021 | Chromium: CVE-2021-30611 Use after free in WebRTC |
| CVE-2021-30610 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30610 Use after free in Extensions API |
| CVE-2021-30609 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30609 Use after free in Sign-In |
| CVE-2021-30608 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30608 Use after free in Web Share |
| CVE-2021-30607 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30607 Use after free in Permissions |
| CVE-2021-30606 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30606 Use after free in Blink |
| CVE-2021-23437 | HIGH | 7.5 | 2.9% | Sep 3, 2021 | The package pillow 5.2.0 and before 8.3.2 are vulnerable to Regular Expression Denial of Service (ReDoS) via the getrgb ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now