2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22524 | MEDIUM | 4.9 | 0.6% | Sep 13, 2021 | Injection attack caused the denial of service vulnerability in NetIQ Access Manager prior to 5.0.1 and 4.5.4 |
| CVE-2021-23435 | MEDIUM | 6.1 | 0.7% | Sep 12, 2021 | This affects the package clearance before 2.5.0. The vulnerability can be possible when users are able to set the value ... |
| CVE-2021-40347 | MEDIUM | 5.4 | 1.1% | Sep 10, 2021 | An issue was discovered in views/list.py in GNU Mailman Postorius before 1.3.5. An attacker (logged into any account) ca... |
| CVE-2021-3145 | MEDIUM | 6.7 | 0.5% | Sep 10, 2021 | In Ionic Identity Vault before 5, a local root attacker on an Android device can bypass biometric authentication. |
| CVE-2021-3646 | MEDIUM | 6.1 | 0.7% | Sep 10, 2021 | btcpayserver is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
| CVE-2021-38359 | MEDIUM | 6.1 | 0.8% | Sep 10, 2021 | The WordPress InviteBox Plugin for viral Refer-a-Friend Promotions WordPress plugin is vulnerable to Reflected Cross-Sit... |
| CVE-2021-38358 | MEDIUM | 6.1 | 0.8% | Sep 10, 2021 | The MoolaMojo WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the classes parameter found in the ~/... |
| CVE-2021-38357 | MEDIUM | 6.1 | 0.8% | Sep 10, 2021 | The SMS OVH WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the position parameter found in the ~/s... |
| CVE-2021-38355 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The Bug Library WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the successimportcount parameter fo... |
| CVE-2021-38354 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The GNU-Mailman Integration WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the gm_error parameter ... |
| CVE-2021-38353 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The Dropdown and scrollable Text WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the content parame... |
| CVE-2021-38352 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The Feedify – Web Push Notifications WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the feedify_ms... |
| CVE-2021-38351 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The OSD Subscribe WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the osd_subscribe_message paramet... |
| CVE-2021-38350 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The spideranalyse WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the date parameter found in the ~... |
| CVE-2021-38349 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The Integration of Moneybird for WooCommerce WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the er... |
| CVE-2021-38348 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The Advance Search WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the wpas_id parameter found in t... |
| CVE-2021-38347 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The Custom Website Data WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the id parameter found in t... |
| CVE-2021-38341 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The WooCommerce Payment Gateway Per Category WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to a r... |
| CVE-2021-38340 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The Wordpress Simple Shop WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the update_row parameter ... |
| CVE-2021-38339 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The Simple Matted Thumbnails WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to a reflected $_SERVE... |
| CVE-2021-38338 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The Border Loading Bar WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the `f` and `t` parameter fo... |
| CVE-2021-38337 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The RSVPMaker Excel WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to a reflected $_SERVER["PHP_SE... |
| CVE-2021-38336 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The Edit Comments XT WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to a reflected $_SERVER["PHP_S... |
| CVE-2021-38335 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The Wise Agent Capture Forms WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to a reflected $_SERVE... |
| CVE-2021-38334 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The WP Design Maps & Places WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the filename parameter ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now