2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-38333 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The WP Scrippets WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to a reflected $_SERVER["PHP_SELF"... |
| CVE-2021-38332 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The On Page SEO + Whatsapp Chat Button Plugin WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to a ... |
| CVE-2021-38331 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The WP-T-Wap WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the posted parameter found in the ~/wa... |
| CVE-2021-38330 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The Yet Another bol.com Plugin WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to a reflected $_SER... |
| CVE-2021-38329 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The DJ EmailPublish WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to a reflected $_SERVER["PHP_SE... |
| CVE-2021-38328 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The Notices WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to a reflected $_SERVER["PHP_SELF"] val... |
| CVE-2021-38327 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The YouTube Video Inserter WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to a reflected $_SERVER[... |
| CVE-2021-38326 | MEDIUM | 6.1 | 0.9% | Sep 10, 2021 | The Post Title Counter WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the notice parameter found i... |
| CVE-2021-35976 | MEDIUM | 6.1 | 1.1% | Sep 10, 2021 | The feature to preview a website in Plesk Obsidian 18.0.0 through 18.0.32 on Linux is vulnerable to reflected XSS via th... |
| CVE-2021-33011 | MEDIUM | 4.3 | 0.4% | Sep 10, 2021 | All versions of the afffected TOYOPUC-PC10 Series,TOYOPUC-Plus Series,TOYOPUC-PC3J/PC2J Series, TOYOPUC-Nano Series prod... |
| CVE-2021-39203 | MEDIUM | 6.5 | 0.9% | Sep 9, 2021 | WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database... |
| CVE-2021-39202 | MEDIUM | 5.4 | 0.8% | Sep 9, 2021 | WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database... |
| CVE-2021-39201 | MEDIUM | 5.4 | 1.5% | Sep 9, 2021 | WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database... |
| CVE-2021-39200 | MEDIUM | 5.3 | 2.1% | Sep 9, 2021 | WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database... |
| CVE-2021-38325 | MEDIUM | 6.1 | 0.9% | Sep 9, 2021 | The User Activation Email WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the uae-key parameter fou... |
| CVE-2021-38323 | MEDIUM | 6.1 | 0.9% | Sep 9, 2021 | The RentPress WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the selections parameter found in the... |
| CVE-2021-38322 | MEDIUM | 6.1 | 0.9% | Sep 9, 2021 | The Twitter Friends Widget WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the pmc_TF_user and pmc_... |
| CVE-2021-38321 | MEDIUM | 6.1 | 0.9% | Sep 9, 2021 | The Custom Menu Plugin WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the selected_menu parameter ... |
| CVE-2021-38320 | MEDIUM | 6.1 | 0.9% | Sep 9, 2021 | The simpleSAMLphp Authentication WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to a reflected $_S... |
| CVE-2021-38319 | MEDIUM | 6.1 | 0.9% | Sep 9, 2021 | The More From Google WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to a reflected $_SERVER["PHP_S... |
| CVE-2021-38318 | MEDIUM | 6.1 | 0.9% | Sep 9, 2021 | The 3D Cover Carousel WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the id parameter in the ~/cov... |
| CVE-2021-38317 | MEDIUM | 6.1 | 0.9% | Sep 9, 2021 | The Konnichiwa! Membership WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the plan_id parameter in... |
| CVE-2021-38316 | MEDIUM | 6.1 | 0.9% | Sep 9, 2021 | The WP Academic People List WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the category_name param... |
| CVE-2021-28914 | MEDIUM | 6.5 | 1.0% | Sep 9, 2021 | BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow the user to set a weak password because the strength is shown ... |
| CVE-2021-25466 | MEDIUM | 5.9 | 0.7% | Sep 9, 2021 | Improper scheme check vulnerability in Samsung Internet prior to version 15.0.2.47 allows attackers to perform Man-in-th... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now