2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-0578 | MEDIUM | 6.5 | 0.3% | Aug 17, 2021 | In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informat... |
| CVE-2021-29056 | MEDIUM | 4.8 | 0.5% | Aug 17, 2021 | Cross Site Scripting (XSS) vulnerability exists in Pixelimity 1.0 via the HTTP POST parameter to admin/setting.php. |
| CVE-2021-3615 | MEDIUM | 6.8 | 0.3% | Aug 17, 2021 | A vulnerability was reported in Lenovo Smart Camera X3, X5, and C2E that could allow code execution if a specific file e... |
| CVE-2021-3459 | MEDIUM | 6.8 | 0.3% | Aug 17, 2021 | A privilege escalation vulnerability was reported in the MM1000 device configuration web server, which could allow privi... |
| CVE-2021-3458 | MEDIUM | 4.6 | 0.2% | Aug 17, 2021 | The Motorola MM1000 device configuration portal can be accessed without authentication, which could allow adapter settin... |
| CVE-2021-37710 | MEDIUM | 5.4 | 0.7% | Aug 16, 2021 | Shopware is an open source eCommerce platform. Versions prior to 6.4.3.1 contain a Cross-Site Scripting vulnerability vi... |
| CVE-2021-37709 | MEDIUM | 6.5 | 0.8% | Aug 16, 2021 | Shopware is an open source eCommerce platform. Versions prior to 6.4.3.1 contain a vulnerability involving an insecure d... |
| CVE-2021-36280 | MEDIUM | 5.5 | 0.2% | Aug 16, 2021 | Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an incorrect permission assignment for critical resource vulner... |
| CVE-2021-36278 | MEDIUM | 5.5 | 0.6% | Aug 16, 2021 | Dell EMC PowerScale OneFS versions 8.2.x, 9.1.0.x, and 9.1.1.1 contain a sensitive information exposure vulnerability in... |
| CVE-2021-21599 | MEDIUM | 6.7 | 0.4% | Aug 16, 2021 | Dell EMC PowerScale OneFS versions 8.2.x - 9.2.1.x contain an OS command injection vulnerability. This may allow a user ... |
| CVE-2021-21595 | MEDIUM | 6.7 | 0.2% | Aug 16, 2021 | Dell EMC PowerScale OneFS versions 8.2.x - 9.1.1.x contain an improper neutralization of special elements used in an OS ... |
| CVE-2021-21594 | MEDIUM | 5.3 | 0.8% | Aug 16, 2021 | Dell PowerScale OneFS versions 8.2.2 - 9.1.0.x contain a use of get request method with sensitive query strings vulnerab... |
| CVE-2021-21592 | MEDIUM | 6.5 | 0.8% | Aug 16, 2021 | Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x improperly handle an exceptional condition. A remote low privileged use... |
| CVE-2021-21568 | MEDIUM | 4.3 | 0.6% | Aug 16, 2021 | Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an insufficient logging vulnerability. An authenticated user wi... |
| CVE-2021-38315 | MEDIUM | 6.1 | 0.9% | Aug 16, 2021 | The SP Project & Document Manager WordPress plugin is vulnerable to attribute-based Reflected Cross-Site Scripting via t... |
| CVE-2021-34667 | MEDIUM | 6.1 | 0.9% | Aug 16, 2021 | The Calendar_plugin WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to the use of `$_SERVER['PHP_SE... |
| CVE-2021-34666 | MEDIUM | 6.1 | 0.8% | Aug 16, 2021 | The Add Sidebar WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the add parameter in the ~/wp_sideb... |
| CVE-2021-34665 | MEDIUM | 6.1 | 0.8% | Aug 16, 2021 | The WP SEO Tags WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the saq_txt_the_filter parameter in... |
| CVE-2021-34664 | MEDIUM | 6.1 | 0.9% | Aug 16, 2021 | The Moova for WooCommerce WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the lat parameter in the ... |
| CVE-2021-34663 | MEDIUM | 6.1 | 0.9% | Aug 16, 2021 | The jQuery Tagline Rotator WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to the use of $_SERVER['... |
| CVE-2021-34659 | MEDIUM | 6.1 | 0.9% | Aug 16, 2021 | The Plugmatter Pricing Table Lite WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the `email` param... |
| CVE-2021-34658 | MEDIUM | 6.1 | 0.9% | Aug 16, 2021 | The Simple Popup Newsletter WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to the use of $_SERVER[... |
| CVE-2021-34657 | MEDIUM | 6.1 | 0.8% | Aug 16, 2021 | The 2TypoFR WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the text function found in the ~/vendor... |
| CVE-2021-34656 | MEDIUM | 6.1 | 0.9% | Aug 16, 2021 | The 2Way VideoCalls and Random Chat - HTML5 Webcam Videochat WordPress plugin is vulnerable to Reflected Cross-Site Scri... |
| CVE-2021-34655 | MEDIUM | 6.1 | 0.8% | Aug 16, 2021 | The WP Songbook WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the url parameter found in the ~/in... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now