2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-0578MEDIUM6.5In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informat...
CVE-2021-29056MEDIUM4.8Cross Site Scripting (XSS) vulnerability exists in Pixelimity 1.0 via the HTTP POST parameter to admin/setting.php.
CVE-2021-3615MEDIUM6.8A vulnerability was reported in Lenovo Smart Camera X3, X5, and C2E that could allow code execution if a specific file e...
CVE-2021-3459MEDIUM6.8A privilege escalation vulnerability was reported in the MM1000 device configuration web server, which could allow privi...
CVE-2021-3458MEDIUM4.6The Motorola MM1000 device configuration portal can be accessed without authentication, which could allow adapter settin...
CVE-2021-37710MEDIUM5.4Shopware is an open source eCommerce platform. Versions prior to 6.4.3.1 contain a Cross-Site Scripting vulnerability vi...
CVE-2021-37709MEDIUM6.5Shopware is an open source eCommerce platform. Versions prior to 6.4.3.1 contain a vulnerability involving an insecure d...
CVE-2021-36280MEDIUM5.5Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an incorrect permission assignment for critical resource vulner...
CVE-2021-36278MEDIUM5.5Dell EMC PowerScale OneFS versions 8.2.x, 9.1.0.x, and 9.1.1.1 contain a sensitive information exposure vulnerability in...
CVE-2021-21599MEDIUM6.7Dell EMC PowerScale OneFS versions 8.2.x - 9.2.1.x contain an OS command injection vulnerability. This may allow a user ...
CVE-2021-21595MEDIUM6.7Dell EMC PowerScale OneFS versions 8.2.x - 9.1.1.x contain an improper neutralization of special elements used in an OS ...
CVE-2021-21594MEDIUM5.3Dell PowerScale OneFS versions 8.2.2 - 9.1.0.x contain a use of get request method with sensitive query strings vulnerab...
CVE-2021-21592MEDIUM6.5Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x improperly handle an exceptional condition. A remote low privileged use...
CVE-2021-21568MEDIUM4.3Dell EMC PowerScale OneFS versions 8.2.x - 9.2.x contain an insufficient logging vulnerability. An authenticated user wi...
CVE-2021-38315MEDIUM6.1The SP Project & Document Manager WordPress plugin is vulnerable to attribute-based Reflected Cross-Site Scripting via t...
CVE-2021-34667MEDIUM6.1The Calendar_plugin WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to the use of `$_SERVER['PHP_SE...
CVE-2021-34666MEDIUM6.1The Add Sidebar WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the add parameter in the ~/wp_sideb...
CVE-2021-34665MEDIUM6.1The WP SEO Tags WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the saq_txt_the_filter parameter in...
CVE-2021-34664MEDIUM6.1The Moova for WooCommerce WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the lat parameter in the ...
CVE-2021-34663MEDIUM6.1The jQuery Tagline Rotator WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to the use of $_SERVER['...
CVE-2021-34659MEDIUM6.1The Plugmatter Pricing Table Lite WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the `email` param...
CVE-2021-34658MEDIUM6.1The Simple Popup Newsletter WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to the use of $_SERVER[...
CVE-2021-34657MEDIUM6.1The 2TypoFR WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the text function found in the ~/vendor...
CVE-2021-34656MEDIUM6.1The 2Way VideoCalls and Random Chat - HTML5 Webcam Videochat WordPress plugin is vulnerable to Reflected Cross-Site Scri...
CVE-2021-34655MEDIUM6.1The WP Songbook WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the url parameter found in the ~/in...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now