2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-1898MEDIUM4.6Possible buffer over-read due to incorrect overflow check when loading splash image in Snapdragon Consumer IOT, Snapdrag...
CVE-2021-1897MEDIUM4.6Possible Buffer Over-read due to lack of validation of boundary checks when loading splash image in Snapdragon Consumer ...
CVE-2021-1896MEDIUM4.3Weak configuration in WLAN could cause forwarding of unencrypted packets from one client to another in Snapdragon Comput...
CVE-2021-32754MEDIUM5.3FlowDroid is a data flow analysis tool. FlowDroid versions prior to 2.9.0 contained an XML external entity (XXE) vulnera...
CVE-2021-32747MEDIUM6.5Icinga Web 2 is an open source monitoring web interface, framework, and command-line interface. A vulnerability in which...
CVE-2021-32746MEDIUM5.3Icinga Web 2 is an open source monitoring web interface, framework and command-line interface. Between versions 2.3.0 an...
CVE-2021-32741MEDIUM5.3Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, the...
CVE-2021-32734MEDIUM5.3Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, the...
CVE-2021-32733MEDIUM6.1Nextcloud Text is a collaborative document editing application that uses Markdown. A cross-site scripting vulnerability ...
CVE-2021-32725MEDIUM5.3Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, def...
CVE-2021-24454MEDIUM6.1In the YOP Poll WordPress plugin before 6.2.8, when a pool is created with the options "Allow other answers", "Display o...
CVE-2021-24440MEDIUM4.8The Sign-up Sheets WordPress plugin before 1.0.14 did not sanitise or escape some of its fields when creating a new shee...
CVE-2021-24439MEDIUM5.4The Browser Screenshots WordPress plugin before 1.7.6 allowed authenticated users with a role as low as Contributor to p...
CVE-2021-24434MEDIUM6.1The Glass WordPress plugin through 1.3.2 does not sanitise or escape its "Glass Pages" setting before outputting in a pa...
CVE-2021-24429MEDIUM6.1The Salon booking system WordPress plugin before 6.3.1 does not properly sanitise and escape the First Name field when b...
CVE-2021-24427MEDIUM4.8The W3 Total Cache WordPress plugin before 2.1.3 did not sanitise or escape some of its CDN settings, allowing high priv...
CVE-2021-24426MEDIUM4.8The Backup by 10Web – Backup and Restore Plugin WordPress plugin through 1.0.20 does not sanitise or escape the tab para...
CVE-2021-24424MEDIUM5.4The WP Reset – Most Advanced WordPress Reset Tool WordPress plugin before 1.90 did not sanitise or escape its extra_data...
CVE-2021-24421MEDIUM5.4The WP JobSearch WordPress plugin before 1.7.4 did not sanitise or escape multiple of its parameters from the my-resume ...
CVE-2021-24420MEDIUM5.4The Request a Quote WordPress plugin before 2.3.4 did not sanitise and escape some of its quote fields when adding/editi...
CVE-2021-24419MEDIUM4.8The WP YouTube Lyte WordPress plugin before 1.7.16 did not sanitise or escape its lyte_yt_api_key and lyte_notification ...
CVE-2021-24418MEDIUM4.8The Smooth Scroll Page Up/Down Buttons WordPress plugin through 1.4 does not properly sanitise and validate its psb_posi...
CVE-2021-24409MEDIUM6.1The Prismatic WordPress plugin before 2.8 does not escape the 'tab' GET parameter before outputting it back in an attrib...
CVE-2021-24408MEDIUM5.4The Prismatic WordPress plugin before 2.8 does not sanitise or validate some of its shortcode parameters, allowing users...
CVE-2021-24365MEDIUM5.4The Admin Columns WordPress plugin Free before 4.3.2 and Pro before 5.5.2 allowed to configure individual columns for ta...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now