2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-1898 | MEDIUM | 4.6 | 0.1% | Jul 13, 2021 | Possible buffer over-read due to incorrect overflow check when loading splash image in Snapdragon Consumer IOT, Snapdrag... |
| CVE-2021-1897 | MEDIUM | 4.6 | 0.1% | Jul 13, 2021 | Possible Buffer Over-read due to lack of validation of boundary checks when loading splash image in Snapdragon Consumer ... |
| CVE-2021-1896 | MEDIUM | 4.3 | 0.2% | Jul 13, 2021 | Weak configuration in WLAN could cause forwarding of unencrypted packets from one client to another in Snapdragon Comput... |
| CVE-2021-32754 | MEDIUM | 5.3 | 0.6% | Jul 12, 2021 | FlowDroid is a data flow analysis tool. FlowDroid versions prior to 2.9.0 contained an XML external entity (XXE) vulnera... |
| CVE-2021-32747 | MEDIUM | 6.5 | 1.4% | Jul 12, 2021 | Icinga Web 2 is an open source monitoring web interface, framework, and command-line interface. A vulnerability in which... |
| CVE-2021-32746 | MEDIUM | 5.3 | 1.3% | Jul 12, 2021 | Icinga Web 2 is an open source monitoring web interface, framework and command-line interface. Between versions 2.3.0 an... |
| CVE-2021-32741 | MEDIUM | 5.3 | 1.3% | Jul 12, 2021 | Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, the... |
| CVE-2021-32734 | MEDIUM | 5.3 | 1.4% | Jul 12, 2021 | Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, the... |
| CVE-2021-32733 | MEDIUM | 6.1 | 1.1% | Jul 12, 2021 | Nextcloud Text is a collaborative document editing application that uses Markdown. A cross-site scripting vulnerability ... |
| CVE-2021-32725 | MEDIUM | 5.3 | 1.2% | Jul 12, 2021 | Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, def... |
| CVE-2021-24454 | MEDIUM | 6.1 | 1.6% | Jul 12, 2021 | In the YOP Poll WordPress plugin before 6.2.8, when a pool is created with the options "Allow other answers", "Display o... |
| CVE-2021-24440 | MEDIUM | 4.8 | 0.6% | Jul 12, 2021 | The Sign-up Sheets WordPress plugin before 1.0.14 did not sanitise or escape some of its fields when creating a new shee... |
| CVE-2021-24439 | MEDIUM | 5.4 | 0.6% | Jul 12, 2021 | The Browser Screenshots WordPress plugin before 1.7.6 allowed authenticated users with a role as low as Contributor to p... |
| CVE-2021-24434 | MEDIUM | 6.1 | 0.4% | Jul 12, 2021 | The Glass WordPress plugin through 1.3.2 does not sanitise or escape its "Glass Pages" setting before outputting in a pa... |
| CVE-2021-24429 | MEDIUM | 6.1 | 1.2% | Jul 12, 2021 | The Salon booking system WordPress plugin before 6.3.1 does not properly sanitise and escape the First Name field when b... |
| CVE-2021-24427 | MEDIUM | 4.8 | 0.6% | Jul 12, 2021 | The W3 Total Cache WordPress plugin before 2.1.3 did not sanitise or escape some of its CDN settings, allowing high priv... |
| CVE-2021-24426 | MEDIUM | 4.8 | 0.6% | Jul 12, 2021 | The Backup by 10Web – Backup and Restore Plugin WordPress plugin through 1.0.20 does not sanitise or escape the tab para... |
| CVE-2021-24424 | MEDIUM | 5.4 | 0.6% | Jul 12, 2021 | The WP Reset – Most Advanced WordPress Reset Tool WordPress plugin before 1.90 did not sanitise or escape its extra_data... |
| CVE-2021-24421 | MEDIUM | 5.4 | 0.6% | Jul 12, 2021 | The WP JobSearch WordPress plugin before 1.7.4 did not sanitise or escape multiple of its parameters from the my-resume ... |
| CVE-2021-24420 | MEDIUM | 5.4 | 0.6% | Jul 12, 2021 | The Request a Quote WordPress plugin before 2.3.4 did not sanitise and escape some of its quote fields when adding/editi... |
| CVE-2021-24419 | MEDIUM | 4.8 | 0.6% | Jul 12, 2021 | The WP YouTube Lyte WordPress plugin before 1.7.16 did not sanitise or escape its lyte_yt_api_key and lyte_notification ... |
| CVE-2021-24418 | MEDIUM | 4.8 | 0.6% | Jul 12, 2021 | The Smooth Scroll Page Up/Down Buttons WordPress plugin through 1.4 does not properly sanitise and validate its psb_posi... |
| CVE-2021-24409 | MEDIUM | 6.1 | 1.8% | Jul 12, 2021 | The Prismatic WordPress plugin before 2.8 does not escape the 'tab' GET parameter before outputting it back in an attrib... |
| CVE-2021-24408 | MEDIUM | 5.4 | 0.6% | Jul 12, 2021 | The Prismatic WordPress plugin before 2.8 does not sanitise or validate some of its shortcode parameters, allowing users... |
| CVE-2021-24365 | MEDIUM | 5.4 | 0.9% | Jul 12, 2021 | The Admin Columns WordPress plugin Free before 4.3.2 and Pro before 5.5.2 allowed to configure individual columns for ta... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now