2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-37114MEDIUM5.3There is an Out-of-bounds read vulnerability in Smartphone.Successful exploitation of this vulnerability may affect serv...
CVE-2021-37113HIGH7.5There is a Privilege escalation vulnerability with the file system component in Smartphone.Successful exploitation of th...
CVE-2021-37112MEDIUM5.3Hisuite module has a External Control of System or Configuration Setting vulnerability.Successful exploitation of this v...
CVE-2021-37111HIGH7.5There is a Memory leakage vulnerability in Smartphone.Successful exploitation of this vulnerability may cause memory exh...
CVE-2021-37110HIGH7.5There is a Timing design defects in Smartphone.Successful exploitation of this vulnerability may affect service confiden...
CVE-2021-37098HIGH7.5Hilinksvc service exists a Data Processing Errors vulnerability .Successful exploitation of this vulnerability may cause...
CVE-2021-20148MEDIUM4.3ManageEngine ADSelfService Plus below build 6116 stores the password policy file for each domain under the html/ web roo...
CVE-2021-20147MEDIUM5.3ManageEngine ADSelfService Plus below build 6116 contains an observable response discrepancy in the UMCP operation of th...
CVE-2021-45817Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-11689. Reason: This candidate is a duplicate of ...
CVE-2021-46109MEDIUM6.1Invalid input sanitizing leads to reflected Cross Site Scripting (XSS) in ASUS RT-AC52U_B1 3.0.0.4.380.10931 can lead to...
CVE-2021-3837MEDIUM6.1openwhyd is vulnerable to Improper Authorization
CVE-2021-45428CRITICAL9.8TLR-2005KSH is affected by an incorrect access control vulnerability. THe PUT method is enabled so an attacker can uploa...
CVE-2021-44674MEDIUM6.5An information exposure issue has been discovered in Opmantek Open-AudIT 4.2.0. The vulnerability allows an authenticate...
CVE-2021-25040MEDIUM6.1The Booking Calendar WordPress plugin before 8.9.2 does not sanitise and escape the booking_type parameter before output...
CVE-2021-25030HIGH8.8The Events Made Easy WordPress plugin before 2.2.36 does not sanitise and escape the search_text parameter before using ...
CVE-2021-25027MEDIUM6.1The PowerPack Addons for Elementor WordPress plugin before 2.6.2 does not escape the tab parameter before outputting it ...
CVE-2021-25023HIGH7.2The Speed Booster Pack ⚡ PageSpeed Optimization Suite WordPress plugin before 4.3.3.1 does not escape the sbp_convert_ta...
CVE-2021-25022MEDIUM6.1The UpdraftPlus WordPress Backup Plugin WordPress plugin before 1.16.66 does not sanitise and escape the backup_timestam...
CVE-2021-25021MEDIUM4.9The OMGF | Host Google Fonts Locally WordPress plugin before 4.5.12 does not validate the cache directory setting, allow...
CVE-2021-25020MEDIUM4.9The CAOS | Host Google Analytics Locally WordPress plugin before 4.1.9 does not validate the cache directory setting, al...
CVE-2021-25016MEDIUM6.1The Chaty WordPress plugin before 2.8.3 and Chaty Pro WordPress plugin before 2.8.2 do not sanitise and escape the searc...
CVE-2021-25001MEDIUM6.1The Booster for WooCommerce WordPress plugin before 5.4.9 does not sanitise and escape the wcj_create_products_xml_resul...
CVE-2021-25000MEDIUM6.1The Booster for WooCommerce WordPress plugin before 5.4.9 does not sanitise and escape the wcj_delete_role parameter bef...
CVE-2021-24999MEDIUM6.1The Booster for WooCommerce WordPress plugin before 5.4.9 does not sanitise and escape the wcj_notice parameter before o...
CVE-2021-24991MEDIUM4.8The WooCommerce PDF Invoices & Packing Slips WordPress plugin before 2.10.5 does not escape the tab and section paramete...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now