2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-30205 | MEDIUM | 5.3 | 0.4% | Jun 27, 2023 | Incorrect access control in the component /index.php?mod=system&op=orgtree of dzzoffice 2.02.1_SC_UTF8 allows unauthenti... |
| CVE-2021-30203 | MEDIUM | 6.1 | 0.6% | Jun 27, 2023 | A reflected cross-site scripting (XSS) vulnerability in the zero parameter of dzzoffice 2.02.1_SC_UTF8 allows attackers ... |
| CVE-2021-31280 | MEDIUM | 6.1 | 0.4% | Jun 14, 2023 | An issue was discovered in tp5cms through 2017-05-25. admin.php/system/set.html has XSS via the keywords parameter. |
| CVE-2021-46889 | MEDIUM | 6.1 | 0.6% | Jun 7, 2023 | The 10Web Photo Gallery plugin through 1.5.69 for WordPress allows XSS via theme_id for bwg_frontend_data. NOTE: other p... |
| CVE-2021-4379 | MEDIUM | 6.5 | 0.8% | Jun 7, 2023 | The WooCommerce Multi Currency plugin for WordPress is vulnerable to authorization bypass due to a missing capability ch... |
| CVE-2021-4383 | MEDIUM | 4.3 | 0.8% | Jun 7, 2023 | The WP Quick FrontEnd Editor plugin for WordPress is vulnerable to page content injection in versions up to, and includi... |
| CVE-2021-4378 | MEDIUM | 5.4 | 0.5% | Jun 7, 2023 | The WP Quick FrontEnd Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and in... |
| CVE-2021-4377 | MEDIUM | 6.5 | 1.0% | Jun 7, 2023 | The Doneren met Mollie plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and including, 2... |
| CVE-2021-4376 | MEDIUM | 4.3 | 0.6% | Jun 7, 2023 | The WooCommerce Multi Currency plugin for WordPress is vulnerable to Missing Authorization in versions up to, and inclu... |
| CVE-2021-4375 | MEDIUM | 4.3 | 0.6% | Jun 7, 2023 | The Welcart e-Commerce plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on t... |
| CVE-2021-4373 | MEDIUM | 4.3 | 0.5% | Jun 7, 2023 | The Better Search plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.5... |
| CVE-2021-4372 | MEDIUM | 6.1 | 0.6% | Jun 7, 2023 | The WooCommerce Dynamic Pricing and Discounts plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versi... |
| CVE-2021-4371 | MEDIUM | 4.3 | 0.7% | Jun 7, 2023 | The WP Quick FrontEnd Editor plugin for WordPress is vulnerable to Setting Changs in versions up to, and including, 5.5.... |
| CVE-2021-4369 | MEDIUM | 5.3 | 0.8% | Jun 7, 2023 | The Frontend File Manager plugin for WordPress is vulnerable to Unauthenticated Content Injection in versions up to, and... |
| CVE-2021-4367 | MEDIUM | 5.4 | 0.7% | Jun 7, 2023 | The Flo Forms – Easy Drag & Drop Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Opti... |
| CVE-2021-4366 | MEDIUM | 4.3 | 0.6% | Jun 7, 2023 | The PWA for WP & AMP plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the... |
| CVE-2021-4365 | MEDIUM | 6.1 | 0.8% | Jun 7, 2023 | The Frontend File Manager plugin for WordPress is vulnerable to Unauthenticated Stored Cross-Site Scripting in versions ... |
| CVE-2021-4364 | MEDIUM | 4.3 | 0.7% | Jun 7, 2023 | The JobSearch WP Job Board plugin for WordPress is vulnerable to authorization bypass due to a missing capability check ... |
| CVE-2021-4363 | MEDIUM | 6.1 | 0.8% | Jun 7, 2023 | The WP Quick FrontEnd Editor plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and... |
| CVE-2021-4359 | MEDIUM | 5.3 | 0.9% | Jun 7, 2023 | The Frontend File Manager plugin for WordPress is vulnerable to Unauthenticated Arbitrary Post Deletion in versions up t... |
| CVE-2021-4358 | MEDIUM | 6.1 | 0.8% | Jun 7, 2023 | The WP DSGVO Tools (GDPR) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an unknown parameter in ... |
| CVE-2021-4357 | MEDIUM | 5.3 | 1.0% | Jun 7, 2023 | The uListing plugin for WordPress is vulnerable to authorization bypass due to missing capability checks, and a missing ... |
| CVE-2021-4355 | MEDIUM | 5.3 | 0.8% | Jun 7, 2023 | The Welcart e-Commerce plugin for WordPress is vulnerable to authorization bypass due to missing capability checks on th... |
| CVE-2021-4352 | MEDIUM | 5.3 | 0.9% | Jun 7, 2023 | The JobSearch WP Job Board plugin for WordPress is vulnerable to authorization bypass due to a missing capability check ... |
| CVE-2021-4351 | MEDIUM | 5.3 | 0.7% | Jun 7, 2023 | The Frontend File Manager plugin for WordPress is vulnerable to Unauthenticated Post Meta Change in versions up to, and ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now