2021 CVE Vulnerabilities

23,452 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-34863HIGH8.8This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-2...
CVE-2021-34862HIGH8.8This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-2...
CVE-2021-34861HIGH8.8This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-2...
CVE-2021-34860MEDIUM6.5This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Li...
CVE-2021-34859HIGH8.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of TeamViewer 15.16.8.0. ...
CVE-2021-34857HIGH8.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3 (...
CVE-2021-34856HIGH8.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3 (...
CVE-2021-34855MEDIUM6.5This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt...
CVE-2021-34854HIGH7.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3 (...
CVE-2021-37624HIGH7.5FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to ...
CVE-2021-21319MEDIUM5.4Galette is a membership management web application geared towards non profit organizations. In versions prior to 0.9.5, ...
CVE-2021-41035CRITICAL9.8In Eclipse Openj9 before version 0.29.0, the JVM does not throw IllegalAccessError for MethodHandles that invoke inacces...
CVE-2021-24885MEDIUM6.1The YOP Poll WordPress plugin before 6.1.2 does not escape the perpage parameter before outputting it back in an attribu...
CVE-2021-24884CRITICAL9.6The Formidable Form Builder WordPress plugin before 4.09.05 allows to inject certain HTML Tags like <audio>,<video>,<img...
CVE-2021-24785MEDIUM4.8The Great Quotes WordPress plugin through 1.0.0 does not sanitise and escape the Quote and Author fields of its Quotes, ...
CVE-2021-24779MEDIUM6.5The WP Debugging WordPress plugin before 2.11.0 has its update_settings() function hooked to admin_init and is missing a...
CVE-2021-24774HIGH7.2The Check & Log Email WordPress plugin before 1.0.3 does not validate and escape the "order" and "orderby" GET parameter...
CVE-2021-24769HIGH7.2The Permalink Manager Lite WordPress plugin before 2.2.13.1 does not validate and escape the orderby parameter before us...
CVE-2021-24744MEDIUM4.8The WordPress Contact Forms by Cimatti WordPress plugin before 1.4.12 does not sanitise and escape the Form Title before...
CVE-2021-24699MEDIUM5.4The Easy Media Download WordPress plugin before 1.1.7 does not escape the text argument of its shortcode, which could al...
CVE-2021-24662HIGH7.2The Game Server Status WordPress plugin through 1.0 does not validate or escape the server_id parameter before using it ...
CVE-2021-24653MEDIUM4.8The Cookie Bar WordPress plugin before 1.8.9 doesn't properly sanitise the Cookie Bar Message setting, which could allow...
CVE-2021-24608MEDIUM4.8The Formidable Form Builder – Contact Form, Survey & Quiz Forms Plugin for WordPress plugin before 5.0.07 does not sanit...
CVE-2021-24544MEDIUM5.4The Responsive WordPress Slider WordPress plugin through 2.2.0 does not sanitise and escape some of the Slider options, ...
CVE-2021-24543MEDIUM6.1The jQuery Reply to Comment WordPress plugin through 1.31 does not have any CSRF check when saving its settings, nor san...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now