2021 CVE Vulnerabilities
23,452 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-34863 | HIGH | 8.8 | 1.4% | Oct 25, 2021 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-2... |
| CVE-2021-34862 | HIGH | 8.8 | 0.8% | Oct 25, 2021 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-2... |
| CVE-2021-34861 | HIGH | 8.8 | 0.8% | Oct 25, 2021 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-2... |
| CVE-2021-34860 | MEDIUM | 6.5 | 1.4% | Oct 25, 2021 | This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Li... |
| CVE-2021-34859 | HIGH | 8.8 | 9.1% | Oct 25, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of TeamViewer 15.16.8.0. ... |
| CVE-2021-34857 | HIGH | 8.8 | 0.3% | Oct 25, 2021 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3 (... |
| CVE-2021-34856 | HIGH | 8.8 | 0.3% | Oct 25, 2021 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3 (... |
| CVE-2021-34855 | MEDIUM | 6.5 | 0.3% | Oct 25, 2021 | This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt... |
| CVE-2021-34854 | HIGH | 7.8 | 0.2% | Oct 25, 2021 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3 (... |
| CVE-2021-37624 | HIGH | 7.5 | 3.5% | Oct 25, 2021 | FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to ... |
| CVE-2021-21319 | MEDIUM | 5.4 | 0.9% | Oct 25, 2021 | Galette is a membership management web application geared towards non profit organizations. In versions prior to 0.9.5, ... |
| CVE-2021-41035 | CRITICAL | 9.8 | 1.7% | Oct 25, 2021 | In Eclipse Openj9 before version 0.29.0, the JVM does not throw IllegalAccessError for MethodHandles that invoke inacces... |
| CVE-2021-24885 | MEDIUM | 6.1 | 0.9% | Oct 25, 2021 | The YOP Poll WordPress plugin before 6.1.2 does not escape the perpage parameter before outputting it back in an attribu... |
| CVE-2021-24884 | CRITICAL | 9.6 | 3.1% | Oct 25, 2021 | The Formidable Form Builder WordPress plugin before 4.09.05 allows to inject certain HTML Tags like <audio>,<video>,<img... |
| CVE-2021-24785 | MEDIUM | 4.8 | 0.6% | Oct 25, 2021 | The Great Quotes WordPress plugin through 1.0.0 does not sanitise and escape the Quote and Author fields of its Quotes, ... |
| CVE-2021-24779 | MEDIUM | 6.5 | 0.6% | Oct 25, 2021 | The WP Debugging WordPress plugin before 2.11.0 has its update_settings() function hooked to admin_init and is missing a... |
| CVE-2021-24774 | HIGH | 7.2 | 1.3% | Oct 25, 2021 | The Check & Log Email WordPress plugin before 1.0.3 does not validate and escape the "order" and "orderby" GET parameter... |
| CVE-2021-24769 | HIGH | 7.2 | 1.3% | Oct 25, 2021 | The Permalink Manager Lite WordPress plugin before 2.2.13.1 does not validate and escape the orderby parameter before us... |
| CVE-2021-24744 | MEDIUM | 4.8 | 0.6% | Oct 25, 2021 | The WordPress Contact Forms by Cimatti WordPress plugin before 1.4.12 does not sanitise and escape the Form Title before... |
| CVE-2021-24699 | MEDIUM | 5.4 | 0.6% | Oct 25, 2021 | The Easy Media Download WordPress plugin before 1.1.7 does not escape the text argument of its shortcode, which could al... |
| CVE-2021-24662 | HIGH | 7.2 | 1.3% | Oct 25, 2021 | The Game Server Status WordPress plugin through 1.0 does not validate or escape the server_id parameter before using it ... |
| CVE-2021-24653 | MEDIUM | 4.8 | 0.6% | Oct 25, 2021 | The Cookie Bar WordPress plugin before 1.8.9 doesn't properly sanitise the Cookie Bar Message setting, which could allow... |
| CVE-2021-24608 | MEDIUM | 4.8 | 0.7% | Oct 25, 2021 | The Formidable Form Builder – Contact Form, Survey & Quiz Forms Plugin for WordPress plugin before 5.0.07 does not sanit... |
| CVE-2021-24544 | MEDIUM | 5.4 | 0.6% | Oct 25, 2021 | The Responsive WordPress Slider WordPress plugin through 2.2.0 does not sanitise and escape some of the Slider options, ... |
| CVE-2021-24543 | MEDIUM | 6.1 | 0.4% | Oct 25, 2021 | The jQuery Reply to Comment WordPress plugin through 1.31 does not have any CSRF check when saving its settings, nor san... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now