2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-24395 | HIGH | 7.2 | 1.5% | Sep 6, 2021 | The editid GET parameter of the Embed Youtube Video WordPress plugin through 1.0 is not sanitised, escaped or validated ... |
| CVE-2021-24394 | HIGH | 7.2 | 1.5% | Sep 6, 2021 | An id GET parameter of the Easy Testimonial Manager WordPress plugin through 1.2.0 is not sanitised, escaped or validate... |
| CVE-2021-24393 | HIGH | 7.2 | 1.5% | Sep 6, 2021 | A c GET parameter of the Comment Highlighter WordPress plugin through 0.13 is not properly sanitised, escaped or validat... |
| CVE-2021-24392 | HIGH | 7.2 | 1.5% | Sep 6, 2021 | An id GET parameter of the WordPress Membership SwiftCloud.io WordPress plugin through 1.0 is not properly sanitised, es... |
| CVE-2021-24391 | HIGH | 8.8 | 1.5% | Sep 6, 2021 | An editid GET parameter of the Cashtomer WordPress plugin through 1.0.0 is not properly sanitised, escaped or validated ... |
| CVE-2021-24390 | HIGH | 7.2 | 1.5% | Sep 6, 2021 | A proid GET parameter of the WordPress支付宝Alipay|财付通Tenpay|贝宝PayPal集成插件 WordPress plugin through 3.7.2 is not sanitised, ... |
| CVE-2021-24303 | HIGH | 8.8 | 1.6% | Sep 6, 2021 | The JiangQie Official Website Mini Program WordPress plugin before 1.1.1 does not escape or validate the id GET paramete... |
| CVE-2021-40524 | HIGH | 7.5 | 4.4% | Sep 5, 2021 | In Pure-FTPd before 1.0.50, an incorrect max_filesize quota mechanism in the server allows attackers to upload files of ... |
| CVE-2021-40523 | HIGH | 7.5 | 0.9% | Sep 5, 2021 | In Contiki 3.0, Telnet option negotiation is mishandled. During negotiation between a server and a client, the server ma... |
| CVE-2021-40516 | HIGH | 7.5 | 1.5% | Sep 5, 2021 | WeeChat before 3.2.1 allows remote attackers to cause a denial of service (crash) via a crafted WebSocket frame that tri... |
| CVE-2021-23439 | MEDIUM | 6.1 | 0.9% | Sep 5, 2021 | This affects the package file-upload-with-preview before 4.2.0. A file containing malicious JavaScript code in the name ... |
| CVE-2021-40509 | MEDIUM | 5.4 | 0.9% | Sep 4, 2021 | ViewCommon.java in JForum2 2.7.0 allows XSS via a user signature. |
| CVE-2021-30624 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30624 Use after free in Autofill |
| CVE-2021-30623 | HIGH | 8.8 | 3.8% | Sep 3, 2021 | Chromium: CVE-2021-30623 Use after free in Bookmarks |
| CVE-2021-30622 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30622 Use after free in WebApp Installs |
| CVE-2021-30621 | MEDIUM | 6.5 | 3.3% | Sep 3, 2021 | Chromium: CVE-2021-30621 UI Spoofing in Autofill |
| CVE-2021-30620 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30620 Insufficient policy enforcement in Blink |
| CVE-2021-30619 | MEDIUM | 6.5 | 3.3% | Sep 3, 2021 | Chromium: CVE-2021-30619 UI Spoofing in Autofill |
| CVE-2021-30618 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30618 Inappropriate implementation in DevTools |
| CVE-2021-30617 | MEDIUM | 6.5 | 3.5% | Sep 3, 2021 | Chromium: CVE-2021-30617 Policy bypass in Blink |
| CVE-2021-30616 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30616 Use after free in Media |
| CVE-2021-30615 | MEDIUM | 6.5 | 5.3% | Sep 3, 2021 | Chromium: CVE-2021-30615 Cross-origin data leak in Navigation |
| CVE-2021-30614 | HIGH | 8.8 | 4.2% | Sep 3, 2021 | Chromium: CVE-2021-30614 Heap buffer overflow in TabStrip |
| CVE-2021-30613 | HIGH | 8.8 | 3.9% | Sep 3, 2021 | Chromium: CVE-2021-30613 Use after free in Base internals |
| CVE-2021-30612 | HIGH | 8.8 | 2.6% | Sep 3, 2021 | Chromium: CVE-2021-30612 Use after free in WebRTC |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now