2021 CVE Vulnerabilities
23,464 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-24447 | MEDIUM | 5.3 | 1.4% | Jul 19, 2021 | The WP Image Zoom WordPress plugin before 1.47 did not validate its tab parameter before using it in the include_once() ... |
| CVE-2021-24436 | MEDIUM | 6.1 | 1.9% | Jul 19, 2021 | The W3 Total Cache WordPress plugin before 2.1.4 was vulnerable to a reflected Cross-Site Scripting (XSS) security vulne... |
| CVE-2021-33592 | CRITICAL | 9.8 | 2.1% | Jul 19, 2021 | NAVER Toolbar before 4.0.30.323 allows remote attackers to execute arbitrary code via a crafted upgrade.xml file. Specia... |
| CVE-2021-36773 | HIGH | 7.5 | 1.3% | Jul 18, 2021 | uBlock Origin before 1.36.2 and nMatrix before 4.4.9 support an arbitrary depth of parameter nesting for strict blocking... |
| CVE-2021-36772 | MEDIUM | 6.1 | 0.9% | Jul 17, 2021 | Zoho ManageEngine ADManager Plus before 7110 allows stored XSS. |
| CVE-2021-36771 | MEDIUM | 6.1 | 0.9% | Jul 17, 2021 | Zoho ManageEngine ADManager Plus before 7110 allows reflected XSS. |
| CVE-2021-33911 | CRITICAL | 9.8 | 5.3% | Jul 17, 2021 | Zoho ManageEngine ADManager Plus before 7110 allows remote code execution. |
| CVE-2021-36213 | HIGH | 7.5 | 1.7% | Jul 17, 2021 | HashiCorp Consul and Consul Enterprise 1.9.0 through 1.10.0 default deny policy with a single L7 application-aware inten... |
| CVE-2021-32574 | HIGH | 7.5 | 1.5% | Jul 17, 2021 | HashiCorp Consul and Consul Enterprise 1.3.0 through 1.10.0 Envoy proxy TLS configuration does not validate destination ... |
| CVE-2021-36769 | MEDIUM | 5.3 | 1.0% | Jul 17, 2021 | A reordering issue exists in Telegram before 7.8.1 for Android, Telegram before 7.8.3 for iOS, and Telegram Desktop befo... |
| CVE-2021-3614 | MEDIUM | 6.8 | 0.2% | Jul 16, 2021 | A vulnerability was reported on some Lenovo Notebook systems that could allow an attacker with physical access to elevat... |
| CVE-2021-3550 | HIGH | 7.8 | 0.2% | Jul 16, 2021 | A DLL search path vulnerability was reported in Lenovo PCManager, prior to version 3.0.500.5102, that could allow privil... |
| CVE-2021-3453 | MEDIUM | 4.6 | 0.2% | Jul 16, 2021 | Some Lenovo Notebook, ThinkPad, and Lenovo Desktop systems have BIOS modules unprotected by Intel Boot Guard that could ... |
| CVE-2021-3452 | MEDIUM | 6.7 | 0.3% | Jul 16, 2021 | A potential vulnerability in the system shutdown SMI callback function in some ThinkPad models may allow an attacker wit... |
| CVE-2021-34481 | HIGH | 8.8 | 45.4% | Jul 16, 2021 | A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file ... |
| CVE-2021-34467 | HIGH | 7.1 | 5.4% | Jul 16, 2021 | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2021-34466 | MEDIUM | 5.7 | 0.6% | Jul 16, 2021 | Windows Hello Security Feature Bypass Vulnerability |
| CVE-2021-34464 | HIGH | 7.8 | 2.9% | Jul 16, 2021 | Microsoft Defender Remote Code Execution Vulnerability |
| CVE-2021-34462 | HIGH | 7 | 0.8% | Jul 16, 2021 | Windows AppX Deployment Extensions Elevation of Privilege Vulnerability |
| CVE-2021-34461 | HIGH | 7.8 | 0.5% | Jul 16, 2021 | Windows Container Isolation FS Filter Driver Elevation of Privilege Vulnerability |
| CVE-2021-34460 | HIGH | 7.8 | 0.5% | Jul 16, 2021 | Windows Storage Spaces Controller Elevation of Privilege Vulnerability |
| CVE-2021-34459 | HIGH | 7.8 | 0.5% | Jul 16, 2021 | Windows AppContainer Elevation Of Privilege Vulnerability |
| CVE-2021-34458 | CRITICAL | 9.9 | 2.5% | Jul 16, 2021 | Windows Kernel Remote Code Execution Vulnerability |
| CVE-2021-34457 | MEDIUM | 5.5 | 0.8% | Jul 16, 2021 | Windows Remote Access Connection Manager Information Disclosure Vulnerability |
| CVE-2021-34456 | HIGH | 7.8 | 0.5% | Jul 16, 2021 | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now