2021 CVE Vulnerabilities

23,466 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-1896MEDIUM4.3Weak configuration in WLAN could cause forwarding of unencrypted packets from one client to another in Snapdragon Comput...
CVE-2021-1890HIGH7.8Improper length check of public exponent in RSA import key function could cause memory corruption. in Snapdragon Auto, S...
CVE-2021-1889HIGH7.8Possible buffer overflow due to lack of length check in Trusted Application in Snapdragon Auto, Snapdragon Compute, Snap...
CVE-2021-1888HIGH7.8Memory corruption in key parsing and import function due to double freeing the same heap allocation in Snapdragon Auto, ...
CVE-2021-1887HIGH7.5An assertion can be reached in the WLAN subsystem while using the Wi-Fi Fine Timing Measurement protocol in Snapdragon W...
CVE-2021-1886HIGH7.8Incorrect handling of pointers in trusted application key import mechanism could cause memory corruption in Snapdragon A...
CVE-2021-32754MEDIUM5.3FlowDroid is a data flow analysis tool. FlowDroid versions prior to 2.9.0 contained an XML external entity (XXE) vulnera...
CVE-2021-32747MEDIUM6.5Icinga Web 2 is an open source monitoring web interface, framework, and command-line interface. A vulnerability in which...
CVE-2021-32746MEDIUM5.3Icinga Web 2 is an open source monitoring web interface, framework and command-line interface. Between versions 2.3.0 an...
CVE-2021-32741MEDIUM5.3Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, the...
CVE-2021-32734MEDIUM5.3Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, the...
CVE-2021-32733MEDIUM6.1Nextcloud Text is a collaborative document editing application that uses Markdown. A cross-site scripting vulnerability ...
CVE-2021-32727HIGH7.5Nextcloud Android Client is the Android client for Nextcloud. Clients using the Nextcloud end-to-end encryption feature ...
CVE-2021-32726CRITICAL9.8Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, web...
CVE-2021-32725MEDIUM5.3Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, def...
CVE-2021-24454MEDIUM6.1In the YOP Poll WordPress plugin before 6.2.8, when a pool is created with the options "Allow other answers", "Display o...
CVE-2021-24442CRITICAL9.8The Poll, Survey, Questionnaire and Voting system WordPress plugin before 1.5.3 did not sanitise, escape or validate the...
CVE-2021-24441HIGH8The Sign-up Sheets WordPress plugin before 1.0.14 does not not sanitise or validate the Sheet title when generating the ...
CVE-2021-24440MEDIUM4.8The Sign-up Sheets WordPress plugin before 1.0.14 did not sanitise or escape some of its fields when creating a new shee...
CVE-2021-24439MEDIUM5.4The Browser Screenshots WordPress plugin before 1.7.6 allowed authenticated users with a role as low as Contributor to p...
CVE-2021-24434MEDIUM6.1The Glass WordPress plugin through 1.3.2 does not sanitise or escape its "Glass Pages" setting before outputting in a pa...
CVE-2021-24429MEDIUM6.1The Salon booking system WordPress plugin before 6.3.1 does not properly sanitise and escape the First Name field when b...
CVE-2021-24427MEDIUM4.8The W3 Total Cache WordPress plugin before 2.1.3 did not sanitise or escape some of its CDN settings, allowing high priv...
CVE-2021-24426MEDIUM4.8The Backup by 10Web – Backup and Restore Plugin WordPress plugin through 1.0.20 does not sanitise or escape the tab para...
CVE-2021-24424MEDIUM5.4The WP Reset – Most Advanced WordPress Reset Tool WordPress plugin before 1.90 did not sanitise or escape its extra_data...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now