2021 CVE Vulnerabilities
23,466 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-1896 | MEDIUM | 4.3 | 0.2% | Jul 13, 2021 | Weak configuration in WLAN could cause forwarding of unencrypted packets from one client to another in Snapdragon Comput... |
| CVE-2021-1890 | HIGH | 7.8 | 0.2% | Jul 13, 2021 | Improper length check of public exponent in RSA import key function could cause memory corruption. in Snapdragon Auto, S... |
| CVE-2021-1889 | HIGH | 7.8 | 0.2% | Jul 13, 2021 | Possible buffer overflow due to lack of length check in Trusted Application in Snapdragon Auto, Snapdragon Compute, Snap... |
| CVE-2021-1888 | HIGH | 7.8 | 0.2% | Jul 13, 2021 | Memory corruption in key parsing and import function due to double freeing the same heap allocation in Snapdragon Auto, ... |
| CVE-2021-1887 | HIGH | 7.5 | 0.6% | Jul 13, 2021 | An assertion can be reached in the WLAN subsystem while using the Wi-Fi Fine Timing Measurement protocol in Snapdragon W... |
| CVE-2021-1886 | HIGH | 7.8 | 0.2% | Jul 13, 2021 | Incorrect handling of pointers in trusted application key import mechanism could cause memory corruption in Snapdragon A... |
| CVE-2021-32754 | MEDIUM | 5.3 | 0.6% | Jul 12, 2021 | FlowDroid is a data flow analysis tool. FlowDroid versions prior to 2.9.0 contained an XML external entity (XXE) vulnera... |
| CVE-2021-32747 | MEDIUM | 6.5 | 1.4% | Jul 12, 2021 | Icinga Web 2 is an open source monitoring web interface, framework, and command-line interface. A vulnerability in which... |
| CVE-2021-32746 | MEDIUM | 5.3 | 1.3% | Jul 12, 2021 | Icinga Web 2 is an open source monitoring web interface, framework and command-line interface. Between versions 2.3.0 an... |
| CVE-2021-32741 | MEDIUM | 5.3 | 1.3% | Jul 12, 2021 | Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, the... |
| CVE-2021-32734 | MEDIUM | 5.3 | 1.4% | Jul 12, 2021 | Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, the... |
| CVE-2021-32733 | MEDIUM | 6.1 | 1.1% | Jul 12, 2021 | Nextcloud Text is a collaborative document editing application that uses Markdown. A cross-site scripting vulnerability ... |
| CVE-2021-32727 | HIGH | 7.5 | 0.7% | Jul 12, 2021 | Nextcloud Android Client is the Android client for Nextcloud. Clients using the Nextcloud end-to-end encryption feature ... |
| CVE-2021-32726 | CRITICAL | 9.8 | 1.8% | Jul 12, 2021 | Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, web... |
| CVE-2021-32725 | MEDIUM | 5.3 | 1.2% | Jul 12, 2021 | Nextcloud Server is a Nextcloud package that handles data storage. In versions prior to 19.0.13, 20.011, and 21.0.3, def... |
| CVE-2021-24454 | MEDIUM | 6.1 | 1.6% | Jul 12, 2021 | In the YOP Poll WordPress plugin before 6.2.8, when a pool is created with the options "Allow other answers", "Display o... |
| CVE-2021-24442 | CRITICAL | 9.8 | 46.9% | Jul 12, 2021 | The Poll, Survey, Questionnaire and Voting system WordPress plugin before 1.5.3 did not sanitise, escape or validate the... |
| CVE-2021-24441 | HIGH | 8 | 1.3% | Jul 12, 2021 | The Sign-up Sheets WordPress plugin before 1.0.14 does not not sanitise or validate the Sheet title when generating the ... |
| CVE-2021-24440 | MEDIUM | 4.8 | 0.6% | Jul 12, 2021 | The Sign-up Sheets WordPress plugin before 1.0.14 did not sanitise or escape some of its fields when creating a new shee... |
| CVE-2021-24439 | MEDIUM | 5.4 | 0.6% | Jul 12, 2021 | The Browser Screenshots WordPress plugin before 1.7.6 allowed authenticated users with a role as low as Contributor to p... |
| CVE-2021-24434 | MEDIUM | 6.1 | 0.4% | Jul 12, 2021 | The Glass WordPress plugin through 1.3.2 does not sanitise or escape its "Glass Pages" setting before outputting in a pa... |
| CVE-2021-24429 | MEDIUM | 6.1 | 1.2% | Jul 12, 2021 | The Salon booking system WordPress plugin before 6.3.1 does not properly sanitise and escape the First Name field when b... |
| CVE-2021-24427 | MEDIUM | 4.8 | 0.6% | Jul 12, 2021 | The W3 Total Cache WordPress plugin before 2.1.3 did not sanitise or escape some of its CDN settings, allowing high priv... |
| CVE-2021-24426 | MEDIUM | 4.8 | 0.6% | Jul 12, 2021 | The Backup by 10Web – Backup and Restore Plugin WordPress plugin through 1.0.20 does not sanitise or escape the tab para... |
| CVE-2021-24424 | MEDIUM | 5.4 | 0.6% | Jul 12, 2021 | The WP Reset – Most Advanced WordPress Reset Tool WordPress plugin before 1.90 did not sanitise or escape its extra_data... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now