2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-4377 | MEDIUM | 6.5 | 1.0% | Jun 7, 2023 | The Doneren met Mollie plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and including, 2... |
| CVE-2021-4376 | MEDIUM | 4.3 | 0.6% | Jun 7, 2023 | The WooCommerce Multi Currency plugin for WordPress is vulnerable to Missing Authorization in versions up to, and inclu... |
| CVE-2021-4375 | MEDIUM | 4.3 | 0.6% | Jun 7, 2023 | The Welcart e-Commerce plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on t... |
| CVE-2021-4374 | CRITICAL | 9.8 | 16.4% | Jun 7, 2023 | The WordPress Automatic Plugin for WordPress is vulnerable to arbitrary options updates in versions up to, and including... |
| CVE-2021-4373 | MEDIUM | 4.3 | 0.5% | Jun 7, 2023 | The Better Search plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.5... |
| CVE-2021-4372 | MEDIUM | 6.1 | 0.6% | Jun 7, 2023 | The WooCommerce Dynamic Pricing and Discounts plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versi... |
| CVE-2021-4371 | MEDIUM | 4.3 | 0.7% | Jun 7, 2023 | The WP Quick FrontEnd Editor plugin for WordPress is vulnerable to Setting Changs in versions up to, and including, 5.5.... |
| CVE-2021-4370 | CRITICAL | 9.8 | 1.4% | Jun 7, 2023 | The uListing plugin for WordPress is vulnerable to authorization bypass as most actions and endpoints are accessible to ... |
| CVE-2021-4369 | MEDIUM | 5.3 | 0.8% | Jun 7, 2023 | The Frontend File Manager plugin for WordPress is vulnerable to Unauthenticated Content Injection in versions up to, and... |
| CVE-2021-4368 | HIGH | 8.8 | 1.9% | Jun 7, 2023 | The Frontend File Manager plugin for WordPress is vulnerable to Authenticated Settings Change in versions up to, and inc... |
| CVE-2021-4367 | MEDIUM | 5.4 | 0.7% | Jun 7, 2023 | The Flo Forms – Easy Drag & Drop Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Opti... |
| CVE-2021-4366 | MEDIUM | 4.3 | 0.6% | Jun 7, 2023 | The PWA for WP & AMP plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the... |
| CVE-2021-4365 | MEDIUM | 6.1 | 0.8% | Jun 7, 2023 | The Frontend File Manager plugin for WordPress is vulnerable to Unauthenticated Stored Cross-Site Scripting in versions ... |
| CVE-2021-4364 | MEDIUM | 4.3 | 0.7% | Jun 7, 2023 | The JobSearch WP Job Board plugin for WordPress is vulnerable to authorization bypass due to a missing capability check ... |
| CVE-2021-4363 | MEDIUM | 6.1 | 0.8% | Jun 7, 2023 | The WP Quick FrontEnd Editor plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and... |
| CVE-2021-4362 | CRITICAL | 9.8 | 1.4% | Jun 7, 2023 | The Kiwi Social Share plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on th... |
| CVE-2021-4361 | HIGH | 8.8 | 1.2% | Jun 7, 2023 | The JobSearch WP Job Board plugin for WordPress is vulnerable to authorization bypass due to a missing capability check ... |
| CVE-2021-4360 | HIGH | 8.8 | 1.2% | Jun 7, 2023 | The Controlled Admin Access plugin for WordPress is vulnerable to Privilege Escalation in versions up to, and including,... |
| CVE-2021-4359 | MEDIUM | 5.3 | 0.9% | Jun 7, 2023 | The Frontend File Manager plugin for WordPress is vulnerable to Unauthenticated Arbitrary Post Deletion in versions up t... |
| CVE-2021-4358 | MEDIUM | 6.1 | 0.8% | Jun 7, 2023 | The WP DSGVO Tools (GDPR) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an unknown parameter in ... |
| CVE-2021-4357 | MEDIUM | 5.3 | 1.0% | Jun 7, 2023 | The uListing plugin for WordPress is vulnerable to authorization bypass due to missing capability checks, and a missing ... |
| CVE-2021-4356 | CRITICAL | 9.8 | 1.5% | Jun 7, 2023 | The Frontend File Manager plugin for WordPress is vulnerable to Unauthenticated Arbitrary File Download in versions up... |
| CVE-2021-4355 | MEDIUM | 5.3 | 0.8% | Jun 7, 2023 | The Welcart e-Commerce plugin for WordPress is vulnerable to authorization bypass due to missing capability checks on th... |
| CVE-2021-4354 | HIGH | 8.8 | 1.8% | Jun 7, 2023 | The PWA for WP & AMP for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the pw... |
| CVE-2021-4352 | MEDIUM | 5.3 | 0.9% | Jun 7, 2023 | The JobSearch WP Job Board plugin for WordPress is vulnerable to authorization bypass due to a missing capability check ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now