2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-4351MEDIUM5.3The Frontend File Manager plugin for WordPress is vulnerable to Unauthenticated Post Meta Change in versions up to, and ...
CVE-2021-4350MEDIUM5.3The Frontend File Manager plugin for WordPress is vulnerable to Unauthenticated HTML Injection in versions up to, and in...
CVE-2021-4349HIGH8.8The Process Steps Template Designer plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, ...
CVE-2021-4348MEDIUM6.1The Ultimate GDPR & CCPA plugin for WordPress is vulnerable to unauthenticated settings import and export via the export...
CVE-2021-4347MEDIUM6.5The function update_shipment_status_email_status_fun in the plugin Advanced Shipment Tracking for WooCommerce in version...
CVE-2021-4346HIGH7.5The uListing plugin for WordPress is vulnerable to Unauthenticated Arbitrary Account Changes in versions up to, and incl...
CVE-2021-4345MEDIUM5.3The uListing plugin for WordPress is vulnerable to authorization bypass due to missing capability and nonce checks on th...
CVE-2021-4344MEDIUM5.4The Frontend File Manager plugin for WordPress is vulnerable to Privilege Escalation in versions up to, and including, 1...
CVE-2021-4343CRITICAL9.8The Unauthenticated Account Creation plugin for WordPress is vulnerable to Unauthenticated Account Creation in versions ...
CVE-2021-4342Rejected reason: CVE split into individual CVE IDs for each software record.
CVE-2021-4341CRITICAL9.8The uListing plugin for WordPress is vulnerable to authorization bypass via Ajax due to missing capability checks, missi...
CVE-2021-4340HIGH7.5The uListing plugin for WordPress is vulnerable to generic SQL Injection via the ‘listing_id’ parameter in versions up t...
CVE-2021-4339MEDIUM5.3The uListing plugin for WordPress is vulnerable to authorization bypass due to a missing capability check in the "ulisti...
CVE-2021-4338MEDIUM5.4The 404 to 301 plugin for WordPress is vulnerable to authorization bypass due to missing capability checks on the open_r...
CVE-2021-33223HIGH8.8An issue discovered in SeedDMS 6.0.15 allows an attacker to escalate privileges via the userid and role parameters in th...
CVE-2021-45039CRITICAL9.8Multiple models of the Uniview IP Camera (e.g., IPC_G6103 B6103.16.10.B25.201218, IPC_G61, IPC21, IPC23, IPC32, IPC36, I...
CVE-2021-31233HIGH7.5SQL Injection vulnerability found in Fighting Cock Information System v.1.0 allows a remote attacker to obtain sensitive...
CVE-2021-37845LOW3.7An issue was discovered in Citadel through webcit-932. A meddler-in-the-middle attacker can fixate their own session dur...
CVE-2021-27825HIGH7.5A directory traversal vulnerability on Mercury MAC1200R devices allows attackers to read arbitrary files via a web-stati...
CVE-2021-4336CRITICAL9.8A vulnerability was found in ITRS Group monitor-ninja up to 2021.11.1. It has been rated as critical. Affected by this i...
CVE-2021-46887CRITICAL9.8Lack of length check vulnerability in the HW_KEYMASTER module. Successful exploitation of this vulnerability may cause o...
CVE-2021-46886HIGH7.5The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma...
CVE-2021-46885HIGH7.5The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma...
CVE-2021-46884HIGH7.5The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma...
CVE-2021-46883HIGH7.5The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now