2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-31409HIGH7.5Unsafe validation RegEx in EmailValidator component in com.vaadin:vaadin-compatibility-server versions 8.0.0 through 8.1...
CVE-2021-31245MEDIUM5.9omr-admin.py in openmptcprouter-vps-admin 0.57.3 and earlier compares the user provided password with the original passw...
CVE-2021-29921CRITICAL9.8In Python before 3,9,5, the ipaddress library mishandles leading zero characters in the octets of an IP address string. ...
CVE-2021-29491Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-28860. Reason: This candidate is a reservation d...
CVE-2021-29490MEDIUM5.8Jellyfin is a free software media system that provides media from a dedicated server to end-user devices via multiple ap...
CVE-2021-27216MEDIUM6.3Exim 4 before 4.94.2 has Execution with Unnecessary Privileges. By leveraging a delete_pid_file race condition, a local ...
CVE-2021-26543HIGH8.8The "gitDiff" function in Wayfair git-parse <=1.0.4 has a command injection vulnerability. Clients of the git-parse libr...
CVE-2021-24254HIGH7.2The College publisher Import WordPress plugin through 0.1 does not check for the uploaded CSV file to import, allowing h...
CVE-2021-24253HIGH8.8The Classyfrieds WordPress plugin through 3.8 does not properly check the uploaded file when an authenticated user adds ...
CVE-2021-24252HIGH7.2The Event Banner WordPress plugin through 1.3 does not verify the uploaded image file, allowing admin accounts to upload...
CVE-2021-24251MEDIUM4.3The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.2 suffered from a Cr...
CVE-2021-24250MEDIUM5.4The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.2 suffered from lack...
CVE-2021-24249MEDIUM6.5The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.2 suffered from a Cr...
CVE-2021-24248HIGH7.2The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.1 did not properly c...
CVE-2021-24247MEDIUM5.4The Contact Form Check Tester WordPress plugin through 1.0.2 settings are visible to all registered users in the dashboa...
CVE-2021-24246MEDIUM5.4The Workscout Core WordPress plugin before 1.3.4, used by the WorkScout Theme did not sanitise the chat messages sent vi...
CVE-2021-24245MEDIUM6.1The Stop Spammers WordPress plugin before 2021.9 did not escape user input when blocking requests (such as matching a sp...
CVE-2021-24244MEDIUM6.5An AJAX action registered by the WPBakery Page Builder (Visual Composer) Clipboard WordPress plugin before 4.5.8 did not...
CVE-2021-24243MEDIUM5.4An AJAX action registered by the WPBakery Page Builder (Visual Composer) Clipboard WordPress plugin before 4.5.6 did not...
CVE-2021-24236CRITICAL9.8The Imagements WordPress plugin through 1.2.5 allows images to be uploaded in comments, however only checks for the Cont...
CVE-2021-24214MEDIUM6.1The OpenID Connect Generic Client WordPress plugin 3.8.0 and 3.8.1 did not sanitise the login error when output back in ...
CVE-2021-24179HIGH8.8The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11 suffered from a Cros...
CVE-2021-24178HIGH8.8The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.1 suffered from Cros...
CVE-2021-22211MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.7. GitLab Dependency Proxy, under c...
CVE-2021-21550MEDIUM6.7Dell EMC PowerScale OneFS 8.1.0-9.1.0 contain an improper neutralization of special elements used in an OS command vulne...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now