2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-31409 | HIGH | 7.5 | 1.7% | May 6, 2021 | Unsafe validation RegEx in EmailValidator component in com.vaadin:vaadin-compatibility-server versions 8.0.0 through 8.1... |
| CVE-2021-31245 | MEDIUM | 5.9 | 2.1% | May 6, 2021 | omr-admin.py in openmptcprouter-vps-admin 0.57.3 and earlier compares the user provided password with the original passw... |
| CVE-2021-29921 | CRITICAL | 9.8 | 6.8% | May 6, 2021 | In Python before 3,9,5, the ipaddress library mishandles leading zero characters in the octets of an IP address string. ... |
| CVE-2021-29491 | — | — | — | May 6, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-28860. Reason: This candidate is a reservation d... |
| CVE-2021-29490 | MEDIUM | 5.8 | 69.9% | May 6, 2021 | Jellyfin is a free software media system that provides media from a dedicated server to end-user devices via multiple ap... |
| CVE-2021-27216 | MEDIUM | 6.3 | 1.0% | May 6, 2021 | Exim 4 before 4.94.2 has Execution with Unnecessary Privileges. By leveraging a delete_pid_file race condition, a local ... |
| CVE-2021-26543 | HIGH | 8.8 | 2.5% | May 6, 2021 | The "gitDiff" function in Wayfair git-parse <=1.0.4 has a command injection vulnerability. Clients of the git-parse libr... |
| CVE-2021-24254 | HIGH | 7.2 | 1.8% | May 6, 2021 | The College publisher Import WordPress plugin through 0.1 does not check for the uploaded CSV file to import, allowing h... |
| CVE-2021-24253 | HIGH | 8.8 | 1.9% | May 6, 2021 | The Classyfrieds WordPress plugin through 3.8 does not properly check the uploaded file when an authenticated user adds ... |
| CVE-2021-24252 | HIGH | 7.2 | 1.7% | May 6, 2021 | The Event Banner WordPress plugin through 1.3 does not verify the uploaded image file, allowing admin accounts to upload... |
| CVE-2021-24251 | MEDIUM | 4.3 | 0.5% | May 6, 2021 | The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.2 suffered from a Cr... |
| CVE-2021-24250 | MEDIUM | 5.4 | 0.6% | May 6, 2021 | The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.2 suffered from lack... |
| CVE-2021-24249 | MEDIUM | 6.5 | 0.7% | May 6, 2021 | The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.2 suffered from a Cr... |
| CVE-2021-24248 | HIGH | 7.2 | 1.6% | May 6, 2021 | The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.1 did not properly c... |
| CVE-2021-24247 | MEDIUM | 5.4 | 4.7% | May 6, 2021 | The Contact Form Check Tester WordPress plugin through 1.0.2 settings are visible to all registered users in the dashboa... |
| CVE-2021-24246 | MEDIUM | 5.4 | 0.7% | May 6, 2021 | The Workscout Core WordPress plugin before 1.3.4, used by the WorkScout Theme did not sanitise the chat messages sent vi... |
| CVE-2021-24245 | MEDIUM | 6.1 | 5.7% | May 6, 2021 | The Stop Spammers WordPress plugin before 2021.9 did not escape user input when blocking requests (such as matching a sp... |
| CVE-2021-24244 | MEDIUM | 6.5 | 0.9% | May 6, 2021 | An AJAX action registered by the WPBakery Page Builder (Visual Composer) Clipboard WordPress plugin before 4.5.8 did not... |
| CVE-2021-24243 | MEDIUM | 5.4 | 0.7% | May 6, 2021 | An AJAX action registered by the WPBakery Page Builder (Visual Composer) Clipboard WordPress plugin before 4.5.6 did not... |
| CVE-2021-24236 | CRITICAL | 9.8 | 7.1% | May 6, 2021 | The Imagements WordPress plugin through 1.2.5 allows images to be uploaded in comments, however only checks for the Cont... |
| CVE-2021-24214 | MEDIUM | 6.1 | 1.6% | May 6, 2021 | The OpenID Connect Generic Client WordPress plugin 3.8.0 and 3.8.1 did not sanitise the login error when output back in ... |
| CVE-2021-24179 | HIGH | 8.8 | 0.7% | May 6, 2021 | The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11 suffered from a Cros... |
| CVE-2021-24178 | HIGH | 8.8 | 0.7% | May 6, 2021 | The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.1 suffered from Cros... |
| CVE-2021-22211 | MEDIUM | 4.3 | 0.6% | May 6, 2021 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.7. GitLab Dependency Proxy, under c... |
| CVE-2021-21550 | MEDIUM | 6.7 | 0.3% | May 6, 2021 | Dell EMC PowerScale OneFS 8.1.0-9.1.0 contain an improper neutralization of special elements used in an OS command vulne... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now