2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-41239MEDIUM5.3Nextcloud server is a self hosted system designed to provide cloud style services. In affected versions the User Status ...
CVE-2021-41180MEDIUM6.1Nextcloud talk is a self hosting messaging service. In versions prior 12.1.2 an attacker is able to control the link of ...
CVE-2021-44478MEDIUM6.1A vulnerability has been identified in Polarion ALM (All versions < V21 R2 P2), Polarion WebClient for SVN (All versions...
CVE-2021-42019MEDIUM5.9A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i80...
CVE-2021-42018MEDIUM5.9A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i80...
CVE-2021-42017MEDIUM5.9A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i801, RUGGEDCOM i802, RUGGEDCOM i803, RUGGEDCOM M2100, ...
CVE-2021-41543MEDIUM6.5A vulnerability has been identified in Climatix POL909 (AWB module) (All versions < V11.44), Climatix POL909 (AWM module...
CVE-2021-41542MEDIUM6.1A vulnerability has been identified in Climatix POL909 (AWB module) (All versions < V11.44), Climatix POL909 (AWM module...
CVE-2021-41541MEDIUM6.1A vulnerability has been identified in Climatix POL909 (AWB module) (All versions < V11.44), Climatix POL909 (AWM module...
CVE-2021-37209MEDIUM6.7A vulnerability has been identified in RUGGEDCOM i800 (All versions < V4.3.8), RUGGEDCOM i801 (All versions < V4.3.8), R...
CVE-2021-36809MEDIUM6A local attacker can overwrite arbitrary files on the system with VPN client logs using administrator privileges, potent...
CVE-2021-38989MEDIUM5.5IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel...
CVE-2021-38988MEDIUM5.5IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel...
CVE-2021-4198MEDIUM6.1A NULL Pointer Dereference vulnerability in the messaging_ipc.dll component as used in Bitdefender Total Security, Inter...
CVE-2021-25098MEDIUM6.5The Pricing Tables WordPress Plugin WordPress plugin before 3.1.3 does not verify the CSRF nonce when removing posts, al...
CVE-2021-25039MEDIUM6.1The WordPress Multisite Content Copier/Updater WordPress plugin before 2.1.0 does not sanitise and escape the wmcc_conte...
CVE-2021-25038MEDIUM6.1The WordPress Multisite User Sync/Unsync WordPress plugin before 2.1.2 does not sanitise and escape the wmus_source_blog...
CVE-2021-25009MEDIUM5.3The CorreosExpress WordPress plugin through 2.6.0 generates log files which are publicly accessible, and contain sensiti...
CVE-2021-24961MEDIUM5.4The WordPress File Upload WordPress plugin before 4.16.3, wordpress-file-upload-pro WordPress plugin before 4.16.3 does ...
CVE-2021-24960MEDIUM5.4The WordPress File Upload WordPress plugin before 4.16.3, wordpress-file-upload-pro WordPress plugin before 4.16.3 allow...
CVE-2021-24953MEDIUM6.1The Advanced iFrame WordPress plugin before 2022 does not sanitise and escape the ai_config_id parameter before outputti...
CVE-2021-24826MEDIUM5.4The Custom Content Shortcode WordPress plugin before 4.0.2 does not escape custom fields before outputting them, which c...
CVE-2021-24825MEDIUM4.3The Custom Content Shortcode WordPress plugin before 4.0.2 does not validate the data passed to its load shortcode, whic...
CVE-2021-24824MEDIUM4.3The [field] shortcode included with the Custom Content Shortcode WordPress plugin before 4.0.1, allows authenticated use...
CVE-2021-24821MEDIUM5.4The Cost Calculator WordPress plugin before 1.6 allows users with a role as low as Contributor to perform Stored Cross-S...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now