2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-24237 | MEDIUM | 6.1 | 6.3% | Apr 22, 2021 | The Realteo WordPress plugin before 1.2.4, used by the Findeo Theme, did not properly sanitise the keyword_search, searc... |
| CVE-2021-24235 | MEDIUM | 6.1 | 2.9% | Apr 22, 2021 | The Goto WordPress theme before 2.0 does not sanitise the keywords and start_date GET parameter on its Tour List page, l... |
| CVE-2021-24234 | MEDIUM | 6.1 | 1.2% | Apr 22, 2021 | The Search Forms page of the Ivory Search WordPress lugin before 4.6.1 did not properly sanitise the tab parameter befor... |
| CVE-2021-24233 | MEDIUM | 6.1 | 1.7% | Apr 22, 2021 | The Cooked Pro WordPress plugin before 1.7.5.6 was affected by unauthenticated reflected Cross-Site Scripting issues, du... |
| CVE-2021-24232 | MEDIUM | 5.4 | 0.6% | Apr 22, 2021 | The Advanced Booking Calendar WordPress plugin before 1.6.8 does not sanitise the license error message when output in t... |
| CVE-2021-0275 | HIGH | 8.8 | 1.2% | Apr 22, 2021 | A Cross-site Scripting (XSS) vulnerability in J-Web on Juniper Networks Junos OS allows an attacker to target another us... |
| CVE-2021-0273 | MEDIUM | 5.3 | 1.0% | Apr 22, 2021 | An always-incorrect control flow implementation in the implicit filter terms of Juniper Networks Junos OS and Junos OS E... |
| CVE-2021-0272 | MEDIUM | 6.5 | 0.4% | Apr 22, 2021 | A kernel memory leak in QFX10002-32Q, QFX10002-60C, QFX10002-72Q, QFX10008, QFX10016 devices Flexible PIC Concentrators ... |
| CVE-2021-0271 | MEDIUM | 6.5 | 0.4% | Apr 22, 2021 | A Double Free vulnerability in the software forwarding interface daemon (sfid) process of Juniper Networks Junos OS allo... |
| CVE-2021-0270 | MEDIUM | 5.9 | 0.7% | Apr 22, 2021 | On PTX Series and QFX10k Series devices with the "inline-jflow" feature enabled, a use after free weakness in the Packet... |
| CVE-2021-0269 | HIGH | 8.8 | 0.9% | Apr 22, 2021 | The improper handling of client-side parameters in J-Web of Juniper Networks Junos OS allows an attacker to perform a nu... |
| CVE-2021-0268 | CRITICAL | 9.3 | 0.9% | Apr 22, 2021 | An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') weakness in J-web of Juniper Ne... |
| CVE-2021-0267 | MEDIUM | 6.5 | 0.5% | Apr 22, 2021 | An Improper Input Validation vulnerability in the active-lease query portion in JDHCPD's DHCP Relay Agent of Juniper Net... |
| CVE-2021-0266 | CRITICAL | 9.8 | 0.9% | Apr 22, 2021 | The use of multiple hard-coded cryptographic keys in cSRX Series software in Juniper Networks Junos OS allows an attacke... |
| CVE-2021-0265 | HIGH | 8.1 | 2.5% | Apr 22, 2021 | An unvalidated REST API in the AppFormix Agent of Juniper Networks AppFormix allows an unauthenticated remote attacker t... |
| CVE-2021-0264 | HIGH | 7.5 | 1.0% | Apr 22, 2021 | A vulnerability in the processing of traffic matching a firewall filter containing a syslog action in Juniper Networks J... |
| CVE-2021-0263 | MEDIUM | 5.9 | 0.9% | Apr 22, 2021 | A Data Processing vulnerability in the Multi-Service process (multi-svcs) on the FPC of Juniper Networks Junos OS on the... |
| CVE-2021-0262 | MEDIUM | 6.5 | 0.4% | Apr 22, 2021 | Through routine static code analysis of the Juniper Networks Junos OS software codebase, the Secure Development Life Cyc... |
| CVE-2021-0261 | HIGH | 7.5 | 1.1% | Apr 22, 2021 | A vulnerability in the HTTP/HTTPS service used by J-Web, Web Authentication, Dynamic-VPN (DVPN), Firewall Authentication... |
| CVE-2021-0260 | HIGH | 7.3 | 0.9% | Apr 22, 2021 | An improper authorization vulnerability in the Simple Network Management Protocol daemon (snmpd) service of Juniper Netw... |
| CVE-2021-0259 | HIGH | 7.4 | 0.4% | Apr 22, 2021 | Due to a vulnerability in DDoS protection in Juniper Networks Junos OS and Junos OS Evolved on QFX5K Series switches in ... |
| CVE-2021-0258 | MEDIUM | 5.9 | 0.6% | Apr 22, 2021 | A vulnerability in the forwarding of transit TCPv6 packets received on the Ethernet management interface of Juniper Netw... |
| CVE-2021-0257 | MEDIUM | 6.5 | 0.4% | Apr 22, 2021 | On Juniper Networks MX Series and EX9200 Series platforms with Trio-based MPCs (Modular Port Concentrators) where Integr... |
| CVE-2021-0256 | MEDIUM | 5.5 | 0.2% | Apr 22, 2021 | A sensitive information disclosure vulnerability in the mosquitto message broker of Juniper Networks Junos OS may allow ... |
| CVE-2021-0255 | HIGH | 7.8 | 0.2% | Apr 22, 2021 | A local privilege escalation vulnerability in ethtraceroute of Juniper Networks Junos OS may allow a locally authenticat... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now