2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-24237MEDIUM6.1The Realteo WordPress plugin before 1.2.4, used by the Findeo Theme, did not properly sanitise the keyword_search, searc...
CVE-2021-24235MEDIUM6.1The Goto WordPress theme before 2.0 does not sanitise the keywords and start_date GET parameter on its Tour List page, l...
CVE-2021-24234MEDIUM6.1The Search Forms page of the Ivory Search WordPress lugin before 4.6.1 did not properly sanitise the tab parameter befor...
CVE-2021-24233MEDIUM6.1The Cooked Pro WordPress plugin before 1.7.5.6 was affected by unauthenticated reflected Cross-Site Scripting issues, du...
CVE-2021-24232MEDIUM5.4The Advanced Booking Calendar WordPress plugin before 1.6.8 does not sanitise the license error message when output in t...
CVE-2021-0275HIGH8.8A Cross-site Scripting (XSS) vulnerability in J-Web on Juniper Networks Junos OS allows an attacker to target another us...
CVE-2021-0273MEDIUM5.3An always-incorrect control flow implementation in the implicit filter terms of Juniper Networks Junos OS and Junos OS E...
CVE-2021-0272MEDIUM6.5A kernel memory leak in QFX10002-32Q, QFX10002-60C, QFX10002-72Q, QFX10008, QFX10016 devices Flexible PIC Concentrators ...
CVE-2021-0271MEDIUM6.5A Double Free vulnerability in the software forwarding interface daemon (sfid) process of Juniper Networks Junos OS allo...
CVE-2021-0270MEDIUM5.9On PTX Series and QFX10k Series devices with the "inline-jflow" feature enabled, a use after free weakness in the Packet...
CVE-2021-0269HIGH8.8The improper handling of client-side parameters in J-Web of Juniper Networks Junos OS allows an attacker to perform a nu...
CVE-2021-0268CRITICAL9.3An Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting') weakness in J-web of Juniper Ne...
CVE-2021-0267MEDIUM6.5An Improper Input Validation vulnerability in the active-lease query portion in JDHCPD's DHCP Relay Agent of Juniper Net...
CVE-2021-0266CRITICAL9.8The use of multiple hard-coded cryptographic keys in cSRX Series software in Juniper Networks Junos OS allows an attacke...
CVE-2021-0265HIGH8.1An unvalidated REST API in the AppFormix Agent of Juniper Networks AppFormix allows an unauthenticated remote attacker t...
CVE-2021-0264HIGH7.5A vulnerability in the processing of traffic matching a firewall filter containing a syslog action in Juniper Networks J...
CVE-2021-0263MEDIUM5.9A Data Processing vulnerability in the Multi-Service process (multi-svcs) on the FPC of Juniper Networks Junos OS on the...
CVE-2021-0262MEDIUM6.5Through routine static code analysis of the Juniper Networks Junos OS software codebase, the Secure Development Life Cyc...
CVE-2021-0261HIGH7.5A vulnerability in the HTTP/HTTPS service used by J-Web, Web Authentication, Dynamic-VPN (DVPN), Firewall Authentication...
CVE-2021-0260HIGH7.3An improper authorization vulnerability in the Simple Network Management Protocol daemon (snmpd) service of Juniper Netw...
CVE-2021-0259HIGH7.4Due to a vulnerability in DDoS protection in Juniper Networks Junos OS and Junos OS Evolved on QFX5K Series switches in ...
CVE-2021-0258MEDIUM5.9A vulnerability in the forwarding of transit TCPv6 packets received on the Ethernet management interface of Juniper Netw...
CVE-2021-0257MEDIUM6.5On Juniper Networks MX Series and EX9200 Series platforms with Trio-based MPCs (Modular Port Concentrators) where Integr...
CVE-2021-0256MEDIUM5.5A sensitive information disclosure vulnerability in the mosquitto message broker of Juniper Networks Junos OS may allow ...
CVE-2021-0255HIGH7.8A local privilege escalation vulnerability in ethtraceroute of Juniper Networks Junos OS may allow a locally authenticat...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now