2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-46475MEDIUM5.5Jsish v3.5.0 was discovered to contain a heap buffer overflow via jsi_ArraySliceCmd in src/jsiArray.c. This vulnerabilit...
CVE-2021-46474MEDIUM5.5Jsish v3.5.0 was discovered to contain a heap buffer overflow via jsiEvalCodeSub in src/jsiEval.c. This vulnerability ca...
CVE-2021-44994MEDIUM5.5There is an Assertion ''JERRY_CONTEXT (jmem_heap_allocated_size) == 0'' failed at /jerry-core/jmem/jmem-heap.c in Jerrys...
CVE-2021-44993MEDIUM5.5There is an Assertion ''ecma_is_value_boolean (base_value)'' failed at /jerry-core/ecma/operations/ecma-get-put-value.c ...
CVE-2021-44992MEDIUM5.5There is an Assertion ''ecma_object_is_typedarray (obj_p)'' failed at /jerry-core/ecma/operations/ecma-typedarray-object...
CVE-2021-45226MEDIUM6.5An issue was discovered in COINS Construction Cloud 11.12. Due to improper validation of user-controlled HTTP headers, a...
CVE-2021-45225MEDIUM6.1An issue was discovered in COINS Construction Cloud 11.12. Due to improper input neutralization, it is vulnerable to ref...
CVE-2021-45224MEDIUM6.1An issue was discovered in COINS Construction Cloud 11.12. In several locations throughout the application, JavaScript c...
CVE-2021-45223MEDIUM6.5An issue was discovered in COINS Construction Cloud 11.12. Due to insufficient input neutralization, it is vulnerable to...
CVE-2021-43589MEDIUM6.7Dell EMC Unity, Dell EMC UnityVSA and Dell EMC Unity XT versions prior to 5.1.2.0.5.007 contain an operating system (OS)...
CVE-2021-36349MEDIUM4.3Dell EMC Data Protection Central versions 19.5 and prior contain a Server Side Request Forgery vulnerability in the DPC ...
CVE-2021-36343MEDIUM6.4Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially expl...
CVE-2021-36342MEDIUM6.4Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially expl...
CVE-2021-42168MEDIUM6.1Cross Site Scripting (XSS) in Sourcecodester Try My Recipe (Recipe Sharing Website - CMS) by oretnom23, allows attackers...
CVE-2021-41930MEDIUM6.1Cross site scripting (XSS) vulnerability in Sourcecodester Online Covid Vaccination Scheduler System v1 by oretnom23, al...
CVE-2021-41929MEDIUM6.1Cross Site Scripting (XSS) in Sourcecodester The Electric Billing Management System 1.0 by oretnom23, allows attackers t...
CVE-2021-41658MEDIUM5.4Cross Site Scripting (XSS) in Sourcecodester Student Quarterly Grading System by oretnom23, allows attackers to execute ...
CVE-2021-25083MEDIUM6.1The Registrations for the Events Calendar WordPress plugin before 2.7.10 does not escape the qtype parameter before outp...
CVE-2021-25080MEDIUM6.1The Contact Form Entries WordPress plugin before 1.1.7 does not validate, sanitise and escape the IP address retrieved v...
CVE-2021-25079MEDIUM6.1The Contact Form Entries WordPress plugin before 1.2.4 does not sanitise and escape various parameters, such as form_id,...
CVE-2021-25078MEDIUM6.1The Affiliates Manager WordPress plugin before 2.9.0 does not validate, sanitise and escape the IP address of requests l...
CVE-2021-25074MEDIUM6.1The WebP Converter for Media WordPress plugin before 4.0.3 contains a file (passthru.php) which does not validate the sr...
CVE-2021-25062MEDIUM6.1The Orders Tracking for WooCommerce WordPress plugin before 1.1.10 does not sanitise and escape the file_url before outp...
CVE-2021-25049MEDIUM4.8The Mobile Events Manager WordPress plugin before 1.4.4 does not sanitise and escape various of its settings, allowing h...
CVE-2021-25035MEDIUM6.1The Backup and Staging by WP Time Capsule WordPress plugin before 1.22.7 does not sanitise and escape the error paramete...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now