2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-47984 | MEDIUM | 6.4 | 0.2% | Jun 8, 2026 | WordPress Plugin WP24 Domain Check 1.6.2 contains a stored cross-site scripting vulnerability that allows authenticated ... |
| CVE-2021-47983 | MEDIUM | 6.4 | 0.2% | Jun 8, 2026 | WordPress Plugin Stripe Payments 2.0.39 contains a stored cross-site scripting vulnerability that allows authenticated a... |
| CVE-2021-47982 | MEDIUM | 6.4 | 0.2% | Jun 8, 2026 | WordPress Plugin WP-Paginate 2.1.3 contains a stored cross-site scripting vulnerability that allows authenticated attack... |
| CVE-2021-4479 | MEDIUM | 6.3 | 0.2% | Jun 2, 2026 | Dräger Atlan A350 versions 1.00 up to and including 1.01 contains an improper input handling vulnerability that allows a... |
| CVE-2021-21508 | MEDIUM | 6.7 | 0.1% | May 22, 2026 | Dell VxRail versions before 7.0.200 contain a Plain-text Password Storage Vulnerability in VxRail Manager. A sys-admin u... |
| CVE-2021-47981 | MEDIUM | 5.4 | 0.2% | May 16, 2026 | Quick.CMS 6.7 contains a cross-site scripting vulnerability in the sliders form that allows authenticated attackers to i... |
| CVE-2021-47978 | MEDIUM | 6.9 | 0.8% | May 16, 2026 | ProcessMaker 3.5.4 contains a local file inclusion vulnerability that allows unauthenticated attackers to read arbitrary... |
| CVE-2021-47957 | MEDIUM | 6.4 | 0.2% | May 16, 2026 | Cookie Law Bar 1.2.1 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject ... |
| CVE-2021-47955 | MEDIUM | 5.4 | 0.2% | May 16, 2026 | CouchCMS 2.2.1 contains a cross-site scripting vulnerability that allows authenticated attackers to execute arbitrary Ja... |
| CVE-2021-47934 | MEDIUM | 6.9 | 0.2% | May 16, 2026 | MyBB Timeline Plugin 1.0 contains cross-site scripting vulnerabilities that allow attackers to inject malicious scripts ... |
| CVE-2021-47968 | MEDIUM | 6.4 | 0.2% | May 15, 2026 | Podcast Generator 3.1 is vulnerable to persistent cross-site scripting, allowing authenticated attackers to inject malic... |
| CVE-2021-47967 | MEDIUM | 6.1 | 0.2% | May 15, 2026 | PHP Timeclock 1.04 contains multiple cross-site scripting vulnerabilities that allow unauthenticated attackers to inject... |
| CVE-2021-47962 | MEDIUM | 6.4 | 0.2% | May 15, 2026 | Savsoft Quiz 5.0 contains a persistent cross-site scripting vulnerability in the user account settings page that allows ... |
| CVE-2021-47958 | MEDIUM | 5.3 | 0.2% | May 15, 2026 | CouchCMS 2.2.1 contains a server-side request forgery vulnerability that allows authenticated attackers to make arbitrar... |
| CVE-2021-47953 | MEDIUM | 5.3 | 0.1% | May 10, 2026 | OpenCart 3.0.3.7 contains a cross-site request forgery vulnerability that allows attackers to change user passwords by s... |
| CVE-2021-47951 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | WordPress Picture Gallery 1.4.2 contains a stored cross-site scripting vulnerability that allows authenticated attackers... |
| CVE-2021-47950 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | Advanced Guestbook 2.4.4 contains a persistent cross-site scripting vulnerability in the smilies administration interfac... |
| CVE-2021-47948 | MEDIUM | 5.4 | 0.2% | May 10, 2026 | WordPress GetPaid Plugin 2.4.6 contains an HTML injection vulnerability that allows authenticated attackers to inject ar... |
| CVE-2021-47947 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | Projectsend r1295 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject mal... |
| CVE-2021-47946 | MEDIUM | 6.9 | 0.2% | May 10, 2026 | OpenCart 3.0.3.6 contains a cross-site request forgery vulnerability in the /account/edit endpoint that allows unauthent... |
| CVE-2021-47931 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | Exponent CMS 2.6 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject mali... |
| CVE-2021-47929 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | Filterable Portfolio Gallery 1.0 contains a stored cross-site scripting vulnerability that allows authenticated attacker... |
| CVE-2021-47927 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | WordPress Plugin WP Symposium Pro 2021.10 contains a stored cross-site scripting vulnerability that allows authenticated... |
| CVE-2021-47926 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | Contact Form to Email 1.3.24 contains a stored cross-site scripting vulnerability that allows authenticated attackers to... |
| CVE-2021-47925 | MEDIUM | 6.4 | 0.2% | May 10, 2026 | CMDBuild 3.3.2 contains multiple stored cross-site scripting vulnerabilities that allow authenticated attackers to injec... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now