CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2021-34666

    Last Modified: 5 May 2025

    The Add Sidebar WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the add parameter in the ~/wp_sidebarMenu.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 2.0.0.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34665

    Last Modified: 23 May 2025

    The WP SEO Tags WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the saq_txt_the_filter parameter in the ~/wp-seo-tags.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 2.2.7.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34664

    Last Modified: 23 May 2025

    The Moova for WooCommerce WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the lat parameter in the ~/Checkout/Checkout.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 3.5.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34659

    Last Modified: 23 May 2025

    The Plugmatter Pricing Table Lite WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the `email` parameter in the ~/license.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 1.0.32.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34663

    Last Modified: 23 May 2025

    The jQuery Tagline Rotator WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to the use of $_SERVER['PHP_SELF'] in the ~/jquery-tagline-rotator.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 0.1.5.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34658

    Last Modified: 23 May 2025

    The Simple Popup Newsletter WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to the use of $_SERVER['PHP_SELF'] in the ~/simple-popup-newsletter.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 1.4.7.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34655

    Last Modified: 23 May 2025

    The WP Songbook WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the url parameter found in the ~/inc/class.ajax.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 2.0.11.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34657

    Last Modified: 5 May 2025

    The 2TypoFR WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the text function found in the ~/vendor/Org_Heigl/Hyphenator/index.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 0.11.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34656

    Last Modified: 5 May 2025

    The 2Way VideoCalls and Random Chat - HTML5 Webcam Videochat WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the `vws_notice` function found in the ~/inc/requirements.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 5.2.7.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34651

    Last Modified: 5 May 2025

    The Scribble Maps WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the map parameter in the ~/includes/admin.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 1.2.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34654

    Last Modified: 5 May 2025

    The Custom Post Type Relations WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the cptr[name] parameter found in the ~/pages/admin-page.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 1.0.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34653

    Last Modified: 5 May 2025

    The WP Fountain WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to the use of $_SERVER['PHP_SELF'] in the ~/wp-fountain.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 1.5.9.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34649

    Last Modified: 5 May 2025

    The Simple Behance Portfolio WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the `dark` parameter in the ~/titan-framework/iframe-font-preview.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 0.2.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34652

    Last Modified: 5 May 2025

    The Media Usage WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the id parameter in the ~/mmu_admin.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 0.0.4.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34642

    Last Modified: 5 May 2025

    The Smart Email Alerts WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the api_key in the ~/views/settings.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 1.0.10.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34644

    Last Modified: 5 May 2025

    The Multiplayer Games WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to the use of $_SERVER['PHP_SELF'] in the ~/multiplayergames.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 3.7.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-34643

    Last Modified: 5 May 2025

    The Skaut bazar WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to the use of $_SERVER['PHP_SELF'] in the ~/skaut-bazar.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 1.3.2.

    Published: 16 Aug 2021
    9.8
    Critical

    CVE-2020-18705

    Last Modified: 21 Nov 2024

    XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/core/content/views.py'.

    Published: 16 Aug 2021
    9.8
    Critical

    CVE-2020-18704

    Last Modified: 21 Nov 2024

    Unrestricted Upload of File with Dangerous Type in Django-Widgy v0.8.4 allows remote attackers to execute arbitrary code via the 'image' widget in the component 'Change Widgy Page'.

    Published: 16 Aug 2021
    9.8
    Critical

    CVE-2020-18703

    Last Modified: 21 Nov 2024

    XML External Entities (XXE) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the component 'quokka/utils/atom.py'.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2020-18702

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) in Quokka v0.4.0 allows remote attackers to execute arbitrary code via the 'Username' parameter in the component 'quokka/admin/actions.py'.

    Published: 16 Aug 2021
    9.8
    Critical

    CVE-2020-18701

    Last Modified: 21 Nov 2024

    Incorrect Access Control in Lin-CMS-Flask v0.1.1 allows remote attackers to obtain sensitive information and/or gain privileges due to the application not invalidating a user's authentication token upon logout, which allows for replaying packets.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2020-18699

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) in Lin-CMS-Flask v0.1.1 allows remote attackers to execute arbitrary code by entering scripts in the the 'Username' parameter of the in component 'app/api/cms/user.py'.

    Published: 16 Aug 2021
    9.8
    Critical

    CVE-2020-18698

    Last Modified: 21 Nov 2024

    Improper Authentication in Lin-CMS-Flask v0.1.1 allows remote attackers to launch brute force login attempts without restriction via the 'login' function in the component 'app/api/cms/user.py'.

    Published: 16 Aug 2021
    7.5
    High

    CVE-2021-38758

    Last Modified: 21 Nov 2024

    Directory traversal vulnerability in Online Catering Reservation System 1.0 exists due to lack of validation in index.php.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-38757

    Last Modified: 21 Nov 2024

    Persistent cross-site scripting (XSS) in Hospital Management System targeted towards web admin through contact.php.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-38756

    Last Modified: 21 Nov 2024

    Persistent cross-site scripting (XSS) in Hospital Management System targeted towards web admin through prescribe.php.

    Published: 16 Aug 2021
    5.3
    Medium

    CVE-2021-38755

    Last Modified: 21 Nov 2024

    Unauthenticated doctor entry deletion in Hospital Management System in admin-panel1.php.

    Published: 16 Aug 2021
    9.8
    Critical

    CVE-2021-38754

    Last Modified: 21 Nov 2024

    SQL Injection vulnerability in Hospital Management System due to lack of input validation in messearch.php.

    Published: 16 Aug 2021
    9.8
    Critical

    CVE-2021-38753

    Last Modified: 21 Nov 2024

    An unrestricted file upload on Simple Image Gallery Web App can be exploited to upload a web shell and executed to gain unauthorized access to the server hosting the web app.

    Published: 16 Aug 2021
    5.4
    Medium

    CVE-2021-38752

    Last Modified: 21 Nov 2024

    A cross-site scripting (XSS) vulnerability in Online Catering Reservation System using PHP on Sourcecodester allows an attacker to arbitrarily inject code in the search bar.

    Published: 16 Aug 2021
    4.3
    Medium

    CVE-2021-38751

    Last Modified: 21 Nov 2024

    A HTTP Host header attack exists in ExponentCMS 2.6 and below in /exponent_constants.php. A modified HTTP header can change links on the webpage to an arbitrary value, leading to a possible attack vector for MITM.

    Published: 16 Aug 2021
    5.4
    Medium

    CVE-2021-38607

    Last Modified: 21 Nov 2024

    Crocoblock JetEngine before 2.6.1 allows XSS by remote authenticated users via a custom form input.

    Published: 16 Aug 2021
    8.8
    High

    CVE-2021-3653

    Last Modified: 21 Nov 2024

    A flaw was found in the KVM's AMD code for supporting SVM nested virtualization. The flaw occurs when processing the VMCB (virtual machine control block) provided by the L1 guest to spawn/handle a nested guest (L2). Due to improper validation of the "int_ctl" field, this issue could allow a malicious L1 to enable AVIC support (Advanced Virtual Interrupt Controller) for the L2 guest. As a result, the L2 guest would be allowed to read/write physical pages of the host, resulting in a crash of the entire system, leak of sensitive data or potential guest-to-host escape. This flaw affects Linux kernel versions prior to 5.14-rc7.

    Published: 16 Aug 2021
    8.8
    High

    CVE-2021-3656

    Last Modified: 21 Nov 2024

    A flaw was found in the KVM's AMD code for supporting SVM nested virtualization. The flaw occurs when processing the VMCB (virtual machine control block) provided by the L1 guest to spawn/handle a nested guest (L2). Due to improper validation of the "virt_ext" field, this issue could allow a malicious L1 to disable both VMLOAD/VMSAVE intercepts and VLS (Virtual VMLOAD/VMSAVE) for the L2 guest. As a result, the L2 guest would be allowed to read/write physical pages of the host, resulting in a crash of the entire system, leak of sensitive data or potential guest-to-host escape.

    Published: 16 Aug 2021
    7.5
    High

    CVE-2021-35392

    Last Modified: 13 Aug 2025

    Realtek Jungle SDK version v2.x up to v3.4.14B provides a 'WiFi Simple Config' server that implements both UPnP and SSDP protocols. The binary is usually named wscd or mini_upnpd and is the successor to miniigd. The server is vulnerable to a heap buffer overflow that is present due to unsafe crafting of SSDP NOTIFY messages from received M-SEARCH messages ST header.

    Published: 16 Aug 2021
    9.8
    Critical

    CVE-2021-35393

    Last Modified: 13 Aug 2025

    Realtek Jungle SDK version v2.x up to v3.4.14B provides a 'WiFi Simple Config' server that implements both UPnP and SSDP protocols. The binary is usually named wscd or mini_upnpd and is the successor to miniigd. The server is vulnerable to a stack buffer overflow vulnerability that is present due to unsafe parsing of the UPnP SUBSCRIBE/UNSUBSCRIBE Callback header. Successful exploitation of this vulnerability allows remote unauthenticated attackers to gain arbitrary code execution on the affected device.

    Published: 16 Aug 2021
    9.8
    Critical

    CVE-2021-35394

    Last Modified: 7 Nov 2025

    Realtek Jungle SDK version v2.x up to v3.4.14B provides a diagnostic tool called 'MP Daemon' that is usually compiled as 'UDPServer' binary. The binary is affected by multiple memory corruption vulnerabilities and an arbitrary command injection vulnerability that can be exploited by remote unauthenticated attackers.

    Published: 16 Aug 2021
    9.8
    Critical

    CVE-2021-35395

    Last Modified: 7 Nov 2025

    Realtek Jungle SDK version v2.x up to v3.4.14B provides an HTTP web server exposing a management interface that can be used to configure the access point. Two versions of this management interface exists: one based on Go-Ahead named webs and another based on Boa named boa. Both of them are affected by these vulnerabilities. Specifically, these binaries are vulnerable to the following issues: - stack buffer overflow in formRebootCheck due to unsafe copy of submit-url parameter - stack buffer overflow in formWsc due to unsafe copy of submit-url parameter - stack buffer overflow in formWlanMultipleAP due to unsafe copy of submit-url parameter - stack buffer overflow in formWlSiteSurvey due to unsafe copy of ifname parameter - stack buffer overflow in formStaticDHCP due to unsafe copy of hostname parameter - stack buffer overflow in formWsc due to unsafe copy of 'peerPin' parameter - arbitrary command execution in formSysCmd via the sysCmd parameter - arbitrary command injection in formWsc via the 'peerPin' parameter Exploitability of identified issues will differ based on what the end vendor/manufacturer did with the Realtek SDK webserver. Some vendors use it as-is, others add their own authentication implementation, some kept all the features from the server, some remove some of them, some inserted their own set of features. However, given that Realtek SDK implementation is full of insecure calls and that developers tends to re-use those examples in their custom code, any binary based on Realtek SDK webserver will probably contains its own set of issues on top of the Realtek ones (if kept). Successful exploitation of these issues allows remote attackers to gain arbitrary code execution on the device.

    Published: 16 Aug 2021
    5.4
    Medium

    CVE-2021-24548

    Last Modified: 21 Nov 2024

    The Mimetic Books WordPress plugin through 0.2.13 was vulnerable to Authenticated Stored Cross-Site Scripting (XSS) in the "Default Publisher ID" field on the plugin's settings page.

    Published: 16 Aug 2021
    5.4
    Medium

    CVE-2021-24541

    Last Modified: 21 Nov 2024

    The Wonder PDF Embed WordPress plugin before 1.7 does not escape parameters of its wonderplugin_pdf shortcode, which could allow users with a role as low as Contributor to perform Stored XSS attacks.

    Published: 16 Aug 2021
    5.4
    Medium

    CVE-2021-24538

    Last Modified: 21 Nov 2024

    The Current Book WordPress plugin through 1.0.1 does not sanitize user input when an authenticated user adds Author or Book Title, then does not escape these values when outputting to the browser leading to an Authenticated Stored XSS Cross-Site Scripting issue.

    Published: 16 Aug 2021
    5.4
    Medium

    CVE-2021-24540

    Last Modified: 21 Nov 2024

    The Wonder Video Embed WordPress plugin before 1.8 does not escape parameters of its wonderplugin_video shortcode, which could allow users with a role as low as Contributor to perform Stored XSS attacks.

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-24536

    Last Modified: 21 Nov 2024

    The Custom Login Redirect WordPress plugin through 1.0.0 does not have CSRF check in place when saving its settings, and do not sanitise or escape user input before outputting them back in the page, leading to a Stored Cross-Site Scripting issue

    Published: 16 Aug 2021
    6.1
    Medium

    CVE-2021-24535

    Last Modified: 21 Nov 2024

    The Light Messages WordPress plugin through 1.0 is lacking CSRF check when updating it's settings, and is not sanitising its Message Content in them (even with the unfiltered_html disallowed). As a result, an attacker could make a logged in admin update the settings to arbitrary values, and set a Cross-Site Scripting payload in the Message Content. Depending on the options set, the XSS payload can be triggered either in the backend only (in the plugin's settings), or both frontend and backend.

    Published: 16 Aug 2021
    5.4
    Medium

    CVE-2021-24534

    Last Modified: 21 Nov 2024

    The PhoneTrack Meu Site Manager WordPress plugin through 0.1 does not sanitise or escape its "php_id" setting before outputting it back in an attribute in the page, leading to a stored Cross-Site Scripting issue.

    Published: 16 Aug 2021
    9.8
    Critical

    CVE-2021-24527

    Last Modified: 21 Nov 2024

    The User Registration & User Profile – Profile Builder WordPress plugin before 3.4.9 has a bug allowing any user to reset the password of the admin of the blog, and gain unauthorised access, due to a bypass in the way the reset key is checked. Furthermore, the admin will not be notified of such change by email for example.

    Published: 16 Aug 2021
    5.4
    Medium

    CVE-2021-24526

    Last Modified: 21 Nov 2024

    The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder WordPress plugin before 1.13.60 does not escape its Form Title before outputting it in an attribute when editing a form in the admin dashboard, leading to an authenticated Stored Cross-Site Scripting issue

    Published: 16 Aug 2021
    4.8
    Medium

    CVE-2021-24519

    Last Modified: 21 Nov 2024

    The VikRentCar Car Rental Management System WordPress plugin before 1.1.10 does not sanitise the 'Text Next to Icon' field when adding or editing a Characteristic, allowing high privilege users such as admin to use XSS payload in it, leading to an authenticated Stored Cross-Site Scripting issue

    Published: 16 Aug 2021
    4.8
    Medium

    CVE-2021-24518

    Last Modified: 21 Nov 2024

    The WPFront Notification Bar WordPress plugin before 2.0.0.07176 does not sanitise or escape its Custom CSS setting, allowing high privilege users such as admin to set XSS payload in it even when the unfiltered_html capability is disallowed, leading to an authenticated Stored Cross-Site Scripting issue

    Published: 16 Aug 2021