2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-36920MEDIUM5.4Authenticated Reflected Cross-Site Scripting (XSS) vulnerability discovered in WordPress plugin Download Monitor (versio...
CVE-2021-36199MEDIUM5.3Running a vulnerability scanner against VideoEdge NVRs can cause some functionality to stop.
CVE-2021-23566MEDIUM5.5The package nanoid from 3.0.0 and before 3.1.31 are vulnerable to Information Exposure via the valueOf() function which ...
CVE-2021-1037MEDIUM5.3The broadcast that DevicePickerFragment sends when a new device is paired doesn't have any permission checks, so any app...
CVE-2021-45763MEDIUM5.5GPAC v1.1.0 was discovered to contain an invalid call in the function gf_node_changed(). This vulnerability can lead to ...
CVE-2021-45762MEDIUM5.5GPAC v1.1.0 was discovered to contain an invalid memory address dereference via the function gf_sg_vrml_mf_reset(). This...
CVE-2021-24046MEDIUM5.3A logic flaw in Ray-Ban® Stories device software allowed some parameters like video capture duration limit to be modifie...
CVE-2021-39032MEDIUM5.5IBM Sterling Gentran:Server for Microsoft Windows 5.3 stores potentially sensitive information in log files that could b...
CVE-2021-36781MEDIUM4.4A Incorrect Default Permissions vulnerability in the parsec package of openSUSE Factory allows local attackers to imitat...
CVE-2021-42551MEDIUM6.1Cross-site Scripting (XSS) vulnerability in the search functionality of AlCoda NetBiblio WebOPAC allows an unauthenticat...
CVE-2021-38678MEDIUM6.1An open redirect vulnerability has been reported to affect QNAP device running QcalAgent. If exploited, this vulnerabili...
CVE-2021-38677MEDIUM6.1A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QcalAgent. If exploited, this...
CVE-2021-45760MEDIUM5.5GPAC v1.1.0 was discovered to contain an invalid memory address dereference via the function gf_list_last(). This vulner...
CVE-2021-34985MEDIUM5.5This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley Contex...
CVE-2021-34984MEDIUM5.5This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley Contex...
CVE-2021-45054MEDIUM5.5Adobe InCopy version 16.4 (and earlier) is affected by a use-after-free vulnerability in the processing of a JPEG2000 fi...
CVE-2021-44178MEDIUM6.1AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a reflected Cross-Site Scripting (...
CVE-2021-44177MEDIUM6.1AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS...
CVE-2021-44176MEDIUM6.1AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS...
CVE-2021-43765MEDIUM6.1AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS...
CVE-2021-43764MEDIUM5.4AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS...
CVE-2021-43762MEDIUM6.5AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a dispatcher bypass vulnerability ...
CVE-2021-43761MEDIUM5.4AEM's Cloud Service offering, as well as versions 6.5.7.0 (and below), 6.4.8.3 (and below) and 6.3.3.8 (and below) are a...
CVE-2021-45422MEDIUM6.1Reprise License Manager 14.2 is affected by a reflected cross-site scripting vulnerability in the /goform/activate_proce...
CVE-2021-40576MEDIUM5.5The binary MP4Box in Gpac 1.0.1 has a null pointer dereference vulnerability in the gf_isom_get_payt_count function in h...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now