2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-36920 | MEDIUM | 5.4 | 0.6% | Jan 14, 2022 | Authenticated Reflected Cross-Site Scripting (XSS) vulnerability discovered in WordPress plugin Download Monitor (versio... |
| CVE-2021-36199 | MEDIUM | 5.3 | 1.0% | Jan 14, 2022 | Running a vulnerability scanner against VideoEdge NVRs can cause some functionality to stop. |
| CVE-2021-23566 | MEDIUM | 5.5 | 0.4% | Jan 14, 2022 | The package nanoid from 3.0.0 and before 3.1.31 are vulnerable to Information Exposure via the valueOf() function which ... |
| CVE-2021-1037 | MEDIUM | 5.3 | 0.3% | Jan 14, 2022 | The broadcast that DevicePickerFragment sends when a new device is paired doesn't have any permission checks, so any app... |
| CVE-2021-45763 | MEDIUM | 5.5 | 0.7% | Jan 14, 2022 | GPAC v1.1.0 was discovered to contain an invalid call in the function gf_node_changed(). This vulnerability can lead to ... |
| CVE-2021-45762 | MEDIUM | 5.5 | 0.7% | Jan 14, 2022 | GPAC v1.1.0 was discovered to contain an invalid memory address dereference via the function gf_sg_vrml_mf_reset(). This... |
| CVE-2021-24046 | MEDIUM | 5.3 | 0.7% | Jan 14, 2022 | A logic flaw in Ray-Ban® Stories device software allowed some parameters like video capture duration limit to be modifie... |
| CVE-2021-39032 | MEDIUM | 5.5 | 0.3% | Jan 14, 2022 | IBM Sterling Gentran:Server for Microsoft Windows 5.3 stores potentially sensitive information in log files that could b... |
| CVE-2021-36781 | MEDIUM | 4.4 | 0.2% | Jan 14, 2022 | A Incorrect Default Permissions vulnerability in the parsec package of openSUSE Factory allows local attackers to imitat... |
| CVE-2021-42551 | MEDIUM | 6.1 | 2.7% | Jan 14, 2022 | Cross-site Scripting (XSS) vulnerability in the search functionality of AlCoda NetBiblio WebOPAC allows an unauthenticat... |
| CVE-2021-38678 | MEDIUM | 6.1 | 0.6% | Jan 14, 2022 | An open redirect vulnerability has been reported to affect QNAP device running QcalAgent. If exploited, this vulnerabili... |
| CVE-2021-38677 | MEDIUM | 6.1 | 0.7% | Jan 14, 2022 | A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QcalAgent. If exploited, this... |
| CVE-2021-45760 | MEDIUM | 5.5 | 0.8% | Jan 14, 2022 | GPAC v1.1.0 was discovered to contain an invalid memory address dereference via the function gf_list_last(). This vulner... |
| CVE-2021-34985 | MEDIUM | 5.5 | 1.7% | Jan 13, 2022 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley Contex... |
| CVE-2021-34984 | MEDIUM | 5.5 | 1.7% | Jan 13, 2022 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley Contex... |
| CVE-2021-45054 | MEDIUM | 5.5 | 2.0% | Jan 13, 2022 | Adobe InCopy version 16.4 (and earlier) is affected by a use-after-free vulnerability in the processing of a JPEG2000 fi... |
| CVE-2021-44178 | MEDIUM | 6.1 | 1.4% | Jan 13, 2022 | AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a reflected Cross-Site Scripting (... |
| CVE-2021-44177 | MEDIUM | 6.1 | 1.6% | Jan 13, 2022 | AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS... |
| CVE-2021-44176 | MEDIUM | 6.1 | 1.6% | Jan 13, 2022 | AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS... |
| CVE-2021-43765 | MEDIUM | 6.1 | 1.6% | Jan 13, 2022 | AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS... |
| CVE-2021-43764 | MEDIUM | 5.4 | 1.5% | Jan 13, 2022 | AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a stored Cross-Site Scripting (XSS... |
| CVE-2021-43762 | MEDIUM | 6.5 | 1.6% | Jan 13, 2022 | AEM's Cloud Service offering, as well as version 6.5.10.0 (and below) are affected by a dispatcher bypass vulnerability ... |
| CVE-2021-43761 | MEDIUM | 5.4 | 1.1% | Jan 13, 2022 | AEM's Cloud Service offering, as well as versions 6.5.7.0 (and below), 6.4.8.3 (and below) and 6.3.3.8 (and below) are a... |
| CVE-2021-45422 | MEDIUM | 6.1 | 3.3% | Jan 13, 2022 | Reprise License Manager 14.2 is affected by a reflected cross-site scripting vulnerability in the /goform/activate_proce... |
| CVE-2021-40576 | MEDIUM | 5.5 | 0.9% | Jan 13, 2022 | The binary MP4Box in Gpac 1.0.1 has a null pointer dereference vulnerability in the gf_isom_get_payt_count function in h... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now