2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-20872MEDIUM6.8Protection mechanism failure vulnerability in KONICA MINOLTA bizhub series (bizhub C750i G00-35 and earlier, bizhub C650...
CVE-2021-20871MEDIUM6.5Exposure of sensitive information to an unauthorized actor vulnerability in KONICA MINOLTA bizhub series (bizhub C750i G...
CVE-2021-20870MEDIUM4.6Improper handling of exceptional conditions vulnerability in KONICA MINOLTA bizhub series (bizhub C750i G00-35 and earli...
CVE-2021-20869MEDIUM6.5Exposure of sensitive information to an unauthorized actor vulnerability in KONICA MINOLTA bizhub series (bizhub C750i G...
CVE-2021-20868MEDIUM4.5Incorrect authorization vulnerability in KONICA MINOLTA bizhub series (bizhub C750i G00-35 and earlier, bizhub C650i/C55...
CVE-2021-43942MEDIUM6.1Affected versions of Atlassian Jira Server and Data Center allow remote attackers to inject arbitrary HTML or JavaScript...
CVE-2021-45829MEDIUM5.5HDF5 1.13.1-1 is affected by: segmentation fault, which causes a Denial of Service.
CVE-2021-39981MEDIUM5.3Chang Lian application has a vulnerability which can be maliciously exploited to hide the calling number.Successful expl...
CVE-2021-39980MEDIUM5.3Telephony application has a Exposure of Sensitive Information to an Unauthorized Actor vulnerability.Successful exploita...
CVE-2021-37132MEDIUM5.3PackageManagerService has a Permissions, Privileges, and Access Controls vulnerability .Successful exploitation of this ...
CVE-2021-37118MEDIUM5.3The HwNearbyMain module has a Improper Handling of Exceptional Conditions vulnerability.Successful exploitation of this ...
CVE-2021-37114MEDIUM5.3There is an Out-of-bounds read vulnerability in Smartphone.Successful exploitation of this vulnerability may affect serv...
CVE-2021-37112MEDIUM5.3Hisuite module has a External Control of System or Configuration Setting vulnerability.Successful exploitation of this v...
CVE-2021-20148MEDIUM4.3ManageEngine ADSelfService Plus below build 6116 stores the password policy file for each domain under the html/ web roo...
CVE-2021-20147MEDIUM5.3ManageEngine ADSelfService Plus below build 6116 contains an observable response discrepancy in the UMCP operation of th...
CVE-2021-46109MEDIUM6.1Invalid input sanitizing leads to reflected Cross Site Scripting (XSS) in ASUS RT-AC52U_B1 3.0.0.4.380.10931 can lead to...
CVE-2021-3837MEDIUM6.1openwhyd is vulnerable to Improper Authorization
CVE-2021-44674MEDIUM6.5An information exposure issue has been discovered in Opmantek Open-AudIT 4.2.0. The vulnerability allows an authenticate...
CVE-2021-25040MEDIUM6.1The Booking Calendar WordPress plugin before 8.9.2 does not sanitise and escape the booking_type parameter before output...
CVE-2021-25027MEDIUM6.1The PowerPack Addons for Elementor WordPress plugin before 2.6.2 does not escape the tab parameter before outputting it ...
CVE-2021-25022MEDIUM6.1The UpdraftPlus WordPress Backup Plugin WordPress plugin before 1.16.66 does not sanitise and escape the backup_timestam...
CVE-2021-25021MEDIUM4.9The OMGF | Host Google Fonts Locally WordPress plugin before 4.5.12 does not validate the cache directory setting, allow...
CVE-2021-25020MEDIUM4.9The CAOS | Host Google Analytics Locally WordPress plugin before 4.1.9 does not validate the cache directory setting, al...
CVE-2021-25016MEDIUM6.1The Chaty WordPress plugin before 2.8.3 and Chaty Pro WordPress plugin before 2.8.2 do not sanitise and escape the searc...
CVE-2021-25001MEDIUM6.1The Booster for WooCommerce WordPress plugin before 5.4.9 does not sanitise and escape the wcj_create_products_xml_resul...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now