2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-43282MEDIUM6.5An issue was discovered on Victure WR1200 devices through 1.0.3. The default Wi-Fi WPA2 key is advertised to anyone with...
CVE-2021-22095MEDIUM6.5In Spring AMQP versions 2.2.0 - 2.2.19 and 2.3.0 - 2.3.11, the Spring AMQP Message object, in its toString() method, wil...
CVE-2021-39000MEDIUM5.5IBM MQ Appliance 9.2 CD and 9.2 LTS could allow a local attacker to obtain sensitive information by inclusion of sensiti...
CVE-2021-38999MEDIUM5.5IBM MQ Appliance could allow a local attacker to obtain sensitive information by inclusion of sensitive data within trac...
CVE-2021-38967MEDIUM6.7IBM MQ Appliance 9.2 CD and 9.2 LTS could allow a local privileged user to inject and execute malicious code. IBM X-Forc...
CVE-2021-38958MEDIUM5.5IBM MQ Appliance 9.2 CD and 9.2 LTS is affected by a denial of service attack caused by a concurrency issue. IBM X-Force...
CVE-2021-43998MEDIUM6.5HashiCorp Vault and Vault Enterprise 0.11.0 up to 1.7.5 and 1.8.4 templated ACL policies would always match the first-cr...
CVE-2021-25987MEDIUM4.6Hexo versions 0.0.1 to 5.4.0 are vulnerable against stored XSS. The post “body” and “tags” don’t sanitize malicious java...
CVE-2021-42122MEDIUM4.3Insufficient Input Validation in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version <...
CVE-2021-42121MEDIUM4.3Insufficient Input Validation in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version <...
CVE-2021-42120MEDIUM6.5Insufficient Input Validation in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version <...
CVE-2021-42119MEDIUM5.4Persistent Cross Site Scripting in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version...
CVE-2021-42118MEDIUM5.4Persistent Cross Site Scripting in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version...
CVE-2021-42117MEDIUM5.4Insufficient Input Validation in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version <...
CVE-2021-42116MEDIUM4.3Incorrect Access Control in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version <= 7.1...
CVE-2021-43788MEDIUM5Nodebb is an open source Node.js based forum software. Prior to v1.18.5, a path traversal vulnerability was present that...
CVE-2021-43787MEDIUM6.1Nodebb is an open source Node.js based forum software. In affected versions a prototype pollution vulnerability in the u...
CVE-2021-44203MEDIUM5.4Stored cross-site scripting (XSS) was possible in protection plan details. The following products are affected: Acronis ...
CVE-2021-44202MEDIUM5.4Stored cross-site scripting (XSS) was possible in activity details. The following products are affected: Acronis Cyber P...
CVE-2021-44201MEDIUM6.1Cross-site scripting (XSS) was possible in notification pop-ups. The following products are affected: Acronis Cyber Prot...
CVE-2021-44200MEDIUM5.4Self cross-site scripting (XSS) was possible on devices page. The following products are affected: Acronis Cyber Protect...
CVE-2021-44199MEDIUM5.5DLL hijacking could lead to denial of service. The following products are affected: Acronis Cyber Protect 15 (Windows) b...
CVE-2021-42365MEDIUM4.8The Asgaros Forums WordPress plugin is vulnerable to Stored Cross-Site Scripting due to insufficient escaping via the na...
CVE-2021-3802MEDIUM4.2A vulnerability found in udisks2. This flaw allows an attacker to input a specially crafted image file/USB leading to ke...
CVE-2021-39995MEDIUM6.5Some Huawei products use the OpenHpi software for hardware management. A function that parses data returned by OpenHpi c...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now