2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-37036 | MEDIUM | 5.5 | 0.2% | Nov 23, 2021 | There is an information leakage vulnerability in FusionCompute 6.5.1, eCNS280_TD V100R005C00 and V100R005C10. Due to the... |
| CVE-2021-22410 | MEDIUM | 5.4 | 0.3% | Nov 23, 2021 | There is a XSS injection vulnerability in iMaster NCE-Fabric V100R019C10. A module of the client does not verify the inp... |
| CVE-2021-44147 | MEDIUM | 5.5 | 1.1% | Nov 22, 2021 | An XML External Entity issue in Claris FileMaker Pro and Server (including WebDirect) before 19.4.1 allows a remote atta... |
| CVE-2021-32004 | MEDIUM | 5.3 | 0.6% | Nov 22, 2021 | This issue affects: Secomea GateManager All versions prior to 9.6. Improper Check of host header in web server of Secome... |
| CVE-2021-23673 | MEDIUM | 6.1 | 0.8% | Nov 22, 2021 | This affects all versions of package pekeupload. If an attacker induces a user to upload a file whose name contains java... |
| CVE-2021-43560 | MEDIUM | 5.3 | 1.0% | Nov 22, 2021 | A flaw was found in Moodle in versions 3.11 to 3.11.3, 3.10 to 3.10.7, 3.9 to 3.9.10 and earlier unsupported versions. I... |
| CVE-2021-43558 | MEDIUM | 6.1 | 0.8% | Nov 22, 2021 | A flaw was found in Moodle in versions 3.11 to 3.11.3, 3.10 to 3.10.7, 3.9 to 3.9.10 and earlier unsupported versions. A... |
| CVE-2021-43016 | MEDIUM | 5.5 | 2.0% | Nov 22, 2021 | Adobe InCopy version 16.4 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially... |
| CVE-2021-42733 | MEDIUM | 5.5 | 1.4% | Nov 22, 2021 | Adobe Bridge version 11.1.1 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a special... |
| CVE-2021-40774 | MEDIUM | 5.5 | 1.2% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a null pointer dereference vulnerability when parsing a speciall... |
| CVE-2021-40773 | MEDIUM | 5.5 | 1.2% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a null pointer dereference vulnerability when parsing a speciall... |
| CVE-2021-38378 | MEDIUM | 4.3 | 1.2% | Nov 22, 2021 | OX App Suite 7.10.5 allows Information Exposure because a caching mechanism can caused a Modified By response to show a ... |
| CVE-2021-38377 | MEDIUM | 6.1 | 1.1% | Nov 22, 2021 | OX App Suite through 7.10.5 allows XSS via JavaScript code in an anchor HTML comment within truncated e-mail, because th... |
| CVE-2021-38376 | MEDIUM | 5.3 | 1.4% | Nov 22, 2021 | OX App Suite through 7.10.5 has Incorrect Access Control for retrieval of session information via the rampup action of t... |
| CVE-2021-38375 | MEDIUM | 6.1 | 1.3% | Nov 22, 2021 | OX App Suite through 7.10.5 allows XSS via the alt attribute of an IMG element in a truncated e-mail message. |
| CVE-2021-38374 | MEDIUM | 5.4 | 1.2% | Nov 22, 2021 | OX App Suite through through 7.10.5 allows XSS via a crafted snippet that has an app loader reference within an app load... |
| CVE-2021-33495 | MEDIUM | 6.1 | 1.1% | Nov 22, 2021 | OX App Suite 7.10.5 allows XSS via an OX Chat system message. |
| CVE-2021-33494 | MEDIUM | 6.1 | 1.1% | Nov 22, 2021 | OX App Suite 7.10.5 allows XSS via an OX Chat room title during typing rendering. |
| CVE-2021-33493 | MEDIUM | 6 | 0.5% | Nov 22, 2021 | The middleware component in OX App Suite through 7.10.5 allows Code Injection via Java classes in a YAML format. |
| CVE-2021-33492 | MEDIUM | 6.1 | 1.1% | Nov 22, 2021 | OX App Suite 7.10.5 allows XSS via an OX Chat room name. |
| CVE-2021-33491 | MEDIUM | 6.5 | 2.4% | Nov 22, 2021 | OX App Suite through 7.10.5 allows Directory Traversal via ../ in an OOXML or ODF ZIP archive, because of the mishandlin... |
| CVE-2021-33490 | MEDIUM | 6.1 | 1.3% | Nov 22, 2021 | OX App Suite through 7.10.5 allows XSS via a crafted snippet in a shared mail signature. |
| CVE-2021-33489 | MEDIUM | 6.1 | 1.3% | Nov 22, 2021 | OX App Suite through 7.10.5 allows XSS via JavaScript code in a shared XCF file. |
| CVE-2021-33488 | MEDIUM | 6.1 | 1.1% | Nov 22, 2021 | chat in OX App Suite 7.10.5 has Improper Input Validation. A user can be redirected to a rogue OX Chat server via a deve... |
| CVE-2021-34400 | MEDIUM | 4.4 | 0.2% | Nov 20, 2021 | NVIDIA GPU and Tegra hardware contain a vulnerability in the internal microcontroller which may allow a user with elevat... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now