2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2021-31404LOW2.5Non-constant-time comparison of CSRF tokens in UIDL request handler in com.vaadin:flow-server versions 1.0.0 through 1.0...
CVE-2021-31403LOW2.5Non-constant-time comparison of CSRF tokens in UIDL request handler in com.vaadin:vaadin-server versions 7.0.0 through 7...
CVE-2021-26908LOW3.3Automox Agent prior to version 31 logs potentially sensitive information in local log files, which could be used by a lo...
CVE-2021-2308LOW2.7Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions th...
CVE-2021-2301LOW2.7Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions th...
CVE-2021-2245LOW2.7Vulnerability in the Oracle Database - Enterprise Edition Unified Audit component of Oracle Database Server. Supported v...
CVE-2021-2232LOW1.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versi...
CVE-2021-2207LOW2.3Vulnerability in the Oracle Database - Enterprise Edition component of Oracle Database Server. Supported versions that a...
CVE-2021-2175LOW2.7Vulnerability in the Database Vault component of Oracle Database Server. Supported versions that are affected are 12.1.0...
CVE-2021-2159LOW3.5Vulnerability in the PeopleSoft Enterprise CS Campus Community product of Oracle PeopleSoft (component: Frameworks). The...
CVE-2021-2158LOW3.9Vulnerability in the Hyperion Financial Management product of Oracle Hyperion (component: Task Automation). The supporte...
CVE-2021-2149LOW2.5Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: Core). The supported version...
CVE-2021-2147LOW1.8Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: Installation). The supported...
CVE-2021-2141LOW2Vulnerability in the Oracle FLEXCUBE Direct Banking product of Oracle Financial Services Applications (component: Pre Lo...
CVE-2021-24242LOW3.8The Tutor LMS – eLearning and online course solution WordPress plugin before 1.8.8 is affected by a local file inclusion...
CVE-2021-3037LOW2.3An information exposure through log file vulnerability exists in Palo Alto Networks PAN-OS software where the connection...
CVE-2021-21091LOW3.3Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Out-of-bounds read vulnerability ...
CVE-2021-30487LOW2.7In the topic moving API in Zulip Server 3.x before 3.4, organization administrators were able to move messages to stream...
CVE-2021-26076LOW3.7The jira.editor.user.mode cookie set by the Jira Editor Plugin in Jira Server and Data Center before version 8.5.12, fro...
CVE-2021-27260LOW3.2This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt...
CVE-2021-25316LOW3.3A Insecure Temporary File vulnerability in s390-tools of SUSE Linux Enterprise Server 12-SP5, SUSE Linux Enterprise Serv...
CVE-2021-28312LOW3.3Windows NTFS Denial of Service Vulnerability
CVE-2021-25379LOW3.3Intent redirection vulnerability in Gallery prior to version 5.4.16.1 allows attacker to execute privileged action.
CVE-2021-25364LOW3.3A pendingIntent hijacking vulnerability in Secure Folder prior to SMR APR-2021 Release 1 allows unprivileged application...
CVE-2021-25359LOW3.3An improper SELinux policy prior to SMR APR-2021 Release 1 allows local attackers to access AP information without prope...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now