2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-31404 | LOW | 2.5 | 0.2% | Apr 23, 2021 | Non-constant-time comparison of CSRF tokens in UIDL request handler in com.vaadin:flow-server versions 1.0.0 through 1.0... |
| CVE-2021-31403 | LOW | 2.5 | 0.3% | Apr 23, 2021 | Non-constant-time comparison of CSRF tokens in UIDL request handler in com.vaadin:vaadin-server versions 7.0.0 through 7... |
| CVE-2021-26908 | LOW | 3.3 | 0.2% | Apr 23, 2021 | Automox Agent prior to version 31 logs potentially sensitive information in local log files, which could be used by a lo... |
| CVE-2021-2308 | LOW | 2.7 | 1.0% | Apr 22, 2021 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions th... |
| CVE-2021-2301 | LOW | 2.7 | 1.0% | Apr 22, 2021 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Information Schema). Supported versions th... |
| CVE-2021-2245 | LOW | 2.7 | 0.7% | Apr 22, 2021 | Vulnerability in the Oracle Database - Enterprise Edition Unified Audit component of Oracle Database Server. Supported v... |
| CVE-2021-2232 | LOW | 1.9 | 0.4% | Apr 22, 2021 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Group Replication Plugin). Supported versi... |
| CVE-2021-2207 | LOW | 2.3 | 0.6% | Apr 22, 2021 | Vulnerability in the Oracle Database - Enterprise Edition component of Oracle Database Server. Supported versions that a... |
| CVE-2021-2175 | LOW | 2.7 | 1.7% | Apr 22, 2021 | Vulnerability in the Database Vault component of Oracle Database Server. Supported versions that are affected are 12.1.0... |
| CVE-2021-2159 | LOW | 3.5 | 0.7% | Apr 22, 2021 | Vulnerability in the PeopleSoft Enterprise CS Campus Community product of Oracle PeopleSoft (component: Frameworks). The... |
| CVE-2021-2158 | LOW | 3.9 | 0.6% | Apr 22, 2021 | Vulnerability in the Hyperion Financial Management product of Oracle Hyperion (component: Task Automation). The supporte... |
| CVE-2021-2149 | LOW | 2.5 | 0.3% | Apr 22, 2021 | Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: Core). The supported version... |
| CVE-2021-2147 | LOW | 1.8 | 0.3% | Apr 22, 2021 | Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: Installation). The supported... |
| CVE-2021-2141 | LOW | 2 | 0.6% | Apr 22, 2021 | Vulnerability in the Oracle FLEXCUBE Direct Banking product of Oracle Financial Services Applications (component: Pre Lo... |
| CVE-2021-24242 | LOW | 3.8 | 0.8% | Apr 22, 2021 | The Tutor LMS – eLearning and online course solution WordPress plugin before 1.8.8 is affected by a local file inclusion... |
| CVE-2021-3037 | LOW | 2.3 | 0.3% | Apr 20, 2021 | An information exposure through log file vulnerability exists in Palo Alto Networks PAN-OS software where the connection... |
| CVE-2021-21091 | LOW | 3.3 | 2.4% | Apr 15, 2021 | Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Out-of-bounds read vulnerability ... |
| CVE-2021-30487 | LOW | 2.7 | 0.7% | Apr 15, 2021 | In the topic moving API in Zulip Server 3.x before 3.4, organization administrators were able to move messages to stream... |
| CVE-2021-26076 | LOW | 3.7 | 1.2% | Apr 15, 2021 | The jira.editor.user.mode cookie set by the Jira Editor Plugin in Jira Server and Data Center before version 8.5.12, fro... |
| CVE-2021-27260 | LOW | 3.2 | 0.5% | Apr 14, 2021 | This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt... |
| CVE-2021-25316 | LOW | 3.3 | 0.3% | Apr 14, 2021 | A Insecure Temporary File vulnerability in s390-tools of SUSE Linux Enterprise Server 12-SP5, SUSE Linux Enterprise Serv... |
| CVE-2021-28312 | LOW | 3.3 | 6.6% | Apr 13, 2021 | Windows NTFS Denial of Service Vulnerability |
| CVE-2021-25379 | LOW | 3.3 | 0.2% | Apr 9, 2021 | Intent redirection vulnerability in Gallery prior to version 5.4.16.1 allows attacker to execute privileged action. |
| CVE-2021-25364 | LOW | 3.3 | 0.1% | Apr 9, 2021 | A pendingIntent hijacking vulnerability in Secure Folder prior to SMR APR-2021 Release 1 allows unprivileged application... |
| CVE-2021-25359 | LOW | 3.3 | 0.1% | Apr 9, 2021 | An improper SELinux policy prior to SMR APR-2021 Release 1 allows local attackers to access AP information without prope... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now