2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-31367 | MEDIUM | 6.5 | 0.4% | Oct 19, 2021 | A Missing Release of Memory after Effective Lifetime vulnerability in the Packet Forwarding Engine (PFE) of Juniper Netw... |
| CVE-2021-31366 | MEDIUM | 6.5 | 0.4% | Oct 19, 2021 | An Unchecked Return Value vulnerability in the authd (authentication daemon) of Juniper Networks Junos OS on MX Series c... |
| CVE-2021-31365 | MEDIUM | 6.5 | 0.4% | Oct 19, 2021 | An Uncontrolled Resource Consumption vulnerability in Juniper Networks Junos OS on EX2300, EX3400 and EX4300 Series plat... |
| CVE-2021-31364 | MEDIUM | 5.9 | 0.6% | Oct 19, 2021 | An Improper Check for Unusual or Exceptional Conditions vulnerability combined with a Race Condition in the flow daemon ... |
| CVE-2021-31363 | MEDIUM | 6.5 | 0.4% | Oct 19, 2021 | In an MPLS P2MP environment a Loop with Unreachable Exit Condition vulnerability in the routing protocol daemon (RPD) of... |
| CVE-2021-31362 | MEDIUM | 6.5 | 0.4% | Oct 19, 2021 | A Protection Mechanism Failure vulnerability in RPD (routing protocol daemon) of Juniper Networks Junos OS and Junos OS ... |
| CVE-2021-31361 | MEDIUM | 5.3 | 1.0% | Oct 19, 2021 | An Improper Check for Unusual or Exceptional Conditions vulnerability combined with Improper Handling of Exceptional Con... |
| CVE-2021-31355 | MEDIUM | 5.4 | 0.8% | Oct 19, 2021 | A persistent cross-site scripting (XSS) vulnerability in the captive portal graphical user interface of Juniper Networks... |
| CVE-2021-31352 | MEDIUM | 5.3 | 0.8% | Oct 19, 2021 | An Information Exposure vulnerability in Juniper Networks SRC Series devices configured for NETCONF over SSH permits the... |
| CVE-2021-0298 | MEDIUM | 4.7 | 0.2% | Oct 19, 2021 | A Race Condition in the 'show chassis pic' command in Juniper Networks Junos OS Evolved may allow an attacker to crash t... |
| CVE-2021-0297 | MEDIUM | 6.5 | 0.7% | Oct 19, 2021 | A vulnerability in the processing of TCP MD5 authentication in Juniper Networks Junos OS Evolved may allow a BGP or LDP ... |
| CVE-2021-41140 | MEDIUM | 5.3 | 0.9% | Oct 19, 2021 | Discourse-reactions is a plugin for the Discourse platform that allows user to add their reactions to the post. In affec... |
| CVE-2021-35323 | MEDIUM | 6.1 | 5.6% | Oct 19, 2021 | Cross Site Scripting (XSS) vulnerability exists in bludit 3-13-1 via the username in admin/login. |
| CVE-2021-32664 | MEDIUM | 4.8 | 0.8% | Oct 19, 2021 | Combodo iTop is an open source web based IT Service Management tool. In affected versions there is a XSS vulnerability o... |
| CVE-2021-33988 | MEDIUM | 6.1 | 1.0% | Oct 19, 2021 | Cross Site Scripting (XSS). vulnerability exists in Microweber CMS 1.2.7 via the Login form, which could let a malicious... |
| CVE-2021-38911 | MEDIUM | 4.9 | 0.5% | Oct 19, 2021 | IBM Security Risk Manager on CP4S 1.7.0.0 stores user credentials in plain clear text which can be read by a an authenti... |
| CVE-2021-29912 | MEDIUM | 5.4 | 0.5% | Oct 19, 2021 | IBM Security Risk Manager on CP4S 1.7.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embe... |
| CVE-2021-3746 | MEDIUM | 6.5 | 0.9% | Oct 19, 2021 | A flaw was found in the libtpms code that may cause access beyond the boundary of internal buffers. The vulnerability is... |
| CVE-2021-39355 | MEDIUM | 4.8 | 1.0% | Oct 19, 2021 | The Indeed Job Importer WordPress plugin is vulnerable to Stored Cross-Site Scripting due to insufficient input validati... |
| CVE-2021-39343 | MEDIUM | 4.8 | 1.0% | Oct 19, 2021 | The MPL-Publisher WordPress plugin is vulnerable to Stored Cross-Site Scripting due to insufficient input validation and... |
| CVE-2021-39329 | MEDIUM | 4.8 | 1.0% | Oct 19, 2021 | The JobBoardWP WordPress plugin is vulnerable to Stored Cross-Site Scripting due to insufficient input validation and sa... |
| CVE-2021-36832 | MEDIUM | 5.4 | 0.6% | Oct 19, 2021 | WordPress Popups, Welcome Bar, Optins and Lead Generation Plugin – Icegram (versions <= 2.0.2) vulnerable at "Headline" ... |
| CVE-2021-27001 | MEDIUM | 5.5 | 0.2% | Oct 19, 2021 | Clustered Data ONTAP versions 9.x prior to 9.5P18, 9.6P16, 9.7P16, 9.8P7 and 9.9.1P2 are susceptible to a vulnerability ... |
| CVE-2021-26589 | MEDIUM | 6.1 | 0.5% | Oct 19, 2021 | A potential security vulnerability has been identified in HPE Superdome Flex Servers. The vulnerability could be remotel... |
| CVE-2021-30850 | MEDIUM | 5.5 | 0.9% | Oct 19, 2021 | An access issue was addressed with improved access restrictions. This issue is fixed in Security Update 2021-005 Catalin... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now