2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-27017MEDIUM6.6Utilization of a module presented a security risk by allowing the deserialization of untrusted/user supplied data. This ...
CVE-2021-3978MEDIUM5.5When copying files with rsync, octorpki uses the "-a" flag 0, which forces rsync to copy binaries with the suid bit set ...
CVE-2021-30745Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Rejected Reason: This candidate is unused by its CNA.
CVE-2021-42718MEDIUM4.9Information Disclosure in API in Replicated Replicated Classic versions prior to 2.53.1 on all platforms allows authenti...
CVE-2021-21158Rejected reason: Further investigation determines issue is not within scope of this CNA
CVE-2021-0447Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2021-0323Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2021-35685Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is a duplicate of ...
CVE-2021-35684Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is a duplicate of ...
CVE-2021-29669MEDIUM5.4IBM Jazz Foundation 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 is vulnerable to cross-site scripting. This vulnerability allo...
CVE-2021-20455LOW3.7IBM Cognos Controller 11.0.0 through 11.0.1 and IBM Controller 11.1.0 could allow a remote attacker to obtain sensitive ...
CVE-2021-27285HIGH8.4An issue was discovered in Inspur ClusterEngine v4.0 that allows attackers to gain escalated Local privileges and execut...
CVE-2021-37000HIGH7.8Some Huawei wearables have a permission management vulnerability.
CVE-2021-22484HIGH7.5Some Huawei wearables have a vulnerability of not verifying the actual data size when reading data. Successful explo...
CVE-2021-40959MEDIUM6.1A reflected cross-site scripting vulnerability in MONITORAPP Application Insight Web Application Firewall (AIWAF) <= 4.1...
CVE-2021-22501MEDIUM5.3Improper Restriction of XML External Entity Reference vulnerability in OpenText™ Operations Bridge Manager allows Input ...
CVE-2021-26102CRITICAL9.1A relative path traversal vulnerability (CWE-23) in FortiWAN version 4.5.7 and below, 4.4 all versions may allow a remot...
CVE-2021-32589CRITICAL9.8A Use After Free (CWE-416) vulnerability in FortiManager version 7.0.0, version 6.4.5 and below, version 6.2.7 and below...
CVE-2021-26115HIGH7.8An OS command injection (CWE-78) vulnerability in FortiWAN version 4.5.7 and below Command Line Interface may allow a lo...
CVE-2021-26093MEDIUM6.5An access of uninitialized pointer (CWE-824) vulnerability in FortiWLC versions 8.6.0, 8.5.3 and earlier may allow a loc...
CVE-2021-39081HIGH7.5IBM Cognos Analytics Mobile for Android 1.1.14 uses weaker than expected cryptographic algorithms that could allow an at...
CVE-2021-29827MEDIUM5.2IBM InfoSphere Information Server 11.7 could allow a remote attacker to hijack the clicking action of the victim. By per...
CVE-2021-20553MEDIUM5.4IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.1.1.0 is vulnerable to cross-site scripting. This vulnera...
CVE-2021-26281MEDIUM5.5Some parameters of the alarm clock module are improperly stored, leaking some sensitive information.
CVE-2021-26280HIGH7.9Locally installed application can bypass the permission check and perform system operations that require permission.

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now