2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-41464MEDIUM6.1Cross-site scripting (XSS) vulnerability in concrete/elements/collection_add.php in concrete5-legacy 5.6.4.0 and below a...
CVE-2021-41463MEDIUM6.1Cross-site scripting (XSS) vulnerability in toos/permissions/dialogs/access/entity/types/group_combination.php in concre...
CVE-2021-41462MEDIUM6.1Cross-site scripting (XSS) vulnerability in concrete/elements/collection_add.php in concrete5-legacy 5.6.4.0 and below a...
CVE-2021-41461MEDIUM6.1Cross-site scripting (XSS) vulnerability in concrete/elements/collection_add.php in concrete5-legacy 5.6.4.0 and below a...
CVE-2021-40975MEDIUM6.1Cross-site scripting (XSS) vulnerability in application/modules/admin/views/ecommerce/products.php in Ecommerce-CodeIgni...
CVE-2021-40973MEDIUM6.1Cross-site scripting (XSS) vulnerability in templates/installer/step-004.inc.php in spotweb 1.5.1 and below allow remote...
CVE-2021-40972MEDIUM6.1Cross-site scripting (XSS) vulnerability in templates/installer/step-004.inc.php in spotweb 1.5.1 and below allow remote...
CVE-2021-40971MEDIUM6.1Cross-site scripting (XSS) vulnerability in templates/installer/step-004.inc.php in spotweb 1.5.1 and below allow remote...
CVE-2021-40970MEDIUM6.1Cross-site scripting (XSS) vulnerability in templates/installer/step-004.inc.php in spotweb 1.5.1 and below allow remote...
CVE-2021-40969MEDIUM6.1Cross-site scripting (XSS) vulnerability in templates/installer/step-004.inc.php in spotweb 1.5.1 and below allow remote...
CVE-2021-40968MEDIUM6.1Cross-site scripting (XSS) vulnerability in templates/installer/step-004.inc.php in spotweb 1.5.1 and below allow remote...
CVE-2021-40928MEDIUM6.1Cross-site scripting (XSS) vulnerability in index.php in FlexTV beta development version allows remote attackers to inje...
CVE-2021-40927MEDIUM6.1Cross-site scripting (XSS) vulnerability in callback.php in Spotify-for-Alfred 0.13.9 and below allows remote attackers ...
CVE-2021-40926MEDIUM6.1Cross-site scripting (XSS) vulnerability in demos/demo.mysqli.php in getID3 1.X and v2.0.0-beta allows remote attackers ...
CVE-2021-40925MEDIUM6.1Cross-site scripting (XSS) vulnerability in dompdf/dompdf/www/demo.php infaveo-helpdesk v1.11.0 and below allow remote a...
CVE-2021-40924MEDIUM6.1Cross-site scripting (XSS) vulnerability in install/index.php in bugs 1.8 and below version allows remote attackers to i...
CVE-2021-40923MEDIUM6.1Cross-site scripting (XSS) vulnerability in install/index.php in bugs 1.8 and below version allows remote attackers to i...
CVE-2021-40922MEDIUM6.1Cross-site scripting (XSS) vulnerability in install/index.php in bugs 1.8 and below version allows remote attackers to i...
CVE-2021-40921MEDIUM6.1Cross-site scripting (XSS) vulnerability in _contactform.inc.php in Detector 0.8.5 and below version allows remote attac...
CVE-2021-29110MEDIUM5.4Stored cross-site scripting (XSS) issue in Esri Portal for ArcGIS may allow a remote unauthenticated attacker to pass an...
CVE-2021-29109MEDIUM6.1A reflected XSS vulnerability in Esri Portal for ArcGIS version 10.9 and below may allow a remote attacker able to convi...
CVE-2021-3710MEDIUM5.5An information disclosure via path traversal was discovered in apport/hookutils.py function read_file(). This issue affe...
CVE-2021-3709MEDIUM5.5Function check_attachment_for_errors() in file data/general-hooks/ubuntu.py could be tricked into exposing private data ...
CVE-2021-38675MEDIUM5.4A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Image2PDF. If exploited, this...
CVE-2021-34356MEDIUM5.4A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Photo Station. If exploited, ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now