2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-41464 | MEDIUM | 6.1 | 0.8% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in concrete/elements/collection_add.php in concrete5-legacy 5.6.4.0 and below a... |
| CVE-2021-41463 | MEDIUM | 6.1 | 0.8% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in toos/permissions/dialogs/access/entity/types/group_combination.php in concre... |
| CVE-2021-41462 | MEDIUM | 6.1 | 0.8% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in concrete/elements/collection_add.php in concrete5-legacy 5.6.4.0 and below a... |
| CVE-2021-41461 | MEDIUM | 6.1 | 0.8% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in concrete/elements/collection_add.php in concrete5-legacy 5.6.4.0 and below a... |
| CVE-2021-40975 | MEDIUM | 6.1 | 0.8% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in application/modules/admin/views/ecommerce/products.php in Ecommerce-CodeIgni... |
| CVE-2021-40973 | MEDIUM | 6.1 | 2.2% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in templates/installer/step-004.inc.php in spotweb 1.5.1 and below allow remote... |
| CVE-2021-40972 | MEDIUM | 6.1 | 2.2% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in templates/installer/step-004.inc.php in spotweb 1.5.1 and below allow remote... |
| CVE-2021-40971 | MEDIUM | 6.1 | 2.2% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in templates/installer/step-004.inc.php in spotweb 1.5.1 and below allow remote... |
| CVE-2021-40970 | MEDIUM | 6.1 | 2.2% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in templates/installer/step-004.inc.php in spotweb 1.5.1 and below allow remote... |
| CVE-2021-40969 | MEDIUM | 6.1 | 2.2% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in templates/installer/step-004.inc.php in spotweb 1.5.1 and below allow remote... |
| CVE-2021-40968 | MEDIUM | 6.1 | 2.2% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in templates/installer/step-004.inc.php in spotweb 1.5.1 and below allow remote... |
| CVE-2021-40928 | MEDIUM | 6.1 | 0.7% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in index.php in FlexTV beta development version allows remote attackers to inje... |
| CVE-2021-40927 | MEDIUM | 6.1 | 0.8% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in callback.php in Spotify-for-Alfred 0.13.9 and below allows remote attackers ... |
| CVE-2021-40926 | MEDIUM | 6.1 | 1.0% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in demos/demo.mysqli.php in getID3 1.X and v2.0.0-beta allows remote attackers ... |
| CVE-2021-40925 | MEDIUM | 6.1 | 0.8% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in dompdf/dompdf/www/demo.php infaveo-helpdesk v1.11.0 and below allow remote a... |
| CVE-2021-40924 | MEDIUM | 6.1 | 0.8% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in install/index.php in bugs 1.8 and below version allows remote attackers to i... |
| CVE-2021-40923 | MEDIUM | 6.1 | 0.8% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in install/index.php in bugs 1.8 and below version allows remote attackers to i... |
| CVE-2021-40922 | MEDIUM | 6.1 | 0.8% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in install/index.php in bugs 1.8 and below version allows remote attackers to i... |
| CVE-2021-40921 | MEDIUM | 6.1 | 0.7% | Oct 1, 2021 | Cross-site scripting (XSS) vulnerability in _contactform.inc.php in Detector 0.8.5 and below version allows remote attac... |
| CVE-2021-29110 | MEDIUM | 5.4 | 0.6% | Oct 1, 2021 | Stored cross-site scripting (XSS) issue in Esri Portal for ArcGIS may allow a remote unauthenticated attacker to pass an... |
| CVE-2021-29109 | MEDIUM | 6.1 | 0.7% | Oct 1, 2021 | A reflected XSS vulnerability in Esri Portal for ArcGIS version 10.9 and below may allow a remote attacker able to convi... |
| CVE-2021-3710 | MEDIUM | 5.5 | 0.4% | Oct 1, 2021 | An information disclosure via path traversal was discovered in apport/hookutils.py function read_file(). This issue affe... |
| CVE-2021-3709 | MEDIUM | 5.5 | 0.4% | Oct 1, 2021 | Function check_attachment_for_errors() in file data/general-hooks/ubuntu.py could be tricked into exposing private data ... |
| CVE-2021-38675 | MEDIUM | 5.4 | 0.6% | Oct 1, 2021 | A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Image2PDF. If exploited, this... |
| CVE-2021-34356 | MEDIUM | 5.4 | 0.6% | Oct 1, 2021 | A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Photo Station. If exploited, ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now