2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-46701MEDIUM6.5PreMiD 2.2.0 allows unintended access via the websocket transport. An attacker can receive events from a socket and emit...
CVE-2021-45083HIGH7.1An issue was discovered in Cobbler before 3.3.1. Files in /etc/cobbler are world readable. Two of those files contain so...
CVE-2021-45081MEDIUM5.9An issue was discovered in Cobbler through 3.3.1. Routines in several files use the HTTP protocol instead of the more se...
CVE-2021-45007MEDIUM6.5Plesk 18.0.37 is affected by a Cross Site Request Forgery (CSRF) vulnerability that allows an attacker to insert data on...
CVE-2021-46700MEDIUM6.5In libsixel 1.8.6, sixel_encoder_output_without_macro (called from sixel_encoder_encode_frame in encoder.c) has a double...
CVE-2021-45082HIGH7.8An issue was discovered in Cobbler before 3.3.1. In the templar.py file, the function check_for_invalid_imports can allo...
CVE-2021-44302HIGH8.8BaiCloud-cms v2.5.7 was discovered to contain multiple SQL injection vulnerabilities via the tongji and baidu_map parame...
CVE-2021-29656CRITICAL9.8Pexip Infinity Connect before 1.8.0 mishandles TLS certificate validation. The allow list is not properly checked.
CVE-2021-29655CRITICAL9.8Pexip Infinity Connect before 1.8.0 omits certain provisioning authenticity checks. Thus, untrusted code may execute.
CVE-2021-46110CRITICAL9.8Online Shopping Portal v3.1 was discovered to contain multiple time-based SQL injection vulnerabilities via the email an...
CVE-2021-40841MEDIUM6.5A Path Traversal vulnerability for a log file in LiveConfig 2.12.2 allows authenticated attackers to read files on the u...
CVE-2021-40840MEDIUM5.4A Stored XSS issue exists in the admin/users user administration form in LiveConfig 2.12.2.
CVE-2021-46656HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7...
CVE-2021-46655HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7...
CVE-2021-46654MEDIUM5.5This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley View 1...
CVE-2021-46653HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7...
CVE-2021-46652HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.7...
CVE-2021-46651MEDIUM5.5This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS...
CVE-2021-46650MEDIUM5.5This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS...
CVE-2021-46649MEDIUM5.5This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley MicroS...
CVE-2021-46648HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation C...
CVE-2021-46647HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation C...
CVE-2021-46646HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation C...
CVE-2021-46645HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation C...
CVE-2021-46644HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation C...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now