2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-39211 | MEDIUM | 5.3 | 4.4% | Sep 15, 2021 | GLPI is a free Asset and IT management software package. Starting in version 9.2 and prior to version 9.5.6, the telemet... |
| CVE-2021-39210 | MEDIUM | 6.5 | 1.0% | Sep 15, 2021 | GLPI is a free Asset and IT management software package. In versions prior to 9.5.6, the cookie used to store the autolo... |
| CVE-2021-37412 | MEDIUM | 6.1 | 1.1% | Sep 15, 2021 | The TechRadar app 1.1 for Confluence Server allows XSS via the Title field of a Radar. |
| CVE-2021-39189 | MEDIUM | 5.3 | 1.2% | Sep 15, 2021 | Pimcore is an open source data & experience management platform. In versions prior to 10.1.3, it is possible to enumerat... |
| CVE-2021-38156 | MEDIUM | 5.4 | 88.9% | Sep 15, 2021 | In Nagios XI before 5.8.6, XSS exists in the dashboard page (/dashboards/#) when administrative users attempt to edit a ... |
| CVE-2021-3801 | MEDIUM | 6.5 | 1.0% | Sep 15, 2021 | prism is vulnerable to Inefficient Regular Expression Complexity |
| CVE-2021-39307 | MEDIUM | 6.1 | 1.1% | Sep 15, 2021 | PDFTron's WebViewer UI 8.0 or below renders dangerous URLs as hyperlinks in supported documents, including JavaScript UR... |
| CVE-2021-41061 | MEDIUM | 5.5 | 0.2% | Sep 15, 2021 | In RIOT-OS 2021.01, nonce reuse in 802.15.4 encryption in the ieee820154_security component allows attackers to break en... |
| CVE-2021-40448 | MEDIUM | 6.3 | 2.9% | Sep 15, 2021 | Microsoft Accessibility Insights for Android Information Disclosure Vulnerability |
| CVE-2021-40440 | MEDIUM | 5.4 | 1.0% | Sep 15, 2021 | Microsoft Dynamics Business Central Cross-site Scripting Vulnerability |
| CVE-2021-3785 | MEDIUM | 5.4 | 0.7% | Sep 15, 2021 | yourls is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
| CVE-2021-3783 | MEDIUM | 6.1 | 0.7% | Sep 15, 2021 | yourls is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
| CVE-2021-3780 | MEDIUM | 6.1 | 0.9% | Sep 15, 2021 | peertube is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
| CVE-2021-38669 | MEDIUM | 6.4 | 2.6% | Sep 15, 2021 | Microsoft Edge (Chromium-based) Tampering Vulnerability |
| CVE-2021-38657 | MEDIUM | 6.1 | 0.8% | Sep 15, 2021 | Microsoft Office Graphics Component Information Disclosure Vulnerability |
| CVE-2021-38637 | MEDIUM | 5.5 | 0.8% | Sep 15, 2021 | Windows Storage Information Disclosure Vulnerability |
| CVE-2021-38636 | MEDIUM | 5.5 | 0.8% | Sep 15, 2021 | Windows Redirected Drive Buffering SubSystem Driver Information Disclosure Vulnerability |
| CVE-2021-38635 | MEDIUM | 5.5 | 0.8% | Sep 15, 2021 | Windows Redirected Drive Buffering SubSystem Driver Information Disclosure Vulnerability |
| CVE-2021-38632 | MEDIUM | 5.7 | 0.7% | Sep 15, 2021 | Windows BitLocker Security Feature Bypass Vulnerability |
| CVE-2021-38629 | MEDIUM | 6.5 | 2.5% | Sep 15, 2021 | Windows Ancillary Function Driver for WinSock Information Disclosure Vulnerability |
| CVE-2021-38624 | MEDIUM | 6.5 | 1.4% | Sep 15, 2021 | Windows Key Storage Provider Security Feature Bypass Vulnerability |
| CVE-2021-36972 | MEDIUM | 5.5 | 0.8% | Sep 15, 2021 | Windows SMB Information Disclosure Vulnerability |
| CVE-2021-36969 | MEDIUM | 5.5 | 0.8% | Sep 15, 2021 | Windows Redirected Drive Buffering SubSystem Driver Information Disclosure Vulnerability |
| CVE-2021-36962 | MEDIUM | 5.5 | 1.2% | Sep 15, 2021 | Windows Installer Information Disclosure Vulnerability |
| CVE-2021-36961 | MEDIUM | 5.5 | 1.0% | Sep 15, 2021 | Windows Installer Denial of Service Vulnerability |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now