2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-36959MEDIUM5.5Windows Authenticode Spoofing Vulnerability
CVE-2021-36956MEDIUM4.4Azure Sphere Information Disclosure Vulnerability
CVE-2021-26437MEDIUM5.5Visual Studio Code Spoofing Vulnerability
CVE-2021-22147MEDIUM6.5Elasticsearch before 7.14.0 did not apply document and field level security to searchable snapshots. This could lead to ...
CVE-2021-23027MEDIUM6.1On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, and 14.1.x before 14.1.4.3, a DOM based cross-site scripting ...
CVE-2021-39391MEDIUM6.1Cross Site Scripting (XSS) vulnerability exists in the admin panel in Beego v2.0.1 via the URI path in an HTTP request, ...
CVE-2021-35493MEDIUM5.4The WebFOCUS Reporting Server and WebFOCUS Client components of TIBCO Software Inc.'s TIBCO WebFOCUS Client, TIBCO WebFO...
CVE-2021-23046MEDIUM4.9On all versions of Guided Configuration before 8.0.0, when a configuration that contains secure properties is created an...
CVE-2021-23043MEDIUM6.5On BIG-IP, on all versions of 16.1.x, 16.0.x, 15.1.x, 14.1.x, 13.1.x, 12.1.x, and 11.6.x, a directory traversal vulnerab...
CVE-2021-29841MEDIUM5.4IBM Financial Transaction Manager 3.2.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed ...
CVE-2021-23047MEDIUM5.3On version 16.x before 16.1.0, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.3, and all versions of 13.1.x, 12.1.x and 11...
CVE-2021-23041MEDIUM6.1On BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and all ...
CVE-2021-20582MEDIUM5.3IBM Security Secret Server up to 11.0 stores sensitive information in URL parameters. This may lead to information discl...
CVE-2021-20569MEDIUM5.3IBM Security Secret Server up to 11.0 could allow an attacker to enumerate usernames due to improper input validation. I...
CVE-2021-20508MEDIUM4.3IBM Security Secret Server up to 11.0 could allow a remote attacker to obtain sensitive information when a detailed tech...
CVE-2021-23053MEDIUM5.3On version 15.1.x before 15.1.3, 14.1.x before 14.1.3.1, and 13.1.x before 13.1.3.6, when the brute force protection fea...
CVE-2021-23052MEDIUM6.1On version 14.1.x before 14.1.4.4 and all versions of 13.1.x, an open redirect vulnerability exists on virtual servers e...
CVE-2021-38175MEDIUM6.5SAP Analysis for Microsoft Office - version 2.8, allows an attacker with high privileges to read sensitive data over the...
CVE-2021-38174MEDIUM6.5When a user opens manipulated files received from untrusted sources in SAP 3D Visual Enterprise Viewer version - 9, the ...
CVE-2021-38164MEDIUM5.4SAP ERP Financial Accounting (RFOPENPOSTING_FR) versions - SAP_APPL - 600, 602, 603, 604, 605, 606, 616, SAP_FIN - 617, ...
CVE-2021-38150MEDIUM6.5When an attacker manages to get access to the local memory, or the memory dump of a victim, for example by a social engi...
CVE-2021-37532MEDIUM4.3SAP Business One version - 10, due to improper input validation, allows an authenticated User to gain access to director...
CVE-2021-33688MEDIUM4.3SAP Business One allows an attacker with business privileges to execute crafted database queries, exposing the back-end ...
CVE-2021-33686MEDIUM5.3Under certain conditions, SAP Business One version - 10.0, allows an unauthorized attacker to get access to some encrypt...
CVE-2021-33685MEDIUM6.5SAP Business One version - 10.0 allows low-level authorized attacker to traverse the file system to access files or dire...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now