2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-37629 | MEDIUM | 5.3 | 1.3% | Sep 7, 2021 | Nextcloud Richdocuments is an open source collaborative office suite. In affected versions there is a lack of rate limit... |
| CVE-2021-32766 | MEDIUM | 5.3 | 1.3% | Sep 7, 2021 | Nextcloud Text is an open source plaintext editing application which ships with the nextcloud server. In affected versio... |
| CVE-2021-39499 | MEDIUM | 6.1 | 1.2% | Sep 7, 2021 | A Cross-site scripting (XSS) vulnerability in Users in Qiong ICP EyouCMS 1.5.4 allows remote attackers to inject arbitra... |
| CVE-2021-39496 | MEDIUM | 5.4 | 0.6% | Sep 7, 2021 | Eyoucms 1.5.4 lacks sanitization of input data, allowing an attacker to inject malicious code into `filename` param to t... |
| CVE-2021-39194 | MEDIUM | 6.5 | 1.6% | Sep 7, 2021 | kaml is an open source implementation of the YAML format with support for kotlinx.serialization. In affected versions at... |
| CVE-2021-38707 | MEDIUM | 5.4 | 0.6% | Sep 7, 2021 | Persistent cross-site scripting (XSS) vulnerabilities in ClinicCases 7.3.3 allow low-privileged attackers to introduce a... |
| CVE-2021-38704 | MEDIUM | 6.1 | 3.5% | Sep 7, 2021 | Multiple reflected cross-site scripting (XSS) vulnerabilities in ClinicCases 7.3.3 allow unauthenticated attackers to in... |
| CVE-2021-37631 | MEDIUM | 6.5 | 1.2% | Sep 7, 2021 | Deck is an open source kanban style organization tool aimed at personal planning and project organization for teams inte... |
| CVE-2021-37630 | MEDIUM | 6.5 | 1.2% | Sep 7, 2021 | Nextcloud Circles is an open source social network built for the nextcloud ecosystem. In affected versions the Nextcloud... |
| CVE-2021-35948 | MEDIUM | 5.4 | 0.7% | Sep 7, 2021 | Session fixation on password protected public links in the ownCloud Server before 10.8.0 allows an attacker to bypass th... |
| CVE-2021-32782 | MEDIUM | 5.4 | 0.8% | Sep 7, 2021 | Nextcloud Circles is an open source social network built for the nextcloud ecosystem. In affected versions the Nextcloud... |
| CVE-2021-39199 | MEDIUM | 6.1 | 1.0% | Sep 7, 2021 | remark-html is an open source nodejs library which compiles Markdown to HTML. In affected versions the documentation of ... |
| CVE-2021-39196 | MEDIUM | 6.5 | 1.2% | Sep 7, 2021 | pcapture is an open source dumpcap web service interface . In affected versions this vulnerability allows an authenticat... |
| CVE-2021-39195 | MEDIUM | 6.5 | 1.0% | Sep 7, 2021 | Misskey is an open source, decentralized microblogging platform. In affected versions a Server-Side Request Forgery vuln... |
| CVE-2021-35949 | MEDIUM | 5.3 | 0.9% | Sep 7, 2021 | The shareinfo controller in the ownCloud Server before 10.8.0 allows an attacker to bypass the permission checks for upl... |
| CVE-2021-35947 | MEDIUM | 5.3 | 1.2% | Sep 7, 2021 | The public share controller in the ownCloud server before version 10.8.0 allows a remote attacker to see the internal pa... |
| CVE-2021-38123 | MEDIUM | 6.1 | 0.6% | Sep 7, 2021 | Open Redirect vulnerability in Micro Focus Network Automation, affecting Network Automation versions 10.4x, 10.5x, 2018.... |
| CVE-2021-39257 | MEDIUM | 5.5 | 0.4% | Sep 7, 2021 | A crafted NTFS image with an unallocated bitmap can lead to a endless recursive function call chain (starting from ntfs_... |
| CVE-2021-27022 | MEDIUM | 4.9 | 0.9% | Sep 7, 2021 | A flaw was discovered in bolt-server and ace where running a task with sensitive parameters results in those sensitive p... |
| CVE-2021-39285 | MEDIUM | 6.1 | 0.8% | Sep 7, 2021 | A XSS vulnerability exists in Versa Director Release: 16.1R2 Build: S8. An attacker can use the administration web inter... |
| CVE-2021-37733 | MEDIUM | 4.9 | 1.1% | Sep 7, 2021 | A remote path traversal vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Softw... |
| CVE-2021-37731 | MEDIUM | 6.2 | 0.3% | Sep 7, 2021 | A local path traversal vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Softwa... |
| CVE-2021-37729 | MEDIUM | 6.5 | 1.0% | Sep 7, 2021 | A remote path traversal vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Softw... |
| CVE-2021-37728 | MEDIUM | 6.5 | 1.0% | Sep 7, 2021 | A remote path traversal vulnerability was discovered in Aruba Operating System Software version(s): Prior to 8.8.0.1, 8.... |
| CVE-2021-33599 | MEDIUM | 5.5 | 0.4% | Sep 7, 2021 | A vulnerability affecting F-Secure Antivirus engine was discovered whereby scanning WIM archive file can lead to denial-... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now