2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-38698 | MEDIUM | 6.5 | 1.5% | Sep 7, 2021 | HashiCorp Consul and Consul Enterprise 1.10.1 Txn.Apply endpoint allowed services to register proxies for other services... |
| CVE-2021-36696 | MEDIUM | 5.4 | 0.6% | Sep 7, 2021 | Deskpro cloud and on-premise Deskpro 2021.1.6 and fixed in Deskpro 2021.1.7 contains a cross-site scripting (XSS) vulner... |
| CVE-2021-34149 | MEDIUM | 6.5 | 0.5% | Sep 7, 2021 | The Bluetooth Classic implementation on the Texas Instruments CC256XCQFN-EM does not properly handle the reception of co... |
| CVE-2021-34148 | MEDIUM | 6.5 | 0.6% | Sep 7, 2021 | The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 devices does not properl... |
| CVE-2021-34147 | MEDIUM | 6.5 | 0.6% | Sep 7, 2021 | The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 does not properly handle... |
| CVE-2021-34146 | MEDIUM | 6.5 | 0.6% | Sep 7, 2021 | The Bluetooth Classic implementation in the Cypress CYW920735Q60EVB does not properly handle the reception of continuous... |
| CVE-2021-34145 | MEDIUM | 5.3 | 0.5% | Sep 7, 2021 | The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 devices does not properl... |
| CVE-2021-34143 | MEDIUM | 6.5 | 0.7% | Sep 7, 2021 | The Bluetooth Classic implementation in the Zhuhai Jieli AC6366C_DEMO_V1.0 does not properly handle the reception of con... |
| CVE-2021-31786 | MEDIUM | 6.5 | 0.4% | Sep 7, 2021 | The Bluetooth Classic Audio implementation on Actions ATS2815 and ATS2819 devices does not properly handle a connection ... |
| CVE-2021-31785 | MEDIUM | 6.5 | 0.4% | Sep 7, 2021 | The Bluetooth Classic implementation on Actions ATS2815 and ATS2819 chipsets does not properly handle the reception of m... |
| CVE-2021-31612 | MEDIUM | 6.5 | 0.5% | Sep 7, 2021 | The Bluetooth Classic implementation on Zhuhai Jieli AC690X devices does not properly handle the reception of an oversiz... |
| CVE-2021-31611 | MEDIUM | 5.7 | 0.4% | Sep 7, 2021 | The Bluetooth Classic implementation on Zhuhai Jieli AC690X and AC692X devices does not properly handle an out-of-order ... |
| CVE-2021-31610 | MEDIUM | 6.5 | 0.5% | Sep 7, 2021 | The Bluetooth Classic implementation on AB32VG1 devices does not properly handle the reception of continuous unsolicited... |
| CVE-2021-31609 | MEDIUM | 6.5 | 0.4% | Sep 7, 2021 | The Bluetooth Classic implementation in Silicon Labs iWRAP 6.3.0 and earlier does not properly handle the reception of a... |
| CVE-2021-39278 | MEDIUM | 6.1 | 0.9% | Sep 7, 2021 | Certain MOXA devices allow reflected XSS via the Config Import menu. This affects WAC-2004 1.7, WAC-1001 2.1, WAC-1001-T... |
| CVE-2021-34150 | MEDIUM | 6.5 | 0.4% | Sep 7, 2021 | The Bluetooth Classic implementation on Bluetrum AB5301A devices with unknown firmware versions does not properly handle... |
| CVE-2021-34144 | MEDIUM | 6.5 | 0.7% | Sep 7, 2021 | The Bluetooth Classic implementation in the Zhuhai Jieli AC6366C BT SDK through 0.9.1 does not properly handle the recep... |
| CVE-2021-33831 | MEDIUM | 6.5 | 2.0% | Sep 7, 2021 | api/account/register in the TH Wildau COVID-19 Contact Tracing application through 2021-09-01 has Incorrect Access Contr... |
| CVE-2021-31613 | MEDIUM | 6.5 | 0.6% | Sep 7, 2021 | The Bluetooth Classic implementation on Zhuhai Jieli AC690X and AC692X devices does not properly handle the reception of... |
| CVE-2021-28155 | MEDIUM | 6.5 | 0.4% | Sep 7, 2021 | The Bluetooth Classic implementation on JBL TUNE500BT devices does not properly handle the reception of continuous unsol... |
| CVE-2021-28136 | MEDIUM | 6.5 | 0.8% | Sep 7, 2021 | The Bluetooth Classic implementation in Espressif ESP-IDF 4.4 and earlier does not properly handle the reception of mult... |
| CVE-2021-28135 | MEDIUM | 6.5 | 0.8% | Sep 7, 2021 | The Bluetooth Classic implementation in Espressif ESP-IDF 4.4 and earlier does not properly handle the reception of cont... |
| CVE-2021-33483 | MEDIUM | 5.4 | 0.6% | Sep 7, 2021 | An issue was discovered in CommentsService.ashx in OnyakTech Comments Pro 3.8. The comment posting functionality allows ... |
| CVE-2021-40530 | MEDIUM | 5.9 | 1.1% | Sep 6, 2021 | The ElGamal implementation in Crypto++ through 8.5 allows plaintext recovery because, during interaction between two cry... |
| CVE-2021-40529 | MEDIUM | 5.9 | 1.5% | Sep 6, 2021 | The ElGamal implementation in Botan through 2.18.1, as used in Thunderbird and other products, allows plaintext recovery... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now