2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-30615MEDIUM6.5Chromium: CVE-2021-30615 Cross-origin data leak in Navigation
CVE-2021-39193MEDIUM5.3Frontier is Substrate's Ethereum compatibility layer. Prior to commit number 0b962f218f0cdd796dadfe26c3f09e68f7861b26, a...
CVE-2021-40492MEDIUM6.1A reflected XSS vulnerability exists in multiple pages in version 22 of the Gibbon application that allows for arbitrary...
CVE-2021-39191MEDIUM6.1mod_auth_openidc is an authentication/authorization module for the Apache 2.x HTTP server that functions as an OpenID Co...
CVE-2021-40491MEDIUM6.5The ftp client in GNU Inetutils before 2.2 does not validate addresses returned by PASV/LSPV responses to make sure they...
CVE-2021-38642MEDIUM6.1Microsoft Edge for iOS Spoofing Vulnerability
CVE-2021-38641MEDIUM6.1Microsoft Edge for Android Spoofing Vulnerability
CVE-2021-36930MEDIUM5.3Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2021-26439MEDIUM4.6Microsoft Edge for Android Information Disclosure Vulnerability
CVE-2021-26436MEDIUM6.1Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2021-39322MEDIUM6.1The Easy Social Icons plugin <= 3.0.8 for WordPress echoes out the raw value of `$_SERVER['PHP_SELF']` in its main file....
CVE-2021-38314MEDIUM5.3The Gutenberg Template Library & Redux Framework plugin <= 4.2.11 for WordPress registered several AJAX actions availabl...
CVE-2021-38312MEDIUM6.5The Gutenberg Template Library & Redux Framework plugin <= 4.2.11 for WordPress used an incorrect authorization check in...
CVE-2021-28559MEDIUM5.3Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and e...
CVE-2021-28557MEDIUM4.3Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and e...
CVE-2021-28555MEDIUM6.5Acrobat Reader DC versions versions 2021.001.20150 (and earlier), 2020.001.30020 (and earlier) and 2017.011.30194 (and e...
CVE-2021-27578MEDIUM6.1Cross Site Scripting vulnerability in markdown interpreter of Apache Zeppelin allows an attacker to inject malicious scr...
CVE-2021-22791MEDIUM6.5A CWE-787: Out-of-bounds Write vulnerability that could cause a Denial of Service on the Modicon PLC controller / simula...
CVE-2021-22790MEDIUM6.5A CWE-125: Out-of-bounds Read vulnerability that could cause a Denial of Service on the Modicon PLC controller / simulat...
CVE-2021-22789MEDIUM6.5A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability that could cause a Deni...
CVE-2021-22525MEDIUM5.5This release addresses a potential information leakage vulnerability in NetIQ Access Manager versions prior to 5.0.1
CVE-2021-3758MEDIUM6.5bookstack is vulnerable to Server-Side Request Forgery (SSRF)
CVE-2021-34765MEDIUM4.3A vulnerability in the web UI for Cisco Nexus Insights could allow an authenticated, remote attacker to view and downloa...
CVE-2021-34759MEDIUM4.8A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) Software could allow an au...
CVE-2021-34733MEDIUM5.5A vulnerability in the CLI of Cisco Prime Infrastructure and Cisco Evolved Programmable Network (EPN) Manager could allo...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now