2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-34732MEDIUM6.1A vulnerability in the web-based management interface of Cisco Prime Collaboration Provisioning could allow an unauthent...
CVE-2021-31798MEDIUM4.4The effective key space used to encrypt the cache in CyberArk Credential Provider prior to 12.1 has low entropy, and und...
CVE-2021-31797MEDIUM5.1The user identification mechanism used by CyberArk Credential Provider prior to 12.1 is susceptible to a local host race...
CVE-2021-39119MEDIUM5.3Affected versions of Atlassian Jira Server and Data Center allow users who have watched an issue to continue receiving u...
CVE-2021-39186MEDIUM6.1GlobalNewFiles is a MediaWiki extension maintained by Miraheze. Prior to commit number cee254e1b158cdb0ddbea716b1d3edc31...
CVE-2021-29853MEDIUM4.3IBM Planning Analytics 2.0 could expose information that could be used to to create attacks by not validating the return...
CVE-2021-29852MEDIUM5.4IBM Planning Analytics 2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav...
CVE-2021-29851MEDIUM4.3IBM Planning Analytics 2.0 could allow a remote attacker to obtain sensitive information when a stack trace is returned ...
CVE-2021-39320MEDIUM6.1The underConstruction plugin <= 1.18 for WordPress echoes out the raw value of `$GLOBALS['PHP_SELF']` in the ucOptions.p...
CVE-2021-36077MEDIUM5.5Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a m...
CVE-2021-36063MEDIUM6.1Adobe Connect version 11.2.2 (and earlier) is affected by a Reflected Cross-site Scripting vulnerability that could be a...
CVE-2021-36062MEDIUM6.1Adobe Connect version 11.2.2 (and earlier) is affected by a Reflected Cross-site Scripting vulnerability that could be a...
CVE-2021-36061MEDIUM5.4Adobe Connect version 11.2.2 (and earlier) is affected by a secure design principles violation vulnerability via the 'pb...
CVE-2021-36058MEDIUM5.5XMP Toolkit SDK version 2020.1 (and earlier) is affected by an Integer Overflow vulnerability potentially resulting in a...
CVE-2021-36056MEDIUM5.5XMP Toolkit SDK version 2020.1 (and earlier) is affected by a buffer overflow vulnerability potentially resulting in arb...
CVE-2021-36043MEDIUM6.6Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by a blind SS...
CVE-2021-36039MEDIUM6.5Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an imprope...
CVE-2021-36038MEDIUM6.5Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an imprope...
CVE-2021-36037MEDIUM6.5Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an imprope...
CVE-2021-36027MEDIUM6.1Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by a stored c...
CVE-2021-36026MEDIUM6.1Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by a stored c...
CVE-2021-36012MEDIUM6.5Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by a business...
CVE-2021-39170MEDIUM5.4Pimcore is an open source data & experience management platform. Prior to version 10.1.2, an authenticated user could ad...
CVE-2021-39166MEDIUM5.4Pimcore is an open source data & experience management platform. Prior to version 10.1.2, text-values were not properly ...
CVE-2021-40352MEDIUM6.5OpenEMR 6.0.0 has a pnotes_print.php?noteid= Insecure Direct Object Reference vulnerability via which an attacker can re...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now