2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-34732 | MEDIUM | 6.1 | 0.8% | Sep 2, 2021 | A vulnerability in the web-based management interface of Cisco Prime Collaboration Provisioning could allow an unauthent... |
| CVE-2021-31798 | MEDIUM | 4.4 | 0.4% | Sep 2, 2021 | The effective key space used to encrypt the cache in CyberArk Credential Provider prior to 12.1 has low entropy, and und... |
| CVE-2021-31797 | MEDIUM | 5.1 | 0.3% | Sep 2, 2021 | The user identification mechanism used by CyberArk Credential Provider prior to 12.1 is susceptible to a local host race... |
| CVE-2021-39119 | MEDIUM | 5.3 | 0.8% | Sep 1, 2021 | Affected versions of Atlassian Jira Server and Data Center allow users who have watched an issue to continue receiving u... |
| CVE-2021-39186 | MEDIUM | 6.1 | 1.0% | Sep 1, 2021 | GlobalNewFiles is a MediaWiki extension maintained by Miraheze. Prior to commit number cee254e1b158cdb0ddbea716b1d3edc31... |
| CVE-2021-29853 | MEDIUM | 4.3 | 0.8% | Sep 1, 2021 | IBM Planning Analytics 2.0 could expose information that could be used to to create attacks by not validating the return... |
| CVE-2021-29852 | MEDIUM | 5.4 | 0.5% | Sep 1, 2021 | IBM Planning Analytics 2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav... |
| CVE-2021-29851 | MEDIUM | 4.3 | 1.1% | Sep 1, 2021 | IBM Planning Analytics 2.0 could allow a remote attacker to obtain sensitive information when a stack trace is returned ... |
| CVE-2021-39320 | MEDIUM | 6.1 | 2.3% | Sep 1, 2021 | The underConstruction plugin <= 1.18 for WordPress echoes out the raw value of `$GLOBALS['PHP_SELF']` in the ucOptions.p... |
| CVE-2021-36077 | MEDIUM | 5.5 | 1.7% | Sep 1, 2021 | Adobe Bridge version 11.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a m... |
| CVE-2021-36063 | MEDIUM | 6.1 | 1.4% | Sep 1, 2021 | Adobe Connect version 11.2.2 (and earlier) is affected by a Reflected Cross-site Scripting vulnerability that could be a... |
| CVE-2021-36062 | MEDIUM | 6.1 | 1.4% | Sep 1, 2021 | Adobe Connect version 11.2.2 (and earlier) is affected by a Reflected Cross-site Scripting vulnerability that could be a... |
| CVE-2021-36061 | MEDIUM | 5.4 | 1.6% | Sep 1, 2021 | Adobe Connect version 11.2.2 (and earlier) is affected by a secure design principles violation vulnerability via the 'pb... |
| CVE-2021-36058 | MEDIUM | 5.5 | 2.0% | Sep 1, 2021 | XMP Toolkit SDK version 2020.1 (and earlier) is affected by an Integer Overflow vulnerability potentially resulting in a... |
| CVE-2021-36056 | MEDIUM | 5.5 | 4.4% | Sep 1, 2021 | XMP Toolkit SDK version 2020.1 (and earlier) is affected by a buffer overflow vulnerability potentially resulting in arb... |
| CVE-2021-36043 | MEDIUM | 6.6 | 1.9% | Sep 1, 2021 | Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by a blind SS... |
| CVE-2021-36039 | MEDIUM | 6.5 | 1.7% | Sep 1, 2021 | Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an imprope... |
| CVE-2021-36038 | MEDIUM | 6.5 | 1.8% | Sep 1, 2021 | Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an imprope... |
| CVE-2021-36037 | MEDIUM | 6.5 | 1.8% | Sep 1, 2021 | Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by an imprope... |
| CVE-2021-36027 | MEDIUM | 6.1 | 1.4% | Sep 1, 2021 | Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by a stored c... |
| CVE-2021-36026 | MEDIUM | 6.1 | 1.7% | Sep 1, 2021 | Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by a stored c... |
| CVE-2021-36012 | MEDIUM | 6.5 | 1.8% | Sep 1, 2021 | Magento Commerce versions 2.4.2 (and earlier), 2.4.2-p1 (and earlier) and 2.3.7 (and earlier) are affected by a business... |
| CVE-2021-39170 | MEDIUM | 5.4 | 1.2% | Sep 1, 2021 | Pimcore is an open source data & experience management platform. Prior to version 10.1.2, an authenticated user could ad... |
| CVE-2021-39166 | MEDIUM | 5.4 | 0.8% | Sep 1, 2021 | Pimcore is an open source data & experience management platform. Prior to version 10.1.2, text-values were not properly ... |
| CVE-2021-40352 | MEDIUM | 6.5 | 9.7% | Sep 1, 2021 | OpenEMR 6.0.0 has a pnotes_print.php?noteid= Insecure Direct Object Reference vulnerability via which an attacker can re... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now