2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-2333 | MEDIUM | 4.9 | 0.9% | Jul 21, 2021 | Vulnerability in the Oracle XML DB component of Oracle Database Server. Supported versions that are affected are 12.1.0.... |
| CVE-2021-2330 | MEDIUM | 4.3 | 0.8% | Jul 21, 2021 | Vulnerability in the Core RDBMS component of Oracle Database Server. The supported version that is affected is 19c. Easi... |
| CVE-2021-2324 | MEDIUM | 4.6 | 0.5% | Jul 21, 2021 | Vulnerability in the Oracle FLEXCUBE Universal Banking product of Oracle Financial Services Applications (component: Loa... |
| CVE-2021-2323 | MEDIUM | 5.9 | 1.3% | Jul 21, 2021 | Vulnerability in the Oracle FLEXCUBE Universal Banking product of Oracle Financial Services Applications (component: Fle... |
| CVE-2021-36747 | MEDIUM | 5.4 | 0.6% | Jul 20, 2021 | Blackboard Learn through 9.1 allows XSS by an authenticated user via the Feedback to Learner form. |
| CVE-2021-36746 | MEDIUM | 5.4 | 0.6% | Jul 20, 2021 | Blackboard Learn through 9.1 allows XSS by an authenticated user via the Assignment Instructions HTML editor. |
| CVE-2021-33910 | MEDIUM | 5.5 | 8.6% | Jul 20, 2021 | basic/unit-name.c in systemd prior to 246.15, 247.8, 248.5, and 249.1 has a Memory Allocation with an Excessive Size Val... |
| CVE-2021-32763 | MEDIUM | 6.5 | 0.9% | Jul 20, 2021 | OpenProject is open-source, web-based project management software. In versions prior to 11.3.3, the `MessagesController`... |
| CVE-2021-32767 | MEDIUM | 6.5 | 0.8% | Jul 20, 2021 | TYPO3 is an open source PHP based web content management system. In versions 9.0.0 through 9.5.27, 10.0.0 through 10.4.1... |
| CVE-2021-32669 | MEDIUM | 5.4 | 0.6% | Jul 20, 2021 | TYPO3 is an open source PHP based web content management system. Versions 9.0.0 through 9.5.28, 10.0.0 through 10.4.17, ... |
| CVE-2021-32668 | MEDIUM | 4.8 | 0.6% | Jul 20, 2021 | TYPO3 is an open source PHP based web content management system. Versions 9.0.0 through 9.5.28, 10.0.0 through 10.4.17, ... |
| CVE-2021-32667 | MEDIUM | 5.4 | 0.6% | Jul 20, 2021 | TYPO3 is an open source PHP based web content management system. Versions 9.0.0 through 9.5.28, 10.0.0 through 10.4.17, ... |
| CVE-2021-27517 | MEDIUM | 6.1 | 0.8% | Jul 20, 2021 | Foxit PDF SDK For Web through 7.5.0 allows XSS. There is arbitrary JavaScript code execution in the browser if a victim ... |
| CVE-2021-27338 | MEDIUM | 5.4 | 0.7% | Jul 20, 2021 | Faraday Edge before 3.7 allows XSS via the network/create/ page and its network name parameter. |
| CVE-2021-24022 | MEDIUM | 4.4 | 0.2% | Jul 20, 2021 | A buffer overflow vulnerability in FortiAnalyzer CLI 6.4.5 and below, 6.2.7 and below, 6.0.x and FortiManager CLI 6.4.5 ... |
| CVE-2021-36980 | MEDIUM | 5.5 | 1.2% | Jul 20, 2021 | Open vSwitch (aka openvswitch) 2.11.0 through 2.15.0 has a use-after-free in decode_NXAST_RAW_ENCAP (called from ofpact_... |
| CVE-2021-36979 | MEDIUM | 5.5 | 0.9% | Jul 20, 2021 | Unicorn Engine 1.0.2 has an out-of-bounds write in tb_flush_armeb (called from cpu_arm_exec_armeb and tcg_cpu_exec_armeb... |
| CVE-2021-36978 | MEDIUM | 5.5 | 1.3% | Jul 20, 2021 | QPDF 9.x through 9.1.1 and 10.x through 10.0.4 has a heap-based buffer overflow in Pl_ASCII85Decoder::write (called from... |
| CVE-2021-36977 | MEDIUM | 6.5 | 1.5% | Jul 20, 2021 | matio (aka MAT File I/O Library) 1.5.20 and 1.5.21 has a heap-based buffer overflow in H5MM_memcpy (called from H5MM_mal... |
| CVE-2021-36976 | MEDIUM | 6.5 | 2.8% | Jul 20, 2021 | libarchive 3.4.1 through 3.5.1 has a use-after-free in copy_string (called from do_uncompress_block and process_block). |
| CVE-2021-26083 | MEDIUM | 5.4 | 0.6% | Jul 20, 2021 | Export HTML Report in Atlassian Jira Server and Jira Data Center before version 8.5.14, from version 8.6.0 before 8.13.6... |
| CVE-2021-26082 | MEDIUM | 5.4 | 0.7% | Jul 20, 2021 | The XML Export in Atlassian Jira Server and Jira Data Center before version 8.5.14, from version 8.6.0 before 8.13.6, an... |
| CVE-2021-26081 | MEDIUM | 5.3 | 1.2% | Jul 20, 2021 | REST API in Atlassian Jira Server and Jira Data Center before version 8.5.14, from version 8.6.0 before 8.13.6, and from... |
| CVE-2021-32774 | MEDIUM | 5.4 | 0.5% | Jul 20, 2021 | DataDump is a MediaWiki extension that provides dumps of wikis. Prior to commit 67a82b76e186925330b89ace9c5fd893a300830b... |
| CVE-2021-3135 | MEDIUM | 6.1 | 0.8% | Jul 19, 2021 | An issue was discovered in the tagDiv Newspaper theme 10.3.9.1 for WordPress. It allows XSS via the wp-admin/admin-ajax.... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now