2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-2333MEDIUM4.9Vulnerability in the Oracle XML DB component of Oracle Database Server. Supported versions that are affected are 12.1.0....
CVE-2021-2330MEDIUM4.3Vulnerability in the Core RDBMS component of Oracle Database Server. The supported version that is affected is 19c. Easi...
CVE-2021-2324MEDIUM4.6Vulnerability in the Oracle FLEXCUBE Universal Banking product of Oracle Financial Services Applications (component: Loa...
CVE-2021-2323MEDIUM5.9Vulnerability in the Oracle FLEXCUBE Universal Banking product of Oracle Financial Services Applications (component: Fle...
CVE-2021-36747MEDIUM5.4Blackboard Learn through 9.1 allows XSS by an authenticated user via the Feedback to Learner form.
CVE-2021-36746MEDIUM5.4Blackboard Learn through 9.1 allows XSS by an authenticated user via the Assignment Instructions HTML editor.
CVE-2021-33910MEDIUM5.5basic/unit-name.c in systemd prior to 246.15, 247.8, 248.5, and 249.1 has a Memory Allocation with an Excessive Size Val...
CVE-2021-32763MEDIUM6.5OpenProject is open-source, web-based project management software. In versions prior to 11.3.3, the `MessagesController`...
CVE-2021-32767MEDIUM6.5TYPO3 is an open source PHP based web content management system. In versions 9.0.0 through 9.5.27, 10.0.0 through 10.4.1...
CVE-2021-32669MEDIUM5.4TYPO3 is an open source PHP based web content management system. Versions 9.0.0 through 9.5.28, 10.0.0 through 10.4.17, ...
CVE-2021-32668MEDIUM4.8TYPO3 is an open source PHP based web content management system. Versions 9.0.0 through 9.5.28, 10.0.0 through 10.4.17, ...
CVE-2021-32667MEDIUM5.4TYPO3 is an open source PHP based web content management system. Versions 9.0.0 through 9.5.28, 10.0.0 through 10.4.17, ...
CVE-2021-27517MEDIUM6.1Foxit PDF SDK For Web through 7.5.0 allows XSS. There is arbitrary JavaScript code execution in the browser if a victim ...
CVE-2021-27338MEDIUM5.4Faraday Edge before 3.7 allows XSS via the network/create/ page and its network name parameter.
CVE-2021-24022MEDIUM4.4A buffer overflow vulnerability in FortiAnalyzer CLI 6.4.5 and below, 6.2.7 and below, 6.0.x and FortiManager CLI 6.4.5 ...
CVE-2021-36980MEDIUM5.5Open vSwitch (aka openvswitch) 2.11.0 through 2.15.0 has a use-after-free in decode_NXAST_RAW_ENCAP (called from ofpact_...
CVE-2021-36979MEDIUM5.5Unicorn Engine 1.0.2 has an out-of-bounds write in tb_flush_armeb (called from cpu_arm_exec_armeb and tcg_cpu_exec_armeb...
CVE-2021-36978MEDIUM5.5QPDF 9.x through 9.1.1 and 10.x through 10.0.4 has a heap-based buffer overflow in Pl_ASCII85Decoder::write (called from...
CVE-2021-36977MEDIUM6.5matio (aka MAT File I/O Library) 1.5.20 and 1.5.21 has a heap-based buffer overflow in H5MM_memcpy (called from H5MM_mal...
CVE-2021-36976MEDIUM6.5libarchive 3.4.1 through 3.5.1 has a use-after-free in copy_string (called from do_uncompress_block and process_block).
CVE-2021-26083MEDIUM5.4Export HTML Report in Atlassian Jira Server and Jira Data Center before version 8.5.14, from version 8.6.0 before 8.13.6...
CVE-2021-26082MEDIUM5.4The XML Export in Atlassian Jira Server and Jira Data Center before version 8.5.14, from version 8.6.0 before 8.13.6, an...
CVE-2021-26081MEDIUM5.3REST API in Atlassian Jira Server and Jira Data Center before version 8.5.14, from version 8.6.0 before 8.13.6, and from...
CVE-2021-32774MEDIUM5.4DataDump is a MediaWiki extension that provides dumps of wikis. Prior to commit 67a82b76e186925330b89ace9c5fd893a300830b...
CVE-2021-3135MEDIUM6.1An issue was discovered in the tagDiv Newspaper theme 10.3.9.1 for WordPress. It allows XSS via the wp-admin/admin-ajax....

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now