2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-32511MEDIUM4.3QSAN Storage Manager through directory listing vulnerability in ViewBroserList allows remote authenticated attackers to ...
CVE-2021-32510MEDIUM4.3QSAN Storage Manager through directory listing vulnerability in antivirus function allows remote authenticated attackers...
CVE-2021-32509MEDIUM6.5Absolute Path Traversal vulnerability in FileviewDoc in QSAN Storage Manager allows remote authenticated attackers acces...
CVE-2021-32508MEDIUM6.5Absolute Path Traversal vulnerability in FileStreaming in QSAN Storage Manager allows remote authenticated attackers acc...
CVE-2021-32507MEDIUM6.5Absolute Path Traversal vulnerability in FileDownload in QSAN Storage Manager allows remote authenticated attackers down...
CVE-2021-32506MEDIUM6.5Absolute Path Traversal vulnerability in GetImage in QSAN Storage Manager allows remote authenticated attackers download...
CVE-2021-22233MEDIUM4.3An information disclosure vulnerability in GitLab EE versions 13.10 and later allowed a user to read project details
CVE-2021-36212MEDIUM6.1app/View/SharingGroups/view.ctp in MISP before 2.4.146 allows stored XSS in the sharing groups view.
CVE-2021-34627MEDIUM4.3A vulnerability in the getSelectedMimeTypesByRole function of the WP Upload Restriction WordPress plugin allows low-leve...
CVE-2021-34626MEDIUM4.3A vulnerability in the deleteCustomType function of the WP Upload Restriction WordPress plugin allows low-level authenti...
CVE-2021-34625MEDIUM5.4A vulnerability in the saveCustomType function of the WP Upload Restriction WordPress plugin allows low-level authentica...
CVE-2021-22225MEDIUM5.4Insufficient input sanitization in markdown in GitLab version 13.11 and up allows an attacker to exploit a stored cross-...
CVE-2021-22224MEDIUM6.5A cross-site request forgery vulnerability in the GraphQL API in GitLab since version 13.12 and before versions 13.12.6 ...
CVE-2021-26039MEDIUM6.1An issue was discovered in Joomla! 3.0.0 through 3.9.27. Inadequate escaping in the imagelist view of com_media leads to...
CVE-2021-26037MEDIUM5.3An issue was discovered in Joomla! 2.5.0 through 3.9.27. CMS functions did not properly termine existing user sessions w...
CVE-2021-26035MEDIUM6.1An issue was discovered in Joomla! 3.0.0 through 3.9.27. Inadequate escaping in the rules field of the JForm API leads t...
CVE-2021-22231MEDIUM4.3A denial of service in user's profile page is found starting with GitLab CE/EE 8.0 that allows attacker to reject access...
CVE-2021-22227MEDIUM6.1A reflected cross-site script vulnerability in GitLab before versions 13.11.6, 13.12.6 and 14.0.2 allowed an attacker to...
CVE-2021-20777MEDIUM4.3Improper authorization in handler for custom URL scheme vulnerability in GU App for Android versions from 4.8.0 to 5.0.2...
CVE-2021-20738MEDIUM6.5WRC-1167FS-W, WRC-1167FS-B, and WRC-1167FSA all versions allow an unauthenticated network-adjacent attacker to obtain se...
CVE-2021-22228MEDIUM6.5An issue has been discovered in GitLab affecting all versions before 13.11.6, all versions starting from 13.12 before 13...
CVE-2021-22223MEDIUM6.1Client-Side code injection through Feature Flag name in GitLab CE/EE starting with 11.9 allows a specially crafted featu...
CVE-2021-22232MEDIUM5.4HTML injection was possible via the full name field before versions 13.11.6, 13.12.6, and 14.0.2 in GitLab CE
CVE-2021-22226MEDIUM6.5Under certain conditions, some users were able to push to protected branches that were restricted to deploy keys in GitL...
CVE-2021-34190MEDIUM4.8A stored cross site scripting (XSS) vulnerability in index.php?menu=billing_rates of Issabel PBX version 4 allows attack...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now