2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-28623 | MEDIUM | 5.5 | 0.5% | Jun 28, 2021 | Adobe Premiere Elements version 5.2 (and earlier) is affected by an insecure temporary file creation vulnerability. An u... |
| CVE-2021-28597 | MEDIUM | 5.5 | 0.5% | Jun 28, 2021 | Adobe Photoshop Elements version 5.2 (and earlier) is affected by an insecure temporary file creation vulnerability. An ... |
| CVE-2021-28579 | MEDIUM | 4.3 | 1.1% | Jun 28, 2021 | Adobe Connect version 11.2.1 (and earlier) is affected by an Improper access control vulnerability that can lead to the ... |
| CVE-2021-28585 | MEDIUM | 5.3 | 1.6% | Jun 28, 2021 | Magento versions 2.4.2 (and earlier), 2.4.1-p1 (and earlier) and 2.3.6-p1 (and earlier) are affected by an Improper inpu... |
| CVE-2021-28583 | MEDIUM | 4.2 | 1.9% | Jun 28, 2021 | Magento versions 2.4.2 (and earlier), 2.4.1-p1 (and earlier) and 2.3.6-p1 (and earlier) are affected by a Violation of S... |
| CVE-2021-28576 | MEDIUM | 4.3 | 2.6% | Jun 28, 2021 | Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially c... |
| CVE-2021-28575 | MEDIUM | 4.3 | 2.8% | Jun 28, 2021 | Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially c... |
| CVE-2021-28574 | MEDIUM | 4.3 | 2.8% | Jun 28, 2021 | Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially c... |
| CVE-2021-28573 | MEDIUM | 6.5 | 3.0% | Jun 28, 2021 | Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially c... |
| CVE-2021-28563 | MEDIUM | 6.5 | 1.4% | Jun 28, 2021 | Magento versions 2.4.2 (and earlier), 2.4.1-p1 (and earlier) and 2.3.6-p1 (and earlier) are affected by an Improper Auth... |
| CVE-2021-28556 | MEDIUM | 4.8 | 1.4% | Jun 28, 2021 | Magento versions 2.4.2 (and earlier), 2.4.1-p1 (and earlier) and 2.3.6-p1 (and earlier) are affected by a DOM-based Cros... |
| CVE-2021-21084 | MEDIUM | 6.1 | 1.8% | Jun 28, 2021 | AEM's Cloud Service offering, as well as versions 6.5.7.0 (and below), 6.4.8.3 (and below) and 6.3.3.8 (and below) are a... |
| CVE-2021-33515 | MEDIUM | 4.8 | 2.8% | Jun 28, 2021 | The submission service in Dovecot before 2.3.15 allows STARTTLS command injection in lib-smtp. Sensitive information can... |
| CVE-2021-32496 | MEDIUM | 5.3 | 0.3% | Jun 28, 2021 | SICK Visionary-S CX up version 5.21.2.29154R are vulnerable to an Inadequate Encryption Strength vulnerability concernin... |
| CVE-2021-29157 | MEDIUM | 5.5 | 0.5% | Jun 28, 2021 | Dovecot before 2.3.15 allows ../ Path Traversal. An attacker with access to the local filesystem can trick OAuth2 authen... |
| CVE-2021-20100 | MEDIUM | 6.7 | 0.3% | Jun 28, 2021 | Nessus Agent 8.2.4 and earlier for Windows were found to contain multiple local privilege escalation vulnerabilities whi... |
| CVE-2021-20099 | MEDIUM | 6.7 | 0.3% | Jun 28, 2021 | Nessus Agent 8.2.4 and earlier for Windows were found to contain multiple local privilege escalation vulnerabilities whi... |
| CVE-2021-20751 | MEDIUM | 6.1 | 1.1% | Jun 28, 2021 | Cross-site scripting vulnerability in EC-CUBE EC-CUBE 4.0.0 to 4.0.5-p1 (EC-CUBE 4 series) allows a remote attacker to i... |
| CVE-2021-20750 | MEDIUM | 6.1 | 1.6% | Jun 28, 2021 | Cross-site scripting vulnerability in EC-CUBE EC-CUBE 3.0.0 to 3.0.18-p2 (EC-CUBE 3 series) and EC-CUBE 4.0.0 to 4.0.5-p... |
| CVE-2021-20749 | MEDIUM | 5.4 | 1.0% | Jun 28, 2021 | Cross-site scripting vulnerability in Fudousan plugin ver5.7.0 and earlier, Fudousan Plugin Pro Single-User Type ver5.7.... |
| CVE-2021-20746 | MEDIUM | 5.4 | 1.4% | Jun 28, 2021 | Cross-site scripting vulnerability in WordPress Popular Posts 5.3.2 and earlier allows a remote authenticated attacker t... |
| CVE-2021-35513 | MEDIUM | 6.1 | 1.0% | Jun 27, 2021 | Mermaid before 8.11.0 allows XSS when the antiscript feature is used. |
| CVE-2021-21004 | MEDIUM | 6.1 | 0.6% | Jun 25, 2021 | In Phoenix Contact FL SWITCH SMCS series products in multiple versions an attacker may insert malicious code via LLDP fr... |
| CVE-2021-21003 | MEDIUM | 5.3 | 0.9% | Jun 25, 2021 | In Phoenix Contact FL SWITCH SMCS series products in multiple versions fragmented TCP-Packets may cause a Denial of Serv... |
| CVE-2021-29677 | MEDIUM | 5.4 | 0.5% | Jun 25, 2021 | IBM Security Verify (IBM Security Verify Privilege Vault 10.9.66) is vulnerable to cross-site scripting. This vulnerabil... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now