2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-28623MEDIUM5.5Adobe Premiere Elements version 5.2 (and earlier) is affected by an insecure temporary file creation vulnerability. An u...
CVE-2021-28597MEDIUM5.5Adobe Photoshop Elements version 5.2 (and earlier) is affected by an insecure temporary file creation vulnerability. An ...
CVE-2021-28579MEDIUM4.3Adobe Connect version 11.2.1 (and earlier) is affected by an Improper access control vulnerability that can lead to the ...
CVE-2021-28585MEDIUM5.3Magento versions 2.4.2 (and earlier), 2.4.1-p1 (and earlier) and 2.3.6-p1 (and earlier) are affected by an Improper inpu...
CVE-2021-28583MEDIUM4.2Magento versions 2.4.2 (and earlier), 2.4.1-p1 (and earlier) and 2.3.6-p1 (and earlier) are affected by a Violation of S...
CVE-2021-28576MEDIUM4.3Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially c...
CVE-2021-28575MEDIUM4.3Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially c...
CVE-2021-28574MEDIUM4.3Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially c...
CVE-2021-28573MEDIUM6.5Adobe Animate version 21.0.5 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a specially c...
CVE-2021-28563MEDIUM6.5Magento versions 2.4.2 (and earlier), 2.4.1-p1 (and earlier) and 2.3.6-p1 (and earlier) are affected by an Improper Auth...
CVE-2021-28556MEDIUM4.8Magento versions 2.4.2 (and earlier), 2.4.1-p1 (and earlier) and 2.3.6-p1 (and earlier) are affected by a DOM-based Cros...
CVE-2021-21084MEDIUM6.1AEM's Cloud Service offering, as well as versions 6.5.7.0 (and below), 6.4.8.3 (and below) and 6.3.3.8 (and below) are a...
CVE-2021-33515MEDIUM4.8The submission service in Dovecot before 2.3.15 allows STARTTLS command injection in lib-smtp. Sensitive information can...
CVE-2021-32496MEDIUM5.3SICK Visionary-S CX up version 5.21.2.29154R are vulnerable to an Inadequate Encryption Strength vulnerability concernin...
CVE-2021-29157MEDIUM5.5Dovecot before 2.3.15 allows ../ Path Traversal. An attacker with access to the local filesystem can trick OAuth2 authen...
CVE-2021-20100MEDIUM6.7Nessus Agent 8.2.4 and earlier for Windows were found to contain multiple local privilege escalation vulnerabilities whi...
CVE-2021-20099MEDIUM6.7Nessus Agent 8.2.4 and earlier for Windows were found to contain multiple local privilege escalation vulnerabilities whi...
CVE-2021-20751MEDIUM6.1Cross-site scripting vulnerability in EC-CUBE EC-CUBE 4.0.0 to 4.0.5-p1 (EC-CUBE 4 series) allows a remote attacker to i...
CVE-2021-20750MEDIUM6.1Cross-site scripting vulnerability in EC-CUBE EC-CUBE 3.0.0 to 3.0.18-p2 (EC-CUBE 3 series) and EC-CUBE 4.0.0 to 4.0.5-p...
CVE-2021-20749MEDIUM5.4Cross-site scripting vulnerability in Fudousan plugin ver5.7.0 and earlier, Fudousan Plugin Pro Single-User Type ver5.7....
CVE-2021-20746MEDIUM5.4Cross-site scripting vulnerability in WordPress Popular Posts 5.3.2 and earlier allows a remote authenticated attacker t...
CVE-2021-35513MEDIUM6.1Mermaid before 8.11.0 allows XSS when the antiscript feature is used.
CVE-2021-21004MEDIUM6.1In Phoenix Contact FL SWITCH SMCS series products in multiple versions an attacker may insert malicious code via LLDP fr...
CVE-2021-21003MEDIUM5.3In Phoenix Contact FL SWITCH SMCS series products in multiple versions fragmented TCP-Packets may cause a Denial of Serv...
CVE-2021-29677MEDIUM5.4IBM Security Verify (IBM Security Verify Privilege Vault 10.9.66) is vulnerable to cross-site scripting. This vulnerabil...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now