2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-27623 | MEDIUM | 5.9 | 0.9% | Jun 9, 2021 | SAP Internet Graphics Service, versions - 7.20,7.20EXT,7.53,7.20_EX2,7.81, allows an unauthenticated attacker after retr... |
| CVE-2021-27622 | MEDIUM | 5.9 | 1.2% | Jun 9, 2021 | SAP Internet Graphics Service, versions - 7.20,7.20EXT,7.53,7.20_EX2,7.81, allows an unauthenticated attacker after retr... |
| CVE-2021-27621 | MEDIUM | 4.9 | 0.6% | Jun 9, 2021 | Information Disclosure vulnerability in UserAdmin application in SAP NetWeaver Application Server for Java, versions - 7... |
| CVE-2021-27620 | MEDIUM | 5.9 | 1.2% | Jun 9, 2021 | SAP Internet Graphics Service, versions - 7.20,7.20EXT,7.53,7.20_EX2,7.81, allows an unauthenticated attacker after retr... |
| CVE-2021-27615 | MEDIUM | 5.4 | 0.6% | Jun 9, 2021 | SAP Manufacturing Execution versions - 15.1, 1.5.2, 15.3, 15.4, does not contain some HTTP security headers in their HTT... |
| CVE-2021-21490 | MEDIUM | 6.1 | 0.6% | Jun 9, 2021 | SAP NetWeaver AS for ABAP (Web Survey), versions - 700, 702, 710, 711, 730, 731, 750, 750, 752, 75A, 75F, does not suffi... |
| CVE-2021-21473 | MEDIUM | 6.3 | 1.2% | Jun 9, 2021 | SAP NetWeaver AS ABAP and ABAP Platform, versions - 700, 702, 710, 711, 730, 731, 740, 750, 751, 752, 753, 754, 755, con... |
| CVE-2021-34370 | MEDIUM | 6.1 | 10.0% | Jun 9, 2021 | Accela Civic Platform through 20.1 allows ssoAdapter/logoutAction.do successURL XSS. NOTE: the vendor states "there are ... |
| CVE-2021-34369 | MEDIUM | 6.5 | 8.2% | Jun 9, 2021 | portlets/contact/ref/refContactDetail.do in Accela Civic Platform through 20.1 allows remote attackers to obtain sensiti... |
| CVE-2021-33829 | MEDIUM | 6.1 | 3.2% | Jun 9, 2021 | A cross-site scripting (XSS) vulnerability in the HTML Data Processor in CKEditor 4 4.14.0 through 4.16.x before 4.16.1 ... |
| CVE-2021-26314 | MEDIUM | 5.5 | 0.6% | Jun 9, 2021 | Potential floating point value injection in all supported CPU products, in conjunction with software vulnerabilities rel... |
| CVE-2021-26313 | MEDIUM | 5.5 | 0.3% | Jun 9, 2021 | Potential speculative code store bypass in all supported CPU products, in conjunction with software vulnerabilities rela... |
| CVE-2021-34364 | MEDIUM | 6.1 | 0.7% | Jun 9, 2021 | The Refined GitHub browser extension before 21.6.8 might allow XSS via a link in a document. NOTE: github.com sends Cont... |
| CVE-2021-28169 | MEDIUM | 5.3 | 78.5% | Jun 9, 2021 | For Eclipse Jetty versions <= 9.4.40, <= 10.0.2, <= 11.0.2, it is possible for requests to the ConcatServlet with a doub... |
| CVE-2021-20732 | MEDIUM | 5.9 | 0.5% | Jun 9, 2021 | The ATOM (ATOM - Smart life App for Android versions prior to 1.8.1 and ATOM - Smart life App for iOS versions prior to ... |
| CVE-2021-20730 | MEDIUM | 4.3 | 0.4% | Jun 9, 2021 | Improper access control vulnerability in WSR-1166DHP3 firmware Ver.1.16 and prior and WSR-1166DHP4 firmware Ver.1.02 and... |
| CVE-2021-20728 | MEDIUM | 5.3 | 1.0% | Jun 9, 2021 | Improper access control vulnerability in goo blog App for Android ver.1.2.25 and earlier and for iOS ver.1.3.3 and earli... |
| CVE-2021-31978 | MEDIUM | 5.5 | 1.2% | Jun 8, 2021 | Microsoft Defender Denial of Service Vulnerability |
| CVE-2021-31972 | MEDIUM | 5.5 | 0.8% | Jun 8, 2021 | Event Tracing for Windows Information Disclosure Vulnerability |
| CVE-2021-31971 | MEDIUM | 6.8 | 2.1% | Jun 8, 2021 | Windows HTML Platforms Security Feature Bypass Vulnerability |
| CVE-2021-31970 | MEDIUM | 5.5 | 0.9% | Jun 8, 2021 | Windows TCP/IP Driver Security Feature Bypass Vulnerability |
| CVE-2021-31965 | MEDIUM | 5.7 | 4.5% | Jun 8, 2021 | Microsoft SharePoint Server Information Disclosure Vulnerability |
| CVE-2021-31960 | MEDIUM | 5.5 | 0.8% | Jun 8, 2021 | Windows Bind Filter Driver Information Disclosure Vulnerability |
| CVE-2021-31959 | MEDIUM | 6.4 | 9.2% | Jun 8, 2021 | Scripting Engine Memory Corruption Vulnerability |
| CVE-2021-31957 | MEDIUM | 5.9 | 5.1% | Jun 8, 2021 | ASP.NET Core Denial of Service Vulnerability |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now