2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-31955MEDIUM5.5Windows Kernel Information Disclosure Vulnerability
CVE-2021-31944MEDIUM53D Viewer Information Disclosure Vulnerability
CVE-2021-31201MEDIUM5.2Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
CVE-2021-31199MEDIUM5.2Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability
CVE-2021-26414MEDIUM4.8Windows DCOM Server Security Feature Bypass
CVE-2021-31807MEDIUM6.5An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. An integer overflow problem allows a remote server to...
CVE-2021-22220MEDIUM5.4An issue has been discovered in GitLab affecting all versions starting with 13.10. GitLab was vulnerable to a stored XSS...
CVE-2021-22216MEDIUM6.5A denial of service vulnerability in all versions of GitLab CE/EE before 13.12.2, 13.11.5 or 13.10.5 allows an attacker ...
CVE-2021-32658MEDIUM4.6Nextcloud Android is the Android client for the Nextcloud open source home cloud system. Due to a timeout issue the Andr...
CVE-2021-22221MEDIUM6.5An issue has been discovered in GitLab affecting all versions starting from 12.9.0 before 13.10.5, all versions starting...
CVE-2021-22219MEDIUM4.9All versions of GitLab CE/EE starting from 9.5 before 13.10.5, all versions starting from 13.11 before 13.11.5, and all ...
CVE-2021-22217MEDIUM6.5A denial of service vulnerability in all versions of GitLab CE/EE before 13.12.2, 13.11.5 or 13.10.5 allows an attacker ...
CVE-2021-22213MEDIUM6.5A cross-site leak vulnerability in the OAuth flow of all versions of GitLab CE/EE since 7.10 allowed an attacker to leak...
CVE-2021-33203MEDIUM4.9Django before 2.2.24, 3.x before 3.1.12, and 3.2.x before 3.2.4 has a potential directory traversal via django.contrib.a...
CVE-2021-21559MEDIUM5.3Dell EMC NetWorker, versions 18.x, 19.1.x, 19.2.x 19.3.x, 19.4, and 19.4.0.1 contain an Improper Certificate Validation ...
CVE-2021-21558MEDIUM4.4Dell EMC NetWorker, 18.x, 19.1.x, 19.2.x 19.3.x, 19.4 and 19.4.0.1, contains an Information Disclosure vulnerability. A ...
CVE-2021-32015MEDIUM6In Nuvoton NPCT75x TPM 1.2 firmware 7.4.0.0, a local authenticated malicious user with high privileges could potentially...
CVE-2021-33190MEDIUM5.3In Apache APISIX Dashboard version 2.6, we changed the default value of listen host to 0.0.0.0 in order to facilitate us...
CVE-2021-30357MEDIUM5.3SSL Network Extender Client for Linux before build 800008302 reveals part of the contents of the configuration file supp...
CVE-2021-32106MEDIUM5.4In ICEcoder 8.0 allows, a reflected XSS vulnerability was identified in the multipe-results.php page due to insufficient...
CVE-2021-3564MEDIUM5.5A flaw double-free memory corruption in the Linux kernel HCI device initialization subsystem was found in the way user a...
CVE-2021-26945MEDIUM5.5An integer overflow leading to a heap-buffer overflow was found in OpenEXR in versions before 3.0.1. An attacker could u...
CVE-2021-26260MEDIUM5.5An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1...
CVE-2021-23215MEDIUM5.5An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1...
CVE-2021-31738MEDIUM6.1Adiscon LogAnalyzer 4.1.10 and 4.1.11 allow login.php XSS.

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now