2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-31955 | MEDIUM | 5.5 | 80.3% | Jun 8, 2021 | Windows Kernel Information Disclosure Vulnerability |
| CVE-2021-31944 | MEDIUM | 5 | 2.8% | Jun 8, 2021 | 3D Viewer Information Disclosure Vulnerability |
| CVE-2021-31201 | MEDIUM | 5.2 | 2.6% | Jun 8, 2021 | Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability |
| CVE-2021-31199 | MEDIUM | 5.2 | 3.0% | Jun 8, 2021 | Microsoft Enhanced Cryptographic Provider Elevation of Privilege Vulnerability |
| CVE-2021-26414 | MEDIUM | 4.8 | 50.0% | Jun 8, 2021 | Windows DCOM Server Security Feature Bypass |
| CVE-2021-31807 | MEDIUM | 6.5 | 16.0% | Jun 8, 2021 | An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. An integer overflow problem allows a remote server to... |
| CVE-2021-22220 | MEDIUM | 5.4 | 0.7% | Jun 8, 2021 | An issue has been discovered in GitLab affecting all versions starting with 13.10. GitLab was vulnerable to a stored XSS... |
| CVE-2021-22216 | MEDIUM | 6.5 | 1.0% | Jun 8, 2021 | A denial of service vulnerability in all versions of GitLab CE/EE before 13.12.2, 13.11.5 or 13.10.5 allows an attacker ... |
| CVE-2021-32658 | MEDIUM | 4.6 | 0.3% | Jun 8, 2021 | Nextcloud Android is the Android client for the Nextcloud open source home cloud system. Due to a timeout issue the Andr... |
| CVE-2021-22221 | MEDIUM | 6.5 | 0.8% | Jun 8, 2021 | An issue has been discovered in GitLab affecting all versions starting from 12.9.0 before 13.10.5, all versions starting... |
| CVE-2021-22219 | MEDIUM | 4.9 | 0.9% | Jun 8, 2021 | All versions of GitLab CE/EE starting from 9.5 before 13.10.5, all versions starting from 13.11 before 13.11.5, and all ... |
| CVE-2021-22217 | MEDIUM | 6.5 | 1.8% | Jun 8, 2021 | A denial of service vulnerability in all versions of GitLab CE/EE before 13.12.2, 13.11.5 or 13.10.5 allows an attacker ... |
| CVE-2021-22213 | MEDIUM | 6.5 | 1.7% | Jun 8, 2021 | A cross-site leak vulnerability in the OAuth flow of all versions of GitLab CE/EE since 7.10 allowed an attacker to leak... |
| CVE-2021-33203 | MEDIUM | 4.9 | 2.7% | Jun 8, 2021 | Django before 2.2.24, 3.x before 3.1.12, and 3.2.x before 3.2.4 has a potential directory traversal via django.contrib.a... |
| CVE-2021-21559 | MEDIUM | 5.3 | 0.2% | Jun 8, 2021 | Dell EMC NetWorker, versions 18.x, 19.1.x, 19.2.x 19.3.x, 19.4, and 19.4.0.1 contain an Improper Certificate Validation ... |
| CVE-2021-21558 | MEDIUM | 4.4 | 0.3% | Jun 8, 2021 | Dell EMC NetWorker, 18.x, 19.1.x, 19.2.x 19.3.x, 19.4 and 19.4.0.1, contains an Information Disclosure vulnerability. A ... |
| CVE-2021-32015 | MEDIUM | 6 | 0.2% | Jun 8, 2021 | In Nuvoton NPCT75x TPM 1.2 firmware 7.4.0.0, a local authenticated malicious user with high privileges could potentially... |
| CVE-2021-33190 | MEDIUM | 5.3 | 2.7% | Jun 8, 2021 | In Apache APISIX Dashboard version 2.6, we changed the default value of listen host to 0.0.0.0 in order to facilitate us... |
| CVE-2021-30357 | MEDIUM | 5.3 | 22.8% | Jun 8, 2021 | SSL Network Extender Client for Linux before build 800008302 reveals part of the contents of the configuration file supp... |
| CVE-2021-32106 | MEDIUM | 5.4 | 0.9% | Jun 8, 2021 | In ICEcoder 8.0 allows, a reflected XSS vulnerability was identified in the multipe-results.php page due to insufficient... |
| CVE-2021-3564 | MEDIUM | 5.5 | 0.5% | Jun 8, 2021 | A flaw double-free memory corruption in the Linux kernel HCI device initialization subsystem was found in the way user a... |
| CVE-2021-26945 | MEDIUM | 5.5 | 0.7% | Jun 8, 2021 | An integer overflow leading to a heap-buffer overflow was found in OpenEXR in versions before 3.0.1. An attacker could u... |
| CVE-2021-26260 | MEDIUM | 5.5 | 1.1% | Jun 8, 2021 | An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1... |
| CVE-2021-23215 | MEDIUM | 5.5 | 1.2% | Jun 8, 2021 | An integer overflow leading to a heap-buffer overflow was found in the DwaCompressor of OpenEXR in versions before 3.0.1... |
| CVE-2021-31738 | MEDIUM | 6.1 | 0.9% | Jun 8, 2021 | Adiscon LogAnalyzer 4.1.10 and 4.1.11 allow login.php XSS. |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now