2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-26737 | MEDIUM | 4.7 | 0.1% | Oct 23, 2023 | The Zscaler Client Connector for macOS prior to 3.6 did not sufficiently validate RPC clients. A local adversary without... |
| CVE-2021-26734 | MEDIUM | 5.5 | 0.1% | Oct 23, 2023 | Zscaler Client Connector Installer on Windows before version 3.4.0.124 improperly handled directory junctions during uni... |
| CVE-2021-46898 | MEDIUM | 6.1 | 0.5% | Oct 22, 2023 | views/switch.py in django-grappelli (aka Django Grappelli) before 2.15.2 attempts to prevent external redirection with s... |
| CVE-2021-46897 | MEDIUM | 6.5 | 0.7% | Oct 22, 2023 | views.py in Wagtail CRX CodeRed Extensions (formerly CodeRed CMS or coderedcms) before 0.22.3 allows upward protected/..... |
| CVE-2021-4418 | MEDIUM | 4.3 | 0.4% | Oct 20, 2023 | The Custom CSS, JS & PHP plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includi... |
| CVE-2021-4353 | MEDIUM | 5.3 | 0.6% | Oct 20, 2023 | The WooCommerce Dynamic Pricing and Discounts plugin for WordPress is vulnerable to unauthenticated settings export in v... |
| CVE-2021-4335 | MEDIUM | 6.3 | 0.4% | Oct 20, 2023 | The Fancy Product Designer plugin for WordPress is vulnerable to unauthorized access to data and modification of plugin ... |
| CVE-2021-38859 | MEDIUM | 5.3 | 0.5% | Oct 17, 2023 | IBM Security Verify Privilege On-Premises 11.5 could allow a user to obtain version number information using a speciall... |
| CVE-2021-20581 | MEDIUM | 4.3 | 0.4% | Oct 17, 2023 | IBM Security Verify Privilege On-Premises 11.5 could allow a user to obtain sensitive information due to insufficient s... |
| CVE-2021-28485 | MEDIUM | 4.3 | 0.5% | Sep 14, 2023 | In Ericsson Mobile Switching Center Server (MSC-S) before IS 3.1 CP22, the SIS web application allows relative path trav... |
| CVE-2021-44172 | MEDIUM | 5.3 | 0.7% | Sep 13, 2023 | An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiClientEMS versions 7.0.0 t... |
| CVE-2021-45811 | MEDIUM | 6.5 | 2.8% | Sep 8, 2023 | A SQL injection vulnerability in the "Search" functionality of "tickets.php" page in osTicket 1.15.x allows authenticate... |
| CVE-2021-42734 | MEDIUM | 5.5 | 0.5% | Sep 7, 2023 | Adobe Photoshop version 22.5.1 and earlier versions are affected by an out-of-bounds read vulnerability that could le... |
| CVE-2021-42265 | MEDIUM | 5.5 | 0.3% | Sep 7, 2023 | Adobe Premiere Pro versions 22.0 (and earlier) and 15.4.2 (and earlier) are affected by an out-of-bounds read vulnerabil... |
| CVE-2021-40791 | MEDIUM | 5.5 | 0.3% | Sep 7, 2023 | Adobe Premiere Pro versions 22.0 (and earlier) and 15.4.2 (and earlier) are affected by an out-of-bounds read vulnerabil... |
| CVE-2021-40790 | MEDIUM | 5.5 | 0.3% | Sep 7, 2023 | Adobe Premiere Pro versions 22.0 (and earlier) and 15.4.2 (and earlier) are affected by an Use-After-Free vulnerability ... |
| CVE-2021-40723 | MEDIUM | 5.5 | 0.3% | Sep 7, 2023 | Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and e... |
| CVE-2021-36646 | MEDIUM | 6.1 | 0.7% | Sep 6, 2023 | A Cross Site Scrtpting (XSS) vulnerability in KodExplorer 4.45 allows remote attackers to run arbitrary code via /index.... |
| CVE-2021-39859 | MEDIUM | 5.5 | 0.4% | Sep 6, 2023 | Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) a... |
| CVE-2021-36060 | MEDIUM | 5.5 | 0.3% | Sep 6, 2023 | Adobe Media Encoder version 15.2 (and earlier) is affected by an out-of-bounds read vulnerability that could lead to dis... |
| CVE-2021-40546 | MEDIUM | 4.9 | 0.7% | Sep 5, 2023 | Tenda AC6 US_AC6V4.0RTL_V02.03.01.26_cn.bin allows attackers (who have the administrator password) to cause a denial of ... |
| CVE-2021-46312 | MEDIUM | 6.5 | 0.9% | Aug 22, 2023 | An issue was discovered IW44EncodeCodec.cpp in djvulibre 3.5.28 in allows attackers to cause a denial of service via div... |
| CVE-2021-46310 | MEDIUM | 6.5 | 0.9% | Aug 22, 2023 | An issue was discovered IW44Image.cpp in djvulibre 3.5.28 in allows attackers to cause a denial of service via divide by... |
| CVE-2021-46179 | MEDIUM | 6.5 | 0.5% | Aug 22, 2023 | Reachable Assertion vulnerability in upx before 4.0.0 allows attackers to cause a denial of service via crafted file pas... |
| CVE-2021-43171 | MEDIUM | 6.5 | 0.3% | Aug 22, 2023 | Improper verification of applications' cryptographic signatures in the /e/OS app store client App Lounge before 0.19q al... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now