2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-29503MEDIUM6.1HedgeDoc is a platform to write and share markdown. HedgeDoc before version 1.8.2 is vulnerable to a cross-site scriptin...
CVE-2021-27924MEDIUM5.9An issue was discovered in Couchbase Server 6.x through 6.6.1. The Couchbase Server UI is insecurely logging session coo...
CVE-2021-20529MEDIUM5.3IBM Control Center 6.2.0.0 could allow a user to obtain sensitive version information that could be used in further atta...
CVE-2021-20528MEDIUM5.4IBM Control Center 6.2.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav...
CVE-2021-20374MEDIUM5.4IBM Maximo Asset Management 7.6.0 and 7.6.1 is vulnerable to stored cross-site scripting. This vulnerability allows user...
CVE-2021-31158MEDIUM6.5In the Query Engine in Couchbase Server 6.5.x and 6.6.x through 6.6.1, Common Table Expression queries were not correctl...
CVE-2021-27925MEDIUM4.4An issue was discovered in Couchbase Server 6.5.x and 6.6.x through 6.6.1. When using the View Engine and Auditing is en...
CVE-2021-31930MEDIUM6.1Persistent cross-site scripting (XSS) in the web interface of Concerto through 2.3.6 allows an unauthenticated remote at...
CVE-2021-3421MEDIUM5.5A flaw was found in the RPM package in the read functionality. This flaw allows an attacker who can convince a victim to...
CVE-2021-21733MEDIUM4.9The management system of ZXCDN is impacted by the information leak vulnerability. Attackers can make further analysis ac...
CVE-2021-31323MEDIUM5.5Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Heap Buffer Overflow in the...
CVE-2021-31322MEDIUM5.5Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Heap Buffer Overflow in the...
CVE-2021-31319MEDIUM5.5Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by an Integer Overflow in the LO...
CVE-2021-31318MEDIUM5.5Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Type Confusion in the LOTCo...
CVE-2021-31317MEDIUM5.5Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Type Confusion in the VDash...
CVE-2021-31315MEDIUM5.5Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Stack Based Overflow in the...
CVE-2021-3531MEDIUM5.3A flaw was found in the Red Hat Ceph Storage RGW in versions before 14.2.21. When processing a GET Request for a swift U...
CVE-2021-29023MEDIUM5.3InvoicePlane 1.5.11 doesn't have any rate-limiting for password reset and the reset token is generated using a weak mech...
CVE-2021-32618MEDIUM6.1The Python "Flask-Security-Too" package is used for adding security features to your Flask application. It is an is an i...
CVE-2021-32617MEDIUM5.5Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image file...
CVE-2021-32456MEDIUM6.5SITEL CAP/PRX firmware version 5.2.01 allows an attacker with access to the local network of the device to obtain the au...
CVE-2021-23384MEDIUM5.4The package koa-remove-trailing-slashes before 2.0.2 are vulnerable to Open Redirect via the use of trailing double slas...
CVE-2021-3524MEDIUM6.5A flaw was found in the Red Hat Ceph Storage RadosGW (Ceph Object Gateway) in versions before 14.2.21. The vulnerability...
CVE-2021-33041MEDIUM6.1vmd through 1.34.0 allows 'div class="markdown-body"' XSS, as demonstrated by Electron remote code execution via require...
CVE-2021-32455MEDIUM6.5SITEL CAP/PRX firmware version 5.2.01, allows an attacker with access to the device´s network to cause a denial of servi...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now