2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-20221MEDIUM6An out-of-bounds heap buffer access issue was found in the ARM Generic Interrupt Controller emulator of QEMU up to and i...
CVE-2021-20996MEDIUM5.3In multiple managed switches by WAGO in different versions special crafted requests can lead to cookies being transferre...
CVE-2021-20994MEDIUM6.1In multiple managed switches by WAGO in different versions an attacker may trick a legitimate user to click a link to in...
CVE-2021-20993MEDIUM5.3In multiple managed switches by WAGO in different versions the activated directory listing provides an attacker with the...
CVE-2021-20250MEDIUM4.3A flaw was found in wildfly. The JBoss EJB client has publicly accessible privileged actions which may lead to informati...
CVE-2021-22154MEDIUM5.3An Information Disclosure vulnerability in the Management Console component of BlackBerry UEM version(s) 12.13.1 QF2 and...
CVE-2021-22152MEDIUM5.5A Denial of Service due to Improper Input Validation vulnerability in the Management Console component of BlackBerry UEM...
CVE-2021-20331MEDIUM4.9Specific versions of the MongoDB C# Driver may erroneously publish events containing authentication-related data to a co...
CVE-2021-23135MEDIUM5.5Exposure of System Data to an Unauthorized Control Sphere vulnerability in web UI of Argo CD allows attacker to cause le...
CVE-2021-29511MEDIUM6.5evm is a pure Rust implementation of Ethereum Virtual Machine. Prior to the patch, when executing specific EVM opcodes r...
CVE-2021-30214MEDIUM5.4Knowage Suite 7.3 is vulnerable to Stored Client-Side Template Injection in '/knowage/restful-services/signup/update' vi...
CVE-2021-30213MEDIUM6.1Knowage Suite 7.3 is vulnerable to unauthenticated reflected cross-site scripting (XSS). An attacker can inject arbitrar...
CVE-2021-30212MEDIUM5.4Knowage Suite 7.3 is vulnerable to Stored Cross-Site Scripting (XSS). An attacker can inject arbitrary web script in '/k...
CVE-2021-30211MEDIUM5.4Knowage Suite 7.3 is vulnerable to Stored Cross-Site Scripting (XSS). An attacker can inject arbitrary web script in '/k...
CVE-2021-3457MEDIUM6.1An improper authorization handling flaw was found in Foreman. The Shellhooks plugin for the smart-proxy allows Foreman c...
CVE-2021-31341MEDIUM4.3Uploading a table mapping using a manipulated XML file results in an exception that could expose information about the a...
CVE-2021-31339MEDIUM4.3A vulnerability has been identified in Mendix Excel Importer Module (All versions < V9.0.3). Uploading a manipulated XML...
CVE-2021-3504MEDIUM5.4A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the h...
CVE-2021-32604MEDIUM5.4Share/IncomingWizard.htm in SolarWinds Serv-U before 15.2.3 mishandles the user-supplied SenderEmail parameter, aka "Sha...
CVE-2021-31209MEDIUM6.5Microsoft Exchange Server Spoofing Vulnerability
CVE-2021-31207MEDIUM6.6Microsoft Exchange Server Security Feature Bypass Vulnerability
CVE-2021-31205MEDIUM6.5Windows SMB Client Security Feature Bypass Vulnerability
CVE-2021-31195MEDIUM6.5Microsoft Exchange Server Remote Code Execution Vulnerability
CVE-2021-31191MEDIUM5.5Windows Projected File System FS Filter Driver Information Disclosure Vulnerability
CVE-2021-31185MEDIUM5.5Windows Desktop Bridge Denial of Service Vulnerability

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now