2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-20221 | MEDIUM | 6 | 0.3% | May 13, 2021 | An out-of-bounds heap buffer access issue was found in the ARM Generic Interrupt Controller emulator of QEMU up to and i... |
| CVE-2021-20996 | MEDIUM | 5.3 | 0.8% | May 13, 2021 | In multiple managed switches by WAGO in different versions special crafted requests can lead to cookies being transferre... |
| CVE-2021-20994 | MEDIUM | 6.1 | 0.6% | May 13, 2021 | In multiple managed switches by WAGO in different versions an attacker may trick a legitimate user to click a link to in... |
| CVE-2021-20993 | MEDIUM | 5.3 | 0.8% | May 13, 2021 | In multiple managed switches by WAGO in different versions the activated directory listing provides an attacker with the... |
| CVE-2021-20250 | MEDIUM | 4.3 | 0.7% | May 13, 2021 | A flaw was found in wildfly. The JBoss EJB client has publicly accessible privileged actions which may lead to informati... |
| CVE-2021-22154 | MEDIUM | 5.3 | 0.8% | May 13, 2021 | An Information Disclosure vulnerability in the Management Console component of BlackBerry UEM version(s) 12.13.1 QF2 and... |
| CVE-2021-22152 | MEDIUM | 5.5 | 0.2% | May 13, 2021 | A Denial of Service due to Improper Input Validation vulnerability in the Management Console component of BlackBerry UEM... |
| CVE-2021-20331 | MEDIUM | 4.9 | 0.6% | May 13, 2021 | Specific versions of the MongoDB C# Driver may erroneously publish events containing authentication-related data to a co... |
| CVE-2021-23135 | MEDIUM | 5.5 | 0.2% | May 12, 2021 | Exposure of System Data to an Unauthorized Control Sphere vulnerability in web UI of Argo CD allows attacker to cause le... |
| CVE-2021-29511 | MEDIUM | 6.5 | 1.3% | May 12, 2021 | evm is a pure Rust implementation of Ethereum Virtual Machine. Prior to the patch, when executing specific EVM opcodes r... |
| CVE-2021-30214 | MEDIUM | 5.4 | 23.8% | May 12, 2021 | Knowage Suite 7.3 is vulnerable to Stored Client-Side Template Injection in '/knowage/restful-services/signup/update' vi... |
| CVE-2021-30213 | MEDIUM | 6.1 | 2.7% | May 12, 2021 | Knowage Suite 7.3 is vulnerable to unauthenticated reflected cross-site scripting (XSS). An attacker can inject arbitrar... |
| CVE-2021-30212 | MEDIUM | 5.4 | 0.6% | May 12, 2021 | Knowage Suite 7.3 is vulnerable to Stored Cross-Site Scripting (XSS). An attacker can inject arbitrary web script in '/k... |
| CVE-2021-30211 | MEDIUM | 5.4 | 0.5% | May 12, 2021 | Knowage Suite 7.3 is vulnerable to Stored Cross-Site Scripting (XSS). An attacker can inject arbitrary web script in '/k... |
| CVE-2021-3457 | MEDIUM | 6.1 | 0.2% | May 12, 2021 | An improper authorization handling flaw was found in Foreman. The Shellhooks plugin for the smart-proxy allows Foreman c... |
| CVE-2021-31341 | MEDIUM | 4.3 | 0.7% | May 12, 2021 | Uploading a table mapping using a manipulated XML file results in an exception that could expose information about the a... |
| CVE-2021-31339 | MEDIUM | 4.3 | 0.8% | May 12, 2021 | A vulnerability has been identified in Mendix Excel Importer Module (All versions < V9.0.3). Uploading a manipulated XML... |
| CVE-2021-3504 | MEDIUM | 5.4 | 1.9% | May 11, 2021 | A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the h... |
| CVE-2021-32604 | MEDIUM | 5.4 | 1.7% | May 11, 2021 | Share/IncomingWizard.htm in SolarWinds Serv-U before 15.2.3 mishandles the user-supplied SenderEmail parameter, aka "Sha... |
| CVE-2021-31209 | MEDIUM | 6.5 | 2.6% | May 11, 2021 | Microsoft Exchange Server Spoofing Vulnerability |
| CVE-2021-31207 | MEDIUM | 6.6 | 99.8% | May 11, 2021 | Microsoft Exchange Server Security Feature Bypass Vulnerability |
| CVE-2021-31205 | MEDIUM | 6.5 | 2.9% | May 11, 2021 | Windows SMB Client Security Feature Bypass Vulnerability |
| CVE-2021-31195 | MEDIUM | 6.5 | 73.7% | May 11, 2021 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2021-31191 | MEDIUM | 5.5 | 0.8% | May 11, 2021 | Windows Projected File System FS Filter Driver Information Disclosure Vulnerability |
| CVE-2021-31185 | MEDIUM | 5.5 | 0.6% | May 11, 2021 | Windows Desktop Bridge Denial of Service Vulnerability |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now