2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-32470 | MEDIUM | 6.1 | 0.7% | May 7, 2021 | Craft CMS before 3.6.13 has an XSS vulnerability. |
| CVE-2021-27571 | MEDIUM | 5.3 | 1.1% | May 7, 2021 | An issue was discovered in Emote Remote Mouse through 4.0.0.0. Attackers can retrieve recently used and running applicat... |
| CVE-2021-27570 | MEDIUM | 5.3 | 1.4% | May 7, 2021 | An issue was discovered in Emote Remote Mouse through 3.015. Attackers can close any running process by sending the proc... |
| CVE-2021-27569 | MEDIUM | 5.3 | 0.6% | May 7, 2021 | An issue was discovered in Emote Remote Mouse through 4.0.0.0. Attackers can maximize or minimize the window of a runnin... |
| CVE-2021-29488 | MEDIUM | 5.3 | 0.9% | May 7, 2021 | SABnzbd is an open source binary newsreader. A vulnerability was discovered in SABnzbd that could trick the `filesystem.... |
| CVE-2021-21419 | MEDIUM | 5.3 | 1.8% | May 7, 2021 | Eventlet is a concurrent networking library for Python. A websocket peer may exhaust memory on Eventlet side by sending ... |
| CVE-2021-3502 | MEDIUM | 5.5 | 0.4% | May 7, 2021 | A flaw was found in avahi 0.8-5. A reachable assertion is present in avahi_s_host_name_resolver_start function allowing ... |
| CVE-2021-26123 | MEDIUM | 6.1 | 0.7% | May 7, 2021 | LivingLogic XIST4C before 0.107.8 allows XSS via login.htm, login.wihtm, or login-form.htm. |
| CVE-2021-26122 | MEDIUM | 6.1 | 0.7% | May 7, 2021 | LivingLogic XIST4C before 0.107.8 allows XSS via feedback.htm or feedback.wihtm. |
| CVE-2021-30173 | MEDIUM | 6.5 | 1.2% | May 7, 2021 | Local File Inclusion vulnerability of the omni-directional communication system allows remote authenticated attacker inj... |
| CVE-2021-30172 | MEDIUM | 5.4 | 0.6% | May 7, 2021 | Special characters of picture preview page in the Quan-Fang-Wei-Tong-Xun system are not filtered in users’ input, which ... |
| CVE-2021-30171 | MEDIUM | 5.4 | 0.6% | May 7, 2021 | Special characters of ERP POS news page are not filtered in users’ input, which allow remote authenticated attackers can... |
| CVE-2021-30170 | MEDIUM | 5.4 | 0.6% | May 7, 2021 | Special characters of ERP POS customer profile page are not filtered in users’ input, which allow remote authenticated a... |
| CVE-2021-1906 | MEDIUM | 5.5 | 0.5% | May 7, 2021 | Improper handling of address deregistration on failure can lead to new GPU address allocation failure. in Snapdragon Aut... |
| CVE-2021-32093 | MEDIUM | 6.5 | 1.0% | May 7, 2021 | The ConfigFileAction component of U.S. National Security Agency (NSA) Emissary 5.9.0 allows an authenticated user to rea... |
| CVE-2021-32092 | MEDIUM | 6.1 | 1.0% | May 7, 2021 | A Cross-site scripting (XSS) vulnerability in the DocumentAction component of U.S. National Security Agency (NSA) Emissa... |
| CVE-2021-32091 | MEDIUM | 6.1 | 0.8% | May 7, 2021 | A Cross-site scripting (XSS) vulnerability exists in StackLift LocalStack 0.12.6. |
| CVE-2021-32103 | MEDIUM | 4.8 | 0.7% | May 7, 2021 | A Stored XSS vulnerability in interface/usergroup/usergroup_admin.php in OpenEMR before 5.0.2.1 allows a admin authentic... |
| CVE-2021-32100 | MEDIUM | 6.5 | 2.6% | May 7, 2021 | A remote file inclusion vulnerability exists in Artica Pandora FMS 742, exploitable by the lowest privileged user. |
| CVE-2021-27941 | MEDIUM | 4.6 | 0.2% | May 6, 2021 | Unconstrained Web access to the device's private encryption key in the QR code pairing mode in the eWeLink mobile applic... |
| CVE-2021-31916 | MEDIUM | 6.7 | 0.7% | May 6, 2021 | An out-of-bounds (OOB) memory write flaw was found in list_devices in drivers/md/dm-ioctl.c in the Multi-device driver m... |
| CVE-2021-3507 | MEDIUM | 6.1 | 0.5% | May 6, 2021 | A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_t... |
| CVE-2021-32052 | MEDIUM | 6.1 | 3.2% | May 6, 2021 | In Django 2.2 before 2.2.22, 3.1 before 3.1.10, and 3.2 before 3.2.2 (with Python 3.9.5+), URLValidator does not prohibi... |
| CVE-2021-31829 | MEDIUM | 5.5 | 0.3% | May 6, 2021 | kernel/bpf/verifier.c in the Linux kernel through 5.12.1 performs undesirable speculative loads, leading to disclosure o... |
| CVE-2021-28150 | MEDIUM | 5.5 | 2.6% | May 6, 2021 | Hongdian H8922 3.0.5 devices allow the unprivileged guest user to read cli.conf (with the administrator password and oth... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now