2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-28149 | MEDIUM | 6.5 | 13.8% | May 6, 2021 | Hongdian H8922 3.0.5 devices allow Directory Traversal. The /log_download.cgi log export handler does not validate user ... |
| CVE-2021-22210 | MEDIUM | 5.3 | 1.1% | May 6, 2021 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2. When querying the repository bra... |
| CVE-2021-22208 | MEDIUM | 4.3 | 0.8% | May 6, 2021 | An issue has been discovered in GitLab affecting versions starting with 13.5 up to 13.9.7. Improper permission check cou... |
| CVE-2021-22206 | MEDIUM | 4.9 | 1.0% | May 6, 2021 | An issue has been discovered in GitLab affecting all versions starting from 11.6. Pull mirror credentials are exposed th... |
| CVE-2021-32062 | MEDIUM | 5.3 | 1.5% | May 6, 2021 | MapServer before 7.0.8, 7.1.x and 7.2.x before 7.2.3, 7.3.x and 7.4.x before 7.4.5, and 7.5.x and 7.6.x before 7.6.3 doe... |
| CVE-2021-31532 | MEDIUM | 6.8 | 0.5% | May 6, 2021 | NXP LPC55S6x microcontrollers (0A and 1B), i.MX RT500 (silicon rev B1 and B2), i.MX RT600 (silicon rev A0, B0), LPC55S6x... |
| CVE-2021-31245 | MEDIUM | 5.9 | 2.1% | May 6, 2021 | omr-admin.py in openmptcprouter-vps-admin 0.57.3 and earlier compares the user provided password with the original passw... |
| CVE-2021-29490 | MEDIUM | 5.8 | 69.9% | May 6, 2021 | Jellyfin is a free software media system that provides media from a dedicated server to end-user devices via multiple ap... |
| CVE-2021-27216 | MEDIUM | 6.3 | 1.0% | May 6, 2021 | Exim 4 before 4.94.2 has Execution with Unnecessary Privileges. By leveraging a delete_pid_file race condition, a local ... |
| CVE-2021-24251 | MEDIUM | 4.3 | 0.5% | May 6, 2021 | The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.2 suffered from a Cr... |
| CVE-2021-24250 | MEDIUM | 5.4 | 0.6% | May 6, 2021 | The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.2 suffered from lack... |
| CVE-2021-24249 | MEDIUM | 6.5 | 0.7% | May 6, 2021 | The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.2 suffered from a Cr... |
| CVE-2021-24247 | MEDIUM | 5.4 | 4.7% | May 6, 2021 | The Contact Form Check Tester WordPress plugin through 1.0.2 settings are visible to all registered users in the dashboa... |
| CVE-2021-24246 | MEDIUM | 5.4 | 0.7% | May 6, 2021 | The Workscout Core WordPress plugin before 1.3.4, used by the WorkScout Theme did not sanitise the chat messages sent vi... |
| CVE-2021-24245 | MEDIUM | 6.1 | 5.7% | May 6, 2021 | The Stop Spammers WordPress plugin before 2021.9 did not escape user input when blocking requests (such as matching a sp... |
| CVE-2021-24244 | MEDIUM | 6.5 | 0.9% | May 6, 2021 | An AJAX action registered by the WPBakery Page Builder (Visual Composer) Clipboard WordPress plugin before 4.5.8 did not... |
| CVE-2021-24243 | MEDIUM | 5.4 | 0.7% | May 6, 2021 | An AJAX action registered by the WPBakery Page Builder (Visual Composer) Clipboard WordPress plugin before 4.5.6 did not... |
| CVE-2021-24214 | MEDIUM | 6.1 | 1.6% | May 6, 2021 | The OpenID Connect Generic Client WordPress plugin 3.8.0 and 3.8.1 did not sanitise the login error when output back in ... |
| CVE-2021-22211 | MEDIUM | 4.3 | 0.6% | May 6, 2021 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.7. GitLab Dependency Proxy, under c... |
| CVE-2021-21550 | MEDIUM | 6.7 | 0.3% | May 6, 2021 | Dell EMC PowerScale OneFS 8.1.0-9.1.0 contain an improper neutralization of special elements used in an OS command vulne... |
| CVE-2021-21527 | MEDIUM | 6.7 | 0.3% | May 6, 2021 | Dell PowerScale OneFS 8.1.0-9.1.0 contain an improper neutralization of special elements used in an OS command vulnerabi... |
| CVE-2021-1535 | MEDIUM | 5.3 | 1.2% | May 6, 2021 | A vulnerability in the cluster management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, rem... |
| CVE-2021-1532 | MEDIUM | 6.5 | 1.4% | May 6, 2021 | A vulnerability in the video endpoint API (xAPI) of Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco Ro... |
| CVE-2021-1521 | MEDIUM | 6.5 | 0.4% | May 6, 2021 | A vulnerability in the Cisco Discovery Protocol implementation for Cisco Video Surveillance 8000 Series IP Cameras could... |
| CVE-2021-1520 | MEDIUM | 6.7 | 0.3% | May 6, 2021 | A vulnerability in the internal message processing of Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Router... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now