2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-28149MEDIUM6.5Hongdian H8922 3.0.5 devices allow Directory Traversal. The /log_download.cgi log export handler does not validate user ...
CVE-2021-22210MEDIUM5.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2. When querying the repository bra...
CVE-2021-22208MEDIUM4.3An issue has been discovered in GitLab affecting versions starting with 13.5 up to 13.9.7. Improper permission check cou...
CVE-2021-22206MEDIUM4.9An issue has been discovered in GitLab affecting all versions starting from 11.6. Pull mirror credentials are exposed th...
CVE-2021-32062MEDIUM5.3MapServer before 7.0.8, 7.1.x and 7.2.x before 7.2.3, 7.3.x and 7.4.x before 7.4.5, and 7.5.x and 7.6.x before 7.6.3 doe...
CVE-2021-31532MEDIUM6.8NXP LPC55S6x microcontrollers (0A and 1B), i.MX RT500 (silicon rev B1 and B2), i.MX RT600 (silicon rev A0, B0), LPC55S6x...
CVE-2021-31245MEDIUM5.9omr-admin.py in openmptcprouter-vps-admin 0.57.3 and earlier compares the user provided password with the original passw...
CVE-2021-29490MEDIUM5.8Jellyfin is a free software media system that provides media from a dedicated server to end-user devices via multiple ap...
CVE-2021-27216MEDIUM6.3Exim 4 before 4.94.2 has Execution with Unnecessary Privileges. By leveraging a delete_pid_file race condition, a local ...
CVE-2021-24251MEDIUM4.3The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.2 suffered from a Cr...
CVE-2021-24250MEDIUM5.4The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.2 suffered from lack...
CVE-2021-24249MEDIUM6.5The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.2 suffered from a Cr...
CVE-2021-24247MEDIUM5.4The Contact Form Check Tester WordPress plugin through 1.0.2 settings are visible to all registered users in the dashboa...
CVE-2021-24246MEDIUM5.4The Workscout Core WordPress plugin before 1.3.4, used by the WorkScout Theme did not sanitise the chat messages sent vi...
CVE-2021-24245MEDIUM6.1The Stop Spammers WordPress plugin before 2021.9 did not escape user input when blocking requests (such as matching a sp...
CVE-2021-24244MEDIUM6.5An AJAX action registered by the WPBakery Page Builder (Visual Composer) Clipboard WordPress plugin before 4.5.8 did not...
CVE-2021-24243MEDIUM5.4An AJAX action registered by the WPBakery Page Builder (Visual Composer) Clipboard WordPress plugin before 4.5.6 did not...
CVE-2021-24214MEDIUM6.1The OpenID Connect Generic Client WordPress plugin 3.8.0 and 3.8.1 did not sanitise the login error when output back in ...
CVE-2021-22211MEDIUM4.3An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.7. GitLab Dependency Proxy, under c...
CVE-2021-21550MEDIUM6.7Dell EMC PowerScale OneFS 8.1.0-9.1.0 contain an improper neutralization of special elements used in an OS command vulne...
CVE-2021-21527MEDIUM6.7Dell PowerScale OneFS 8.1.0-9.1.0 contain an improper neutralization of special elements used in an OS command vulnerabi...
CVE-2021-1535MEDIUM5.3A vulnerability in the cluster management interface of Cisco SD-WAN vManage Software could allow an unauthenticated, rem...
CVE-2021-1532MEDIUM6.5A vulnerability in the video endpoint API (xAPI) of Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco Ro...
CVE-2021-1521MEDIUM6.5A vulnerability in the Cisco Discovery Protocol implementation for Cisco Video Surveillance 8000 Series IP Cameras could...
CVE-2021-1520MEDIUM6.7A vulnerability in the internal message processing of Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Router...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now