2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-31792MEDIUM5.4XSS in the client account page in SuiteCRM before 7.11.19 allows an attacker to inject JavaScript via the name field
CVE-2021-21547MEDIUM6.7Dell EMC Unity, UnityVSA, and Unity XT versions prior to 5.0.7.0.5.008 contain a plain-text password storage vulnerabili...
CVE-2021-21543MEDIUM4.8Dell EMC iDRAC9 versions prior to 4.40.00.00 contain multiple stored cross-site scripting vulnerabilities. A remote auth...
CVE-2021-21542MEDIUM4.8Dell EMC iDRAC9 versions prior to 4.40.10.00 contain multiple stored cross-site scripting vulnerabilities. A remote auth...
CVE-2021-21541MEDIUM6.1Dell EMC iDRAC9 versions prior to 4.40.00.00 contain a DOM-based cross-site scripting vulnerability. A remote unauthenti...
CVE-2021-21229MEDIUM6.5Incorrect security UI in downloads in Google Chrome on Android prior to 90.0.4430.93 allowed a remote attacker to perfor...
CVE-2021-21228MEDIUM4.3Insufficient policy enforcement in extensions in Google Chrome prior to 90.0.4430.93 allowed an attacker who convinced a...
CVE-2021-31926MEDIUM6.5AMP Application Deployment Service in CubeCoders AMP 2.1.x before 2.1.1.2 allows a remote, authenticated user to open po...
CVE-2021-29463MEDIUM5.5Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image file...
CVE-2021-21537MEDIUM5.5Dell Hybrid Client versions prior to 1.5 contain an information exposure vulnerability. A local unauthenticated attacker...
CVE-2021-21536MEDIUM5.5Dell Hybrid Client versions prior to 1.5 contain an information exposure vulnerability. A local unauthenticated attacker...
CVE-2021-20515MEDIUM6.7IBM Informix Dynamic Server 14.10 is vulnerable to a stack based buffer overflow, caused by improper bounds checking. A ...
CVE-2021-31232MEDIUM5.5The Alertmanager in CNCF Cortex before 1.8.1 has a local file disclosure vulnerability when -experimental.alertmanager.e...
CVE-2021-31231MEDIUM5.5The Alertmanager in Grafana Enterprise Metrics before 1.2.1 and Metrics Enterprise 1.2.1 has a local file disclosure vul...
CVE-2021-20266MEDIUM4.9A flaw was found in RPM's hdrblobInit() in lib/header.c. This flaw allows an attacker who can modify the rpmdb to cause ...
CVE-2021-20326MEDIUM6.5A user authorized to performing a specific type of find query may trigger a denial of service. This issue affects MongoD...
CVE-2021-29484MEDIUM6.8Ghost is a Node.js CMS. An unused endpoint added during the development of 4.0.0 has left sites vulnerable to untrusted ...
CVE-2021-1087MEDIUM5.5NVIDIA vGPU driver contains a vulnerability in the Virtual GPU Manager (vGPU plugin), which could allow an attacker to r...
CVE-2021-1495MEDIUM5.3Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticate...
CVE-2021-1489MEDIUM6.5A vulnerability in filesystem usage management for Cisco Firepower Device Manager (FDM) Software could allow an authenti...
CVE-2021-1488MEDIUM6.7A vulnerability in the upgrade process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat De...
CVE-2021-1477MEDIUM4.3A vulnerability in an access control mechanism of Cisco Firepower Management Center (FMC) Software could allow an authen...
CVE-2021-1476MEDIUM6.7A vulnerability in the CLI of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) ...
CVE-2021-1458MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could...
CVE-2021-1457MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now