2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-31792 | MEDIUM | 5.4 | 0.9% | Apr 30, 2021 | XSS in the client account page in SuiteCRM before 7.11.19 allows an attacker to inject JavaScript via the name field |
| CVE-2021-21547 | MEDIUM | 6.7 | 0.1% | Apr 30, 2021 | Dell EMC Unity, UnityVSA, and Unity XT versions prior to 5.0.7.0.5.008 contain a plain-text password storage vulnerabili... |
| CVE-2021-21543 | MEDIUM | 4.8 | 0.6% | Apr 30, 2021 | Dell EMC iDRAC9 versions prior to 4.40.00.00 contain multiple stored cross-site scripting vulnerabilities. A remote auth... |
| CVE-2021-21542 | MEDIUM | 4.8 | 0.4% | Apr 30, 2021 | Dell EMC iDRAC9 versions prior to 4.40.10.00 contain multiple stored cross-site scripting vulnerabilities. A remote auth... |
| CVE-2021-21541 | MEDIUM | 6.1 | 0.8% | Apr 30, 2021 | Dell EMC iDRAC9 versions prior to 4.40.00.00 contain a DOM-based cross-site scripting vulnerability. A remote unauthenti... |
| CVE-2021-21229 | MEDIUM | 6.5 | 0.9% | Apr 30, 2021 | Incorrect security UI in downloads in Google Chrome on Android prior to 90.0.4430.93 allowed a remote attacker to perfor... |
| CVE-2021-21228 | MEDIUM | 4.3 | 1.1% | Apr 30, 2021 | Insufficient policy enforcement in extensions in Google Chrome prior to 90.0.4430.93 allowed an attacker who convinced a... |
| CVE-2021-31926 | MEDIUM | 6.5 | 0.9% | Apr 30, 2021 | AMP Application Deployment Service in CubeCoders AMP 2.1.x before 2.1.1.2 allows a remote, authenticated user to open po... |
| CVE-2021-29463 | MEDIUM | 5.5 | 1.1% | Apr 30, 2021 | Exiv2 is a command-line utility and C++ library for reading, writing, deleting, and modifying the metadata of image file... |
| CVE-2021-21537 | MEDIUM | 5.5 | 0.2% | Apr 30, 2021 | Dell Hybrid Client versions prior to 1.5 contain an information exposure vulnerability. A local unauthenticated attacker... |
| CVE-2021-21536 | MEDIUM | 5.5 | 0.2% | Apr 30, 2021 | Dell Hybrid Client versions prior to 1.5 contain an information exposure vulnerability. A local unauthenticated attacker... |
| CVE-2021-20515 | MEDIUM | 6.7 | 0.3% | Apr 30, 2021 | IBM Informix Dynamic Server 14.10 is vulnerable to a stack based buffer overflow, caused by improper bounds checking. A ... |
| CVE-2021-31232 | MEDIUM | 5.5 | 0.4% | Apr 30, 2021 | The Alertmanager in CNCF Cortex before 1.8.1 has a local file disclosure vulnerability when -experimental.alertmanager.e... |
| CVE-2021-31231 | MEDIUM | 5.5 | 0.3% | Apr 30, 2021 | The Alertmanager in Grafana Enterprise Metrics before 1.2.1 and Metrics Enterprise 1.2.1 has a local file disclosure vul... |
| CVE-2021-20266 | MEDIUM | 4.9 | 1.7% | Apr 30, 2021 | A flaw was found in RPM's hdrblobInit() in lib/header.c. This flaw allows an attacker who can modify the rpmdb to cause ... |
| CVE-2021-20326 | MEDIUM | 6.5 | 0.9% | Apr 30, 2021 | A user authorized to performing a specific type of find query may trigger a denial of service. This issue affects MongoD... |
| CVE-2021-29484 | MEDIUM | 6.8 | 7.9% | Apr 29, 2021 | Ghost is a Node.js CMS. An unused endpoint added during the development of 4.0.0 has left sites vulnerable to untrusted ... |
| CVE-2021-1087 | MEDIUM | 5.5 | 0.2% | Apr 29, 2021 | NVIDIA vGPU driver contains a vulnerability in the Virtual GPU Manager (vGPU plugin), which could allow an attacker to r... |
| CVE-2021-1495 | MEDIUM | 5.3 | 1.7% | Apr 29, 2021 | Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticate... |
| CVE-2021-1489 | MEDIUM | 6.5 | 1.2% | Apr 29, 2021 | A vulnerability in filesystem usage management for Cisco Firepower Device Manager (FDM) Software could allow an authenti... |
| CVE-2021-1488 | MEDIUM | 6.7 | 0.3% | Apr 29, 2021 | A vulnerability in the upgrade process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat De... |
| CVE-2021-1477 | MEDIUM | 4.3 | 0.7% | Apr 29, 2021 | A vulnerability in an access control mechanism of Cisco Firepower Management Center (FMC) Software could allow an authen... |
| CVE-2021-1476 | MEDIUM | 6.7 | 0.5% | Apr 29, 2021 | A vulnerability in the CLI of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) ... |
| CVE-2021-1458 | MEDIUM | 4.8 | 0.6% | Apr 29, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could... |
| CVE-2021-1457 | MEDIUM | 4.8 | 0.6% | Apr 29, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Firepower Management Center (FMC) Software could... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now