2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-29666MEDIUM5.4IBM Spectrum Scale 5.0.0 through 5.0.5.6 and 5.1.0 through 5.1.0.2 is vulnerable to cross-site scripting. This vulnerabi...
CVE-2021-20550MEDIUM5.4IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J...
CVE-2021-20549MEDIUM5.4IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J...
CVE-2021-20448MEDIUM5.4IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J...
CVE-2021-3451MEDIUM5.5A denial of service vulnerability was reported in Lenovo PCManager, prior to version 3.0.400.3252, that could allow conf...
CVE-2021-28125MEDIUM6.1Apache Superset up to and including 1.0.1 allowed for the creation of an external URL that could be malicious. By not ch...
CVE-2021-20715MEDIUM4.3Improper access control vulnerability in Hot Pepper Gourmet App for Android ver.4.111.0 and earlier, and for iOS ver.4.1...
CVE-2021-20714MEDIUM6.5Directory traversal vulnerability in WP Fastest Cache versions prior to 0.9.1.7 allows a remote attacker with administra...
CVE-2021-30635MEDIUM5.3Sonatype Nexus Repository Manager 3.x before 3.30.1 allows a remote attacker to get a list of files and directories that...
CVE-2021-29474MEDIUM5.8HedgeDoc (formerly known as CodiMD) is an open-source collaborative markdown editor. An attacker can read arbitrary `.md...
CVE-2021-21222MEDIUM6.5Heap buffer overflow in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker who had compromised the rend...
CVE-2021-21221MEDIUM6.5Insufficient validation of untrusted input in Mojo in Google Chrome prior to 90.0.4430.72 allowed a remote attacker who ...
CVE-2021-21219MEDIUM5.5Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sens...
CVE-2021-21218MEDIUM5.5Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sens...
CVE-2021-21217MEDIUM5.5Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sens...
CVE-2021-21216MEDIUM6.5Inappropriate implementation in Autofill in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to spoof secur...
CVE-2021-21215MEDIUM6.5Inappropriate implementation in Autofill in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to spoof secur...
CVE-2021-21212MEDIUM6.5Incorrect security UI in Network Config UI in Google Chrome on ChromeOS prior to 90.0.4430.72 allowed a remote attacker ...
CVE-2021-21211MEDIUM6.5Inappropriate implementation in Navigation in Google Chrome on iOS prior to 90.0.4430.72 allowed a remote attacker to le...
CVE-2021-21210MEDIUM6.5Inappropriate implementation in Network in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to potentially ...
CVE-2021-21209MEDIUM6.5Inappropriate implementation in storage in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to leak cross-o...
CVE-2021-21208MEDIUM6.5Insufficient data validation in QR scanner in Google Chrome on iOS prior to 90.0.4430.72 allowed an attacker displaying ...
CVE-2021-20546MEDIUM5.5IBM Spectrum Protect Client 8.1.0.0 through 8.1.11.0 is vulnerable to a stack-based buffer overflow, caused by improper ...
CVE-2021-20536MEDIUM6.2IBM Spectrum Protect Plus File Systems Agent 10.1.6 and 10.1.7 stores potentially sensitive information in log files tha...
CVE-2021-20432MEDIUM6.5IBM Spectrum Protect Plus 10.1.0 through 10.1.7 uses Cross-Origin Resource Sharing (CORS) which could allow an attacker ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now