2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-29666 | MEDIUM | 5.4 | 0.5% | Apr 27, 2021 | IBM Spectrum Scale 5.0.0 through 5.0.5.6 and 5.1.0 through 5.1.0.2 is vulnerable to cross-site scripting. This vulnerabi... |
| CVE-2021-20550 | MEDIUM | 5.4 | 0.5% | Apr 27, 2021 | IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J... |
| CVE-2021-20549 | MEDIUM | 5.4 | 0.5% | Apr 27, 2021 | IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J... |
| CVE-2021-20448 | MEDIUM | 5.4 | 0.5% | Apr 27, 2021 | IBM Content Navigator 3.0.CD is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J... |
| CVE-2021-3451 | MEDIUM | 5.5 | 0.2% | Apr 27, 2021 | A denial of service vulnerability was reported in Lenovo PCManager, prior to version 3.0.400.3252, that could allow conf... |
| CVE-2021-28125 | MEDIUM | 6.1 | 63.8% | Apr 27, 2021 | Apache Superset up to and including 1.0.1 allowed for the creation of an external URL that could be malicious. By not ch... |
| CVE-2021-20715 | MEDIUM | 4.3 | 0.9% | Apr 27, 2021 | Improper access control vulnerability in Hot Pepper Gourmet App for Android ver.4.111.0 and earlier, and for iOS ver.4.1... |
| CVE-2021-20714 | MEDIUM | 6.5 | 2.6% | Apr 27, 2021 | Directory traversal vulnerability in WP Fastest Cache versions prior to 0.9.1.7 allows a remote attacker with administra... |
| CVE-2021-30635 | MEDIUM | 5.3 | 1.8% | Apr 27, 2021 | Sonatype Nexus Repository Manager 3.x before 3.30.1 allows a remote attacker to get a list of files and directories that... |
| CVE-2021-29474 | MEDIUM | 5.8 | 1.6% | Apr 26, 2021 | HedgeDoc (formerly known as CodiMD) is an open-source collaborative markdown editor. An attacker can read arbitrary `.md... |
| CVE-2021-21222 | MEDIUM | 6.5 | 1.8% | Apr 26, 2021 | Heap buffer overflow in V8 in Google Chrome prior to 90.0.4430.85 allowed a remote attacker who had compromised the rend... |
| CVE-2021-21221 | MEDIUM | 6.5 | 1.6% | Apr 26, 2021 | Insufficient validation of untrusted input in Mojo in Google Chrome prior to 90.0.4430.72 allowed a remote attacker who ... |
| CVE-2021-21219 | MEDIUM | 5.5 | 1.2% | Apr 26, 2021 | Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sens... |
| CVE-2021-21218 | MEDIUM | 5.5 | 1.3% | Apr 26, 2021 | Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sens... |
| CVE-2021-21217 | MEDIUM | 5.5 | 1.6% | Apr 26, 2021 | Uninitialized data in PDFium in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to obtain potentially sens... |
| CVE-2021-21216 | MEDIUM | 6.5 | 21.8% | Apr 26, 2021 | Inappropriate implementation in Autofill in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to spoof secur... |
| CVE-2021-21215 | MEDIUM | 6.5 | 34.5% | Apr 26, 2021 | Inappropriate implementation in Autofill in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to spoof secur... |
| CVE-2021-21212 | MEDIUM | 6.5 | 1.8% | Apr 26, 2021 | Incorrect security UI in Network Config UI in Google Chrome on ChromeOS prior to 90.0.4430.72 allowed a remote attacker ... |
| CVE-2021-21211 | MEDIUM | 6.5 | 1.0% | Apr 26, 2021 | Inappropriate implementation in Navigation in Google Chrome on iOS prior to 90.0.4430.72 allowed a remote attacker to le... |
| CVE-2021-21210 | MEDIUM | 6.5 | 1.9% | Apr 26, 2021 | Inappropriate implementation in Network in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to potentially ... |
| CVE-2021-21209 | MEDIUM | 6.5 | 1.0% | Apr 26, 2021 | Inappropriate implementation in storage in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to leak cross-o... |
| CVE-2021-21208 | MEDIUM | 6.5 | 1.4% | Apr 26, 2021 | Insufficient data validation in QR scanner in Google Chrome on iOS prior to 90.0.4430.72 allowed an attacker displaying ... |
| CVE-2021-20546 | MEDIUM | 5.5 | 0.3% | Apr 26, 2021 | IBM Spectrum Protect Client 8.1.0.0 through 8.1.11.0 is vulnerable to a stack-based buffer overflow, caused by improper ... |
| CVE-2021-20536 | MEDIUM | 6.2 | 0.3% | Apr 26, 2021 | IBM Spectrum Protect Plus File Systems Agent 10.1.6 and 10.1.7 stores potentially sensitive information in log files tha... |
| CVE-2021-20432 | MEDIUM | 6.5 | 0.7% | Apr 26, 2021 | IBM Spectrum Protect Plus 10.1.0 through 10.1.7 uses Cross-Origin Resource Sharing (CORS) which could allow an attacker ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now