2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-27604MEDIUM6.5In order to prevent XML External Entity vulnerability in SAP NetWeaver ABAP Server and ABAP Platform (Process Integratio...
CVE-2021-27599MEDIUM6.5SAP NetWeaver ABAP Server and ABAP Platform (Process Integration - Integration Builder Framework), versions - 7.10, 7.30...
CVE-2021-29338MEDIUM5.5Integer Overflow in OpenJPEG v2.4.0 allows remote attackers to crash the application, causing a Denial of Service (DoS)....
CVE-2021-27815MEDIUM5.5NULL Pointer Deference in the exif command line tool, when printing out XML formatted EXIF data, in exif v0.6.22 and ear...
CVE-2021-27288MEDIUM6.1Cross Site Scripting (XSS) in X2Engine X2CRM v7.1 allows remote attackers to obtain sensitive information by injecting a...
CVE-2021-26832MEDIUM6.1Cross Site Scripting (XSS) in the "Reset Password" page form of Priority Enterprise Management System v8.00 allows attac...
CVE-2021-26812MEDIUM6.1Cross Site Scripting (XSS) in the Jitsi Meet 2.7 through 2.8.3 plugin for Moodle via the "sessionpriv.php" module. This ...
CVE-2021-26805MEDIUM5.5Buffer Overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with a ...
CVE-2021-27989MEDIUM5.4Appspace 6.2.4 is vulnerable to stored cross-site scripting (XSS) in multiple parameters within /medianet/sgcontentset.a...
CVE-2021-29370MEDIUM6.1A UXSS was discovered in the Thanos-Soft Cheetah Browser in Android 1.2.0 due to the inadequate filter of the intent sch...
CVE-2021-3473MEDIUM4.9An internal product security audit of Lenovo XClarity Controller (XCC) discovered that the XCC configuration backup/rest...
CVE-2021-3463MEDIUM4.4A null pointer dereference vulnerability in Lenovo Power Management Driver for Windows 10, prior to version 1.67.17.54, ...
CVE-2021-29438MEDIUM5.4The Nextcloud dialogs library (npm package @nextcloud/dialogs) before 3.1.2 insufficiently escaped text input passed to ...
CVE-2021-29437MEDIUM6.8ScratchOAuth2 is an Oauth implementation for Scratch. Any ScratchOAuth2-related data normally accessible and modifiable ...
CVE-2021-29435MEDIUM6.5trestle-auth is an authentication plugin for the Trestle admin framework. A vulnerability in trestle-auth versions 0.4.0...
CVE-2021-28459MEDIUM6.1Azure DevOps Server Spoofing Vulnerability
CVE-2021-28456MEDIUM5.5Microsoft Excel Information Disclosure Vulnerability
CVE-2021-28450MEDIUM5Microsoft SharePoint Denial of Service Vulnerability
CVE-2021-28447MEDIUM4.4Windows Early Launch Antimalware Driver Security Feature Bypass Vulnerability
CVE-2021-28444MEDIUM5.7Windows Hyper-V Security Feature Bypass Vulnerability
CVE-2021-28443MEDIUM5.5Windows Console Driver Denial of Service Vulnerability
CVE-2021-28442MEDIUM6.5Windows TCP/IP Information Disclosure Vulnerability
CVE-2021-28441MEDIUM6.5Windows Hyper-V Information Disclosure Vulnerability
CVE-2021-28438MEDIUM5.5Windows Console Driver Denial of Service Vulnerability
CVE-2021-28437MEDIUM5.5Windows Installer Information Disclosure Vulnerability

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now