2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-27604 | MEDIUM | 6.5 | 0.8% | Apr 14, 2021 | In order to prevent XML External Entity vulnerability in SAP NetWeaver ABAP Server and ABAP Platform (Process Integratio... |
| CVE-2021-27599 | MEDIUM | 6.5 | 0.8% | Apr 14, 2021 | SAP NetWeaver ABAP Server and ABAP Platform (Process Integration - Integration Builder Framework), versions - 7.10, 7.30... |
| CVE-2021-29338 | MEDIUM | 5.5 | 1.6% | Apr 14, 2021 | Integer Overflow in OpenJPEG v2.4.0 allows remote attackers to crash the application, causing a Denial of Service (DoS).... |
| CVE-2021-27815 | MEDIUM | 5.5 | 1.3% | Apr 14, 2021 | NULL Pointer Deference in the exif command line tool, when printing out XML formatted EXIF data, in exif v0.6.22 and ear... |
| CVE-2021-27288 | MEDIUM | 6.1 | 0.9% | Apr 14, 2021 | Cross Site Scripting (XSS) in X2Engine X2CRM v7.1 allows remote attackers to obtain sensitive information by injecting a... |
| CVE-2021-26832 | MEDIUM | 6.1 | 0.8% | Apr 14, 2021 | Cross Site Scripting (XSS) in the "Reset Password" page form of Priority Enterprise Management System v8.00 allows attac... |
| CVE-2021-26812 | MEDIUM | 6.1 | 97.5% | Apr 14, 2021 | Cross Site Scripting (XSS) in the Jitsi Meet 2.7 through 2.8.3 plugin for Moodle via the "sessionpriv.php" module. This ... |
| CVE-2021-26805 | MEDIUM | 5.5 | 0.7% | Apr 14, 2021 | Buffer Overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with a ... |
| CVE-2021-27989 | MEDIUM | 5.4 | 0.5% | Apr 14, 2021 | Appspace 6.2.4 is vulnerable to stored cross-site scripting (XSS) in multiple parameters within /medianet/sgcontentset.a... |
| CVE-2021-29370 | MEDIUM | 6.1 | 0.7% | Apr 13, 2021 | A UXSS was discovered in the Thanos-Soft Cheetah Browser in Android 1.2.0 due to the inadequate filter of the intent sch... |
| CVE-2021-3473 | MEDIUM | 4.9 | 0.5% | Apr 13, 2021 | An internal product security audit of Lenovo XClarity Controller (XCC) discovered that the XCC configuration backup/rest... |
| CVE-2021-3463 | MEDIUM | 4.4 | 0.2% | Apr 13, 2021 | A null pointer dereference vulnerability in Lenovo Power Management Driver for Windows 10, prior to version 1.67.17.54, ... |
| CVE-2021-29438 | MEDIUM | 5.4 | 0.7% | Apr 13, 2021 | The Nextcloud dialogs library (npm package @nextcloud/dialogs) before 3.1.2 insufficiently escaped text input passed to ... |
| CVE-2021-29437 | MEDIUM | 6.8 | 0.8% | Apr 13, 2021 | ScratchOAuth2 is an Oauth implementation for Scratch. Any ScratchOAuth2-related data normally accessible and modifiable ... |
| CVE-2021-29435 | MEDIUM | 6.5 | 0.7% | Apr 13, 2021 | trestle-auth is an authentication plugin for the Trestle admin framework. A vulnerability in trestle-auth versions 0.4.0... |
| CVE-2021-28459 | MEDIUM | 6.1 | 2.3% | Apr 13, 2021 | Azure DevOps Server Spoofing Vulnerability |
| CVE-2021-28456 | MEDIUM | 5.5 | 3.7% | Apr 13, 2021 | Microsoft Excel Information Disclosure Vulnerability |
| CVE-2021-28450 | MEDIUM | 5 | 2.4% | Apr 13, 2021 | Microsoft SharePoint Denial of Service Vulnerability |
| CVE-2021-28447 | MEDIUM | 4.4 | 2.0% | Apr 13, 2021 | Windows Early Launch Antimalware Driver Security Feature Bypass Vulnerability |
| CVE-2021-28444 | MEDIUM | 5.7 | 1.7% | Apr 13, 2021 | Windows Hyper-V Security Feature Bypass Vulnerability |
| CVE-2021-28443 | MEDIUM | 5.5 | 0.6% | Apr 13, 2021 | Windows Console Driver Denial of Service Vulnerability |
| CVE-2021-28442 | MEDIUM | 6.5 | 6.5% | Apr 13, 2021 | Windows TCP/IP Information Disclosure Vulnerability |
| CVE-2021-28441 | MEDIUM | 6.5 | 0.8% | Apr 13, 2021 | Windows Hyper-V Information Disclosure Vulnerability |
| CVE-2021-28438 | MEDIUM | 5.5 | 0.7% | Apr 13, 2021 | Windows Console Driver Denial of Service Vulnerability |
| CVE-2021-28437 | MEDIUM | 5.5 | 0.8% | Apr 13, 2021 | Windows Installer Information Disclosure Vulnerability |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now