2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22865 | MEDIUM | 6.5 | 1.3% | Apr 2, 2021 | An improper access control vulnerability was identified in GitHub Enterprise Server that allowed access tokens generated... |
| CVE-2021-1791 | MEDIUM | 5.5 | 1.1% | Apr 2, 2021 | An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input ... |
| CVE-2021-1786 | MEDIUM | 5.5 | 0.3% | Apr 2, 2021 | A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Security Update 2... |
| CVE-2021-1781 | MEDIUM | 5.5 | 0.7% | Apr 2, 2021 | A privacy issue existed in the handling of Contact cards. This was addressed with improved state management. This issue ... |
| CVE-2021-1780 | MEDIUM | 4.4 | 0.3% | Apr 2, 2021 | A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 14.4 and iPadOS 14... |
| CVE-2021-1778 | MEDIUM | 5.5 | 0.8% | Apr 2, 2021 | An out-of-bounds read issue existed in the curl. This issue was addressed with improved bounds checking. This issue is f... |
| CVE-2021-1773 | MEDIUM | 5.5 | 0.8% | Apr 2, 2021 | A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Security Update 2... |
| CVE-2021-1769 | MEDIUM | 5.5 | 0.3% | Apr 2, 2021 | A logic issue was addressed with improved validation. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-00... |
| CVE-2021-1766 | MEDIUM | 5.5 | 0.8% | Apr 2, 2021 | This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-001 Catal... |
| CVE-2021-1765 | MEDIUM | 6.5 | 1.4% | Apr 2, 2021 | This issue was addressed with improved iframe sandbox enforcement. This issue is fixed in macOS Big Sur 11.2, Security U... |
| CVE-2021-1760 | MEDIUM | 5.5 | 1.0% | Apr 2, 2021 | A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Secur... |
| CVE-2021-22202 | MEDIUM | 4.3 | 0.5% | Apr 2, 2021 | An issue has been discovered in GitLab CE/EE affecting all previous versions. If the victim is an admin, it was possible... |
| CVE-2021-22201 | MEDIUM | 6.5 | 3.1% | Apr 2, 2021 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.9. A specially crafted import file ... |
| CVE-2021-22198 | MEDIUM | 4.3 | 1.1% | Apr 2, 2021 | An issue has been discovered in GitLab CE/EE affecting all versions from 13.8 and above allowing an authenticated user t... |
| CVE-2021-22197 | MEDIUM | 4.3 | 0.8% | Apr 2, 2021 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.6 where an infinite loop exist when... |
| CVE-2021-22196 | MEDIUM | 5.4 | 0.9% | Apr 2, 2021 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.4. It was possible to exploit a sto... |
| CVE-2021-28124 | MEDIUM | 5.9 | 1.0% | Apr 2, 2021 | A man-in-the-middle vulnerability in Cohesity DataPlatform support channel in version 6.3 up to 6.3.1g, 6.4 up to 6.4.1c... |
| CVE-2021-28113 | MEDIUM | 6.7 | 22.3% | Apr 2, 2021 | A command injection vulnerability in the cookieDomain and relayDomain parameters of Okta Access Gateway before 2020.9.3 ... |
| CVE-2021-21400 | MEDIUM | 6.5 | 1.1% | Apr 2, 2021 | wire-webapp is an open-source front end for Wire, a secure collaboration platform. In wire-webapp before version 2021-03... |
| CVE-2021-29652 | MEDIUM | 6.1 | 0.7% | Apr 2, 2021 | Pomerium from version 0.10.0-0.13.3 has an Open Redirect in the user sign-in/out process |
| CVE-2021-29651 | MEDIUM | 6.1 | 0.7% | Apr 2, 2021 | Pomerium before 0.13.4 has an Open Redirect (issue 1 of 2). |
| CVE-2021-29011 | MEDIUM | 6.1 | 1.4% | Apr 2, 2021 | DMA Softlab Radius Manager 4.4.0 is affected by Cross Site Scripting (XSS) via the description, name, or address field (... |
| CVE-2021-25894 | MEDIUM | 6.1 | 1.1% | Apr 2, 2021 | Magnolia CMS from 6.1.3 to 6.2.3 contains a stored cross-site scripting (XSS) vulnerability in the /magnoliaPublic/trave... |
| CVE-2021-25893 | MEDIUM | 5.4 | 0.9% | Apr 2, 2021 | Magnolia CMS from 6.1.3 to 6.2.3 contains a stored cross-site scripting (XSS) vulnerability in the setText parameter of ... |
| CVE-2021-30004 | MEDIUM | 5.3 | 1.7% | Apr 2, 2021 | In wpa_supplicant and hostapd 2.9, forging attacks may occur because AlgorithmIdentifier parameters are mishandled in tl... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now