2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-25161MEDIUM6.1A remote cross-site scripting (xss) vulnerability was discovered in some Aruba Instant Access Point (IAP) products in ve...
CVE-2021-25160MEDIUM4.9A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in v...
CVE-2021-25159MEDIUM6.5A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in v...
CVE-2021-25158MEDIUM5.9A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s...
CVE-2021-25157MEDIUM4.9A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s...
CVE-2021-25156MEDIUM4.9A remote arbitrary directory create vulnerability was discovered in some Aruba Instant Access Point (IAP) products in ve...
CVE-2021-25155MEDIUM6.5A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in v...
CVE-2021-25145MEDIUM6.5A remote unauthorized disclosure of information vulnerability was discovered in some Aruba Instant Access Point (IAP) pr...
CVE-2021-27244MEDIUM6.5This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt...
CVE-2021-27241MEDIUM6.1This vulnerability allows local attackers to delete arbitrary directories on affected installations of Avast Premium Sec...
CVE-2021-3391MEDIUM5.3MobileIron Mobile@Work through 2021-03-22 allows attackers to distinguish among valid, disabled, and nonexistent user ac...
CVE-2021-29416MEDIUM6.5An issue was discovered in PortSwigger Burp Suite before 2021.2. During viewing of a malicious request, it can be manipu...
CVE-2021-29267MEDIUM6.1Sherlock SherlockIM through 2021-03-29 allows Cross Site Scripting (XSS) by leveraging the api/Files/Attachment URI to a...
CVE-2021-27352MEDIUM5.4An open redirect vulnerability in Ilch CMS version 2.1.42 allows attackers to redirect users to an attacker's site after...
CVE-2021-29274MEDIUM6.1Redmine 4.1.x before 4.1.2 allows XSS because an issue's subject is mishandled in the auto complete tip.
CVE-2021-29272MEDIUM6.1bluemonday before 1.0.5 allows XSS because certain Go lowercasing converts an uppercase Cyrillic character, defeating a ...
CVE-2021-29271MEDIUM6.1remark42 before 1.6.1 allows XSS, as demonstrated by "Locator: Locator{URL:" followed by an XSS payload. This is related...
CVE-2021-29265MEDIUM4.7An issue was discovered in the Linux kernel before 5.11.7. usbip_sockfd_store in drivers/usb/usbip/stub_dev.c allows att...
CVE-2021-29264MEDIUM5.5An issue was discovered in the Linux kernel through 5.11.10. drivers/net/ethernet/freescale/gianfar.c in the Freescale G...
CVE-2021-21396MEDIUM6.5wire-server is an open-source back end for Wire, a secure collaboration platform. In wire-server from version 2021-02-16...
CVE-2021-21373MEDIUM5.9Nimble is a package manager for the Nim programming language. In Nim release versions before versions 1.2.10 and 1.4.4, ...
CVE-2021-21411MEDIUM5.5OAuth2-Proxy is an open source reverse proxy that provides authentication with Google, Github or other providers. The `-...
CVE-2021-22194MEDIUM4.4In all versions of GitLab, marshalled session keys were being stored in Redis.
CVE-2021-22184MEDIUM5.5An information disclosure issue in GitLab starting from version 12.8 allowed a user with access to the server logs to se...
CVE-2021-22180MEDIUM4.3An issue has been discovered in GitLab affecting all versions starting from 13.4. Improper access control allows unautho...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now