2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-25161 | MEDIUM | 6.1 | 16.4% | Mar 30, 2021 | A remote cross-site scripting (xss) vulnerability was discovered in some Aruba Instant Access Point (IAP) products in ve... |
| CVE-2021-25160 | MEDIUM | 4.9 | 7.1% | Mar 30, 2021 | A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in v... |
| CVE-2021-25159 | MEDIUM | 6.5 | 13.5% | Mar 30, 2021 | A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in v... |
| CVE-2021-25158 | MEDIUM | 5.9 | 30.6% | Mar 30, 2021 | A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s... |
| CVE-2021-25157 | MEDIUM | 4.9 | 10.3% | Mar 30, 2021 | A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP) products in version(s... |
| CVE-2021-25156 | MEDIUM | 4.9 | 40.5% | Mar 30, 2021 | A remote arbitrary directory create vulnerability was discovered in some Aruba Instant Access Point (IAP) products in ve... |
| CVE-2021-25155 | MEDIUM | 6.5 | 13.3% | Mar 30, 2021 | A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP) products in v... |
| CVE-2021-25145 | MEDIUM | 6.5 | 0.4% | Mar 30, 2021 | A remote unauthorized disclosure of information vulnerability was discovered in some Aruba Instant Access Point (IAP) pr... |
| CVE-2021-27244 | MEDIUM | 6.5 | 0.3% | Mar 29, 2021 | This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt... |
| CVE-2021-27241 | MEDIUM | 6.1 | 0.3% | Mar 29, 2021 | This vulnerability allows local attackers to delete arbitrary directories on affected installations of Avast Premium Sec... |
| CVE-2021-3391 | MEDIUM | 5.3 | 1.1% | Mar 29, 2021 | MobileIron Mobile@Work through 2021-03-22 allows attackers to distinguish among valid, disabled, and nonexistent user ac... |
| CVE-2021-29416 | MEDIUM | 6.5 | 1.1% | Mar 29, 2021 | An issue was discovered in PortSwigger Burp Suite before 2021.2. During viewing of a malicious request, it can be manipu... |
| CVE-2021-29267 | MEDIUM | 6.1 | 0.9% | Mar 29, 2021 | Sherlock SherlockIM through 2021-03-29 allows Cross Site Scripting (XSS) by leveraging the api/Files/Attachment URI to a... |
| CVE-2021-27352 | MEDIUM | 5.4 | 0.8% | Mar 29, 2021 | An open redirect vulnerability in Ilch CMS version 2.1.42 allows attackers to redirect users to an attacker's site after... |
| CVE-2021-29274 | MEDIUM | 6.1 | 0.8% | Mar 29, 2021 | Redmine 4.1.x before 4.1.2 allows XSS because an issue's subject is mishandled in the auto complete tip. |
| CVE-2021-29272 | MEDIUM | 6.1 | 0.9% | Mar 27, 2021 | bluemonday before 1.0.5 allows XSS because certain Go lowercasing converts an uppercase Cyrillic character, defeating a ... |
| CVE-2021-29271 | MEDIUM | 6.1 | 0.8% | Mar 27, 2021 | remark42 before 1.6.1 allows XSS, as demonstrated by "Locator: Locator{URL:" followed by an XSS payload. This is related... |
| CVE-2021-29265 | MEDIUM | 4.7 | 0.3% | Mar 26, 2021 | An issue was discovered in the Linux kernel before 5.11.7. usbip_sockfd_store in drivers/usb/usbip/stub_dev.c allows att... |
| CVE-2021-29264 | MEDIUM | 5.5 | 0.3% | Mar 26, 2021 | An issue was discovered in the Linux kernel through 5.11.10. drivers/net/ethernet/freescale/gianfar.c in the Freescale G... |
| CVE-2021-21396 | MEDIUM | 6.5 | 1.1% | Mar 26, 2021 | wire-server is an open-source back end for Wire, a secure collaboration platform. In wire-server from version 2021-02-16... |
| CVE-2021-21373 | MEDIUM | 5.9 | 1.2% | Mar 26, 2021 | Nimble is a package manager for the Nim programming language. In Nim release versions before versions 1.2.10 and 1.4.4, ... |
| CVE-2021-21411 | MEDIUM | 5.5 | 1.0% | Mar 26, 2021 | OAuth2-Proxy is an open source reverse proxy that provides authentication with Google, Github or other providers. The `-... |
| CVE-2021-22194 | MEDIUM | 4.4 | 0.2% | Mar 26, 2021 | In all versions of GitLab, marshalled session keys were being stored in Redis. |
| CVE-2021-22184 | MEDIUM | 5.5 | 0.3% | Mar 26, 2021 | An information disclosure issue in GitLab starting from version 12.8 allowed a user with access to the server logs to se... |
| CVE-2021-22180 | MEDIUM | 4.3 | 0.9% | Mar 26, 2021 | An issue has been discovered in GitLab affecting all versions starting from 13.4. Improper access control allows unautho... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now