2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-32592HIGH7.8An unsafe search path vulnerability in FortiClientWindows 7.0.0, 6.4.6 and below, 6.2.x, 6.0.x and FortiClientEMS 7.0.0,...
CVE-2021-4017HIGH8.8showdoc is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-4015MEDIUM4.3firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3994CRITICAL9.6django-helpdesk is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-3993MEDIUM6.5showdoc is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3992MEDIUM6.5kimai2 is vulnerable to Improper Access Control
CVE-2021-3990MEDIUM6.5showdoc is vulnerable to Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CVE-2021-3989MEDIUM6.1showdoc is vulnerable to URL Redirection to Untrusted Site
CVE-2021-3985CRITICAL9kimai2 is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-3984HIGH7.8vim is vulnerable to Heap-based Buffer Overflow
CVE-2021-4019HIGH7.8vim is vulnerable to Heap-based Buffer Overflow
CVE-2021-4018MEDIUM5.4snipe-it is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-34599HIGH7.4Affected versions of CODESYS Git in Versions prior to V1.1.0.0 lack certificate validation in HTTPS handshakes. CODESYS ...
CVE-2021-20864HIGH8.8Improper access control vulnerability in ELECOM routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v...
CVE-2021-20863HIGH8OS command injection vulnerability in ELECOM routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v1.2...
CVE-2021-20862MEDIUM4.3Improper access control vulnerability in ELECOM routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v...
CVE-2021-20861HIGH8.8Improper access control vulnerability in ELECOM LAN routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmwa...
CVE-2021-20860HIGH8.8Cross-site request forgery (CSRF) vulnerability in ELECOM LAN routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GS...
CVE-2021-20859HIGH8ELECOM LAN routers (WRC-1167GST2 firmware v1.25 and prior, WRC-1167GST2A firmware v1.25 and prior, WRC-1167GST2H firmwar...
CVE-2021-20858MEDIUM5.4Cross-site scripting vulnerability in ELECOM LAN router WRC-2533GHBK-I firmware v1.20 and prior allows a remote authenti...
CVE-2021-20857MEDIUM5.4Cross-site scripting vulnerability in ELECOM LAN router WRC-2533GHBK-I firmware v1.20 and prior allows a remote authenti...
CVE-2021-20856MEDIUM5.4Cross-site scripting vulnerability in ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware ...
CVE-2021-20855MEDIUM5.4Cross-site scripting vulnerability in ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware ...
CVE-2021-20854MEDIUM6.8ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a network-ad...
CVE-2021-20853MEDIUM6.8ELECOM LAN routers (WRH-733GBK firmware v1.02.9 and prior and WRH-733GWH firmware v1.02.9 and prior) allows a network-ad...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now