2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-27204 | MEDIUM | 5.5 | 0.3% | Feb 12, 2021 | Telegram before 7.4 (212543) Stable on macOS stores the local passcode in cleartext, leading to information disclosure. |
| CVE-2021-20650 | MEDIUM | 6.5 | 0.5% | Feb 12, 2021 | Cross-site request forgery (CSRF) vulnerability in ELECOM NCC-EWF100RMWH2 allows remote attackers to hijack the authenti... |
| CVE-2021-20649 | MEDIUM | 4.8 | 0.3% | Feb 12, 2021 | ELECOM WRC-300FEBK-S contains an improper certificate validation vulnerability. Via a man-in-the-middle attack, an attac... |
| CVE-2021-20648 | MEDIUM | 6.8 | 0.4% | Feb 12, 2021 | ELECOM WRC-300FEBK-S allows an attacker with administrator rights to execute arbitrary OS commands via unspecified vecto... |
| CVE-2021-20647 | MEDIUM | 6.5 | 0.5% | Feb 12, 2021 | Cross-site request forgery (CSRF) vulnerability in ELECOM WRC-300FEBK-S allows remote attackers to hijack the authentica... |
| CVE-2021-20646 | MEDIUM | 6.5 | 0.5% | Feb 12, 2021 | Cross-site request forgery (CSRF) vulnerability in ELECOM WRC-300FEBK-A allows remote attackers to hijack the authentica... |
| CVE-2021-20645 | MEDIUM | 5.4 | 0.7% | Feb 12, 2021 | Cross-site scripting vulnerability in ELECOM WRC-300FEBK-A allows remote authenticated attackers to inject arbitrary scr... |
| CVE-2021-20644 | MEDIUM | 6.1 | 0.6% | Feb 12, 2021 | ELECOM WRC-1467GHBK-A allows arbitrary scripts to be executed on the user's web browser by displaying a specially crafte... |
| CVE-2021-20642 | MEDIUM | 6.5 | 1.0% | Feb 12, 2021 | Improper check or handling of exceptional conditions in LOGITEC LAN-W300N/RS allows a remote attacker to cause a denial-... |
| CVE-2021-20641 | MEDIUM | 6.5 | 0.5% | Feb 12, 2021 | Cross-site request forgery (CSRF) vulnerability in LOGITEC LAN-W300N/RS allows remote attackers to hijack the authentica... |
| CVE-2021-20640 | MEDIUM | 6.8 | 0.5% | Feb 12, 2021 | Buffer overflow vulnerability in LOGITEC LAN-W300N/PGRB allows an attacker with administrative privilege to execute an a... |
| CVE-2021-20639 | MEDIUM | 6.8 | 0.4% | Feb 12, 2021 | LOGITEC LAN-W300N/PGRB allows an attacker with administrative privilege to execute arbitrary OS commands via unspecified... |
| CVE-2021-20638 | MEDIUM | 6.8 | 0.4% | Feb 12, 2021 | LOGITEC LAN-W300N/PGRB allows an attacker with administrative privilege to execute arbitrary OS commands via unspecified... |
| CVE-2021-20637 | MEDIUM | 6.5 | 1.0% | Feb 12, 2021 | Improper check or handling of exceptional conditions in LOGITEC LAN-W300N/PR5B allows a remote attacker to cause a denia... |
| CVE-2021-20636 | MEDIUM | 6.5 | 0.5% | Feb 12, 2021 | Cross-site request forgery (CSRF) vulnerability in LOGITEC LAN-W300N/PR5B allows remote attackers to hijack the authenti... |
| CVE-2021-20635 | MEDIUM | 6.5 | 0.4% | Feb 12, 2021 | Improper restriction of excessive authentication attempts in LOGITEC LAN-WH450N/GR allows an attacker in the wireless ra... |
| CVE-2021-27190 | MEDIUM | 5.4 | 1.6% | Feb 12, 2021 | A Stored Cross Site Scripting(XSS) Vulnerability was discovered in PEEL SHOPPING 9.3.0 and 9.4.0, which are publicly ava... |
| CVE-2021-21310 | MEDIUM | 5.9 | 1.7% | Feb 11, 2021 | NextAuth.js (next-auth) is am open source authentication solution for Next.js applications. In next-auth before version ... |
| CVE-2021-21055 | MEDIUM | 6.2 | 0.8% | Feb 11, 2021 | Adobe Dreamweaver versions 21.0 (and earlier) and 20.2 (and earlier) is affected by an untrusted search path vulnerabili... |
| CVE-2021-21060 | MEDIUM | 4.6 | 1.6% | Feb 11, 2021 | Adobe Acrobat Pro DC versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier... |
| CVE-2021-21057 | MEDIUM | 6.6 | 1.1% | Feb 11, 2021 | Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and e... |
| CVE-2021-21042 | MEDIUM | 6.5 | 14.7% | Feb 11, 2021 | Acrobat Reader DC versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) a... |
| CVE-2021-21034 | MEDIUM | 4.3 | 2.5% | Feb 11, 2021 | Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and e... |
| CVE-2021-21032 | MEDIUM | 5.6 | 1.6% | Feb 11, 2021 | Magento versions 2.4.1 (and earlier), 2.4.0-p1 (and earlier) and 2.3.6 (and earlier) do not adequately invalidate user s... |
| CVE-2021-21031 | MEDIUM | 5.6 | 1.7% | Feb 11, 2021 | Magento versions 2.4.1 (and earlier), 2.4.0-p1 (and earlier) and 2.3.6 (and earlier) do not adequately invalidate user s... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now