2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-36399 | MEDIUM | 5.4 | 0.5% | Mar 6, 2023 | In Moodle, ID numbers displayed in the quiz override screens required additional sanitizing to prevent a stored XSS risk... |
| CVE-2021-36398 | MEDIUM | 5.4 | 0.5% | Mar 6, 2023 | In moodle, ID numbers displayed in the web service token list required additional sanitizing to prevent a stored XSS ris... |
| CVE-2021-36397 | MEDIUM | 5.3 | 0.6% | Mar 6, 2023 | In Moodle, insufficient capability checks meant message deletions were not limited to the current user. |
| CVE-2021-35377 | MEDIUM | 6.1 | 0.4% | Mar 6, 2023 | Cross Site Scripting vulnerability found in VICIdial v2.14-610c and v.2.10-415c allows attackers execute arbitrary code ... |
| CVE-2021-36689 | MEDIUM | 5.5 | 0.3% | Mar 4, 2023 | An issue discovered in com.samourai.wallet.PinEntryActivity.java in Streetside Samourai Wallet 0.99.96i allows attackers... |
| CVE-2021-45479 | MEDIUM | 5.4 | 0.4% | Mar 2, 2023 | Improper Neutralization of Input During Web Page Generation vulnerability in Yordam Information Technologies Library Aut... |
| CVE-2021-45478 | MEDIUM | 6.5 | 0.6% | Mar 2, 2023 | Improper Handling of Parameters vulnerability in Bordam Information Technologies Library Automation System allows Collec... |
| CVE-2021-45477 | MEDIUM | 6.5 | 0.6% | Mar 2, 2023 | Improper Handling of Parameters vulnerability in Bordam Information Technologies Library Automation System allows Collec... |
| CVE-2021-22283 | MEDIUM | 5.5 | 0.2% | Feb 28, 2023 | Improper Initialization vulnerability in ABB Relion protection relays - 611 series, ABB Relion protection relays - 615 s... |
| CVE-2021-46841 | MEDIUM | 5.9 | 0.5% | Feb 27, 2023 | This issue was addressed by using HTTPS when sending information over the network. This issue is fixed in Apple Music 3.... |
| CVE-2021-32302 | MEDIUM | 6.1 | 0.6% | Feb 27, 2023 | Cross Site Scripting vulnerability in IRZ Electronics RUH2 GSM router allows attacker to obtain sensitive information vi... |
| CVE-2021-3329 | MEDIUM | 6.5 | 0.6% | Feb 26, 2023 | Lack of proper validation in HCI Host stack initialization can cause a crash of the bluetooth stack |
| CVE-2021-35369 | MEDIUM | 6.5 | 0.6% | Feb 24, 2023 | Arbitrary File Read vulnerability found in Peacexie ImCat v.5.2 fixed in v.5.4 allows attackers to obtain sensitive info... |
| CVE-2021-33367 | MEDIUM | 5.5 | 0.3% | Feb 22, 2023 | Buffer Overflow vulnerability in Freeimage v3.18.0 allows attacker to cause a denial of service via a crafted JXR file. |
| CVE-2021-4325 | MEDIUM | 6.1 | 0.5% | Feb 22, 2023 | A vulnerability, which was classified as problematic, has been found in NHN TOAST UI Chart 4.1.4. This issue affects som... |
| CVE-2021-32860 | MEDIUM | 6.1 | 0.6% | Feb 21, 2023 | iziModal is a modal plugin with jQuery. Versions prior to 1.6.1 are vulnerable to cross-site scripting (XSS) when handli... |
| CVE-2021-32859 | MEDIUM | 6.1 | 0.5% | Feb 21, 2023 | The Baremetrics date range picker is a solution for selecting both date ranges and single dates from a single calender v... |
| CVE-2021-32858 | MEDIUM | 6.1 | 0.6% | Feb 21, 2023 | esdoc-publish-html-plugin is a plugin for the document maintenance software ESDoc. TheHTML sanitizer in esdoc-publish-ht... |
| CVE-2021-32857 | MEDIUM | 6.1 | 0.7% | Feb 21, 2023 | Cockpit is a content management system that allows addition of content management functionality to any site. In versions... |
| CVE-2021-32856 | MEDIUM | 6.1 | 0.6% | Feb 21, 2023 | Microweber is a drag and drop website builder and content management system. Versions 1.2.12 and prior are vulnerable to... |
| CVE-2021-32855 | MEDIUM | 6.1 | 0.6% | Feb 21, 2023 | Vditor is a browser-side Markdown editor. Versions prior to 3.8.7 are vulnerable to copy-paste cross-site scripting (XSS... |
| CVE-2021-32854 | MEDIUM | 6.1 | 0.5% | Feb 21, 2023 | textAngular is a text editor for Angular.js. Version 1.5.16 and prior are vulnerable to copy-paste cross-site scripting ... |
| CVE-2021-32851 | MEDIUM | 6.1 | 0.7% | Feb 20, 2023 | Mind-elixir is a free, open source mind map core. Prior to version 0.18.1, mind-elixir is prone to cross-site scripting ... |
| CVE-2021-32850 | MEDIUM | 6.1 | 0.8% | Feb 20, 2023 | jQuery MiniColors is a color picker built on jQuery. Prior to version 2.3.6, jQuery MiniColors is prone to cross-site sc... |
| CVE-2021-32847 | MEDIUM | 6.5 | 0.4% | Feb 20, 2023 | HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0.20210107 and prior, a malic... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now