2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-32844 | MEDIUM | 5.5 | 0.2% | Feb 17, 2023 | HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0.20210107 and prior of Hyper... |
| CVE-2021-32843 | MEDIUM | 5.5 | 0.2% | Feb 17, 2023 | HyperKit is a toolkit for embedding hypervisor capabilities in an application. In versions 0.20210107 and prior of Hyper... |
| CVE-2021-32419 | MEDIUM | 5.3 | 0.6% | Feb 17, 2023 | An issue in Schism Tracker v20200412 fixed in v.20200412 allows attacker to obtain sensitive information via the fmt_mtm... |
| CVE-2021-23980 | MEDIUM | 6.1 | 0.5% | Feb 16, 2023 | A mutation XSS affects users calling bleach.clean with all of: svg or math in the allowed tags p or br in allowed tags s... |
| CVE-2021-33104 | MEDIUM | 5.5 | 0.3% | Feb 16, 2023 | Improper access control in the Intel(R) OFU software before version 14.1.28 may allow an authenticated user to potential... |
| CVE-2021-43074 | MEDIUM | 4.3 | 0.3% | Feb 16, 2023 | An improper verification of cryptographic signature vulnerability [CWE-347] in FortiWeb 6.4 all versions, 6.3.16 and bel... |
| CVE-2021-40555 | MEDIUM | 5.4 | 0.4% | Feb 16, 2023 | Cross site scripting (XSS) vulnerability in flatCore-CMS 2.2.15 allows attackers to execute arbitrary code via descripti... |
| CVE-2021-33396 | MEDIUM | 6.5 | 0.3% | Feb 15, 2023 | Cross Site Request Forgery (CSRF) vulnerability in baijiacms 4.1.4, allows attackers to change the password or other inf... |
| CVE-2021-37519 | MEDIUM | 5.5 | 0.4% | Feb 3, 2023 | Buffer Overflow vulnerability in authfile.c memcached 1.6.9 allows attackers to cause a denial of service via crafted au... |
| CVE-2021-37518 | MEDIUM | 6.1 | 0.7% | Feb 3, 2023 | Universal Cross Site Scripting (UXSS) vulnerability in Vimium Extension 1.66 and earlier allows remote attackers to run ... |
| CVE-2021-37502 | MEDIUM | 5.4 | 0.5% | Feb 3, 2023 | Cross Site Scripting (XSS) vulnerability in automad 1.7.5 allows remote attackers to run arbitrary code via the user nam... |
| CVE-2021-37379 | MEDIUM | 5.4 | 0.6% | Feb 3, 2023 | Cross Site Scripting (XSS) vulnerability in Teradek Sphere all firmware versions allows remote attackers to run arbitrar... |
| CVE-2021-37378 | MEDIUM | 5.4 | 0.6% | Feb 3, 2023 | Cross Site Scripting (XSS) vulnerability in Teradek Cube and Cube Pro firmware version 7.3.x and earlier allows remote a... |
| CVE-2021-37377 | MEDIUM | 5.4 | 0.6% | Feb 3, 2023 | Cross Site Scripting (XSS) vulnerability in Teradek Brik firmware version 7.2.x and earlier allows remote attackers to r... |
| CVE-2021-37376 | MEDIUM | 5.4 | 0.6% | Feb 3, 2023 | Cross Site Scripting (XSS) vulnerability in Teradek Bond, Bond 2 and Bond Pro firmware version 7.3.x and earlier allows ... |
| CVE-2021-37375 | MEDIUM | 5.4 | 0.6% | Feb 3, 2023 | Cross Site Scripting (XSS) vulnerability in Teradek VidiU / VidiU Mini firmware version 3.0.8 and earlier allows remote ... |
| CVE-2021-37374 | MEDIUM | 5.4 | 0.6% | Feb 3, 2023 | Cross Site Scripting (XSS) vulnerability in Teradek Clip all firmware versions allows remote attackers to run arbitrary ... |
| CVE-2021-37373 | MEDIUM | 5.4 | 0.6% | Feb 3, 2023 | Cross Site Scripting (XSS) vulnerability in Teradek Slice 1st generation firmware 7.3.x and earlier allows remote attack... |
| CVE-2021-37234 | MEDIUM | 6.5 | 0.4% | Feb 3, 2023 | Incorrect Access Control vulnerability in Modern Honey Network commit 0abf0db9cd893c6d5c727d036e1f817c02de4c7b allows re... |
| CVE-2021-36712 | MEDIUM | 5.4 | 0.5% | Feb 3, 2023 | Cross Site Scripting (XSS) vulnerability in yzmcms 6.1 allows attackers to steal user cookies via image clipping functio... |
| CVE-2021-36545 | MEDIUM | 5.4 | 0.5% | Feb 3, 2023 | Cross Site Scripting (XSS) vulnerability in tpcms 3.2 allows remote attackers to run arbitrary code via the cfg_copyrigh... |
| CVE-2021-36538 | MEDIUM | 5.4 | 0.6% | Feb 3, 2023 | Cross Site Scripting (XSS) vulnerability in Gurock TestRail before 7.1.2 allows remote authenticated attackers to run ar... |
| CVE-2021-36535 | MEDIUM | 5.5 | 0.4% | Feb 3, 2023 | Buffer Overflow vulnerability in Cesanta mJS 1.26 allows remote attackers to cause a denial of service via crafted .js f... |
| CVE-2021-36489 | MEDIUM | 6.5 | 0.6% | Feb 3, 2023 | Buffer Overflow vulnerability in Allegro through 5.2.6 allows attackers to cause a denial of service via crafted PCX/TGA... |
| CVE-2021-36425 | MEDIUM | 5.4 | 1.0% | Feb 3, 2023 | Directory traversal vulnerability in phpcms 1.9.25 allows remote attackers to delete arbitrary files via unfiltered $fil... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now