2021 CVE Vulnerabilities
23,452 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-2002 | MEDIUM | 4.9 | 2.6% | Jan 20, 2021 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Replication). Supported versions that are ... |
| CVE-2021-2001 | MEDIUM | 4.9 | 2.2% | Jan 20, 2021 | Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are af... |
| CVE-2021-1999 | MEDIUM | 5 | 0.3% | Jan 20, 2021 | Vulnerability in the Oracle ZFS Storage Appliance Kit product of Oracle Systems (component: RAS subsystems). The support... |
| CVE-2021-1995 | MEDIUM | 6.5 | 1.5% | Jan 20, 2021 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Services). Supported ver... |
| CVE-2021-1993 | MEDIUM | 4.8 | 0.8% | Jan 20, 2021 | Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 12.1.0.2, 12.... |
| CVE-2021-3137 | MEDIUM | 5.4 | 0.7% | Jan 20, 2021 | XWiki 12.10.2 allows XSS via an SVG document to the upload feature of the comment section. |
| CVE-2021-21263 | MEDIUM | 5.3 | 1.6% | Jan 19, 2021 | Laravel is a web application framework. Versions of Laravel before 6.20.11, 7.30.2 and 8.22.1 contain a query binding ex... |
| CVE-2021-3184 | MEDIUM | 6.1 | 0.8% | Jan 19, 2021 | MISP 2.4.136 has XSS via a crafted URL to the app/View/Elements/global_menu.ctp user homepage favourite button. |
| CVE-2021-25325 | MEDIUM | 6.1 | 0.8% | Jan 19, 2021 | MISP 2.4.136 has XSS via galaxy cluster element values to app/View/GalaxyElements/ajax/index.ctp. Reference types could ... |
| CVE-2021-25324 | MEDIUM | 6.1 | 0.8% | Jan 19, 2021 | MISP 2.4.136 has Stored XSS in the galaxy cluster view via a cluster name to app/View/GalaxyClusters/view.ctp. |
| CVE-2021-3181 | MEDIUM | 6.5 | 2.8% | Jan 19, 2021 | rfc822.c in Mutt through 2.0.4 allows remote attackers to cause a denial of service (mailbox unavailability) by sending ... |
| CVE-2021-3178 | MEDIUM | 6.5 | 2.4% | Jan 19, 2021 | fs/nfsd/nfs3xdr.c in the Linux kernel through 5.10.8, when there is an NFS export of a subdirectory of a filesystem, all... |
| CVE-2021-20619 | MEDIUM | 6.1 | 1.0% | Jan 19, 2021 | Cross-site scripting vulnerability in GROWI (v4.2 Series) versions prior to v4.2.3 allows remote attackers to inject an ... |
| CVE-2021-25295 | MEDIUM | 6.1 | 1.5% | Jan 18, 2021 | OpenCATS through 0.9.5-3 has multiple Cross-site Scripting (XSS) issues. |
| CVE-2021-21250 | MEDIUM | 6.5 | 0.9% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, there is a critical vulnerability which may lea... |
| CVE-2021-0221 | MEDIUM | 6.5 | 0.5% | Jan 15, 2021 | In an EVPN/VXLAN scenario, if an IRB interface with a virtual gateway address (VGA) is configured on a PE, a traffic loo... |
| CVE-2021-0220 | MEDIUM | 6.8 | 1.2% | Jan 15, 2021 | The Junos Space Network Management Platform has been found to store shared secrets in a recoverable format that can be e... |
| CVE-2021-0219 | MEDIUM | 6.7 | 0.7% | Jan 15, 2021 | A command injection vulnerability in install package validation subsystem of Juniper Networks Junos OS that may allow a ... |
| CVE-2021-0215 | MEDIUM | 6.5 | 0.8% | Jan 15, 2021 | On Juniper Networks Junos EX series, QFX Series, MX Series and SRX branch series devices, a memory leak occurs every tim... |
| CVE-2021-0212 | MEDIUM | 5 | 0.3% | Jan 15, 2021 | An Information Exposure vulnerability in Juniper Networks Contrail Networking allows a locally authenticated attacker ab... |
| CVE-2021-0210 | MEDIUM | 6.8 | 1.1% | Jan 15, 2021 | An Information Exposure vulnerability in J-Web of Juniper Networks Junos OS allows an unauthenticated attacker to elevat... |
| CVE-2021-0209 | MEDIUM | 6.5 | 0.4% | Jan 15, 2021 | In Juniper Networks Junos OS Evolved an attacker sending certain valid BGP update packets may cause Junos OS Evolved to ... |
| CVE-2021-0205 | MEDIUM | 5.8 | 1.2% | Jan 15, 2021 | When the "Intrusion Detection Service" (IDS) feature is configured on Juniper Networks MX series with a dynamic firewall... |
| CVE-2021-22171 | MEDIUM | 6.5 | 1.3% | Jan 15, 2021 | Insufficient validation of authentication parameters in GitLab Pages for GitLab 11.5+ allows an attacker to steal a vict... |
| CVE-2021-22168 | MEDIUM | 6.5 | 1.0% | Jan 15, 2021 | A regular expression denial of service issue has been discovered in NuGet API affecting all versions of GitLab starting ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now