2021 CVE Vulnerabilities
23,452 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-23933 | MEDIUM | 6.1 | 1.1% | Jan 12, 2021 | OX App Suite through 7.10.4 allows XSS via JavaScript in a Note referenced by a mail:// URL. |
| CVE-2021-23932 | MEDIUM | 6.1 | 1.1% | Jan 12, 2021 | OX App Suite through 7.10.4 allows XSS via an inline image with a crafted filename. |
| CVE-2021-23931 | MEDIUM | 6.1 | 1.1% | Jan 12, 2021 | OX App Suite through 7.10.4 allows XSS via an inline binary file. |
| CVE-2021-23930 | MEDIUM | 6.1 | 1.1% | Jan 12, 2021 | OX App Suite through 7.10.4 allows XSS via use of the conversion API for a distributedFile. |
| CVE-2021-23929 | MEDIUM | 6.1 | 1.1% | Jan 12, 2021 | OX App Suite through 7.10.4 allows XSS via a crafted Content-Disposition header in an uploaded HTML document to an ajax/... |
| CVE-2021-23928 | MEDIUM | 6.1 | 1.1% | Jan 12, 2021 | OX App Suite through 7.10.3 allows XSS via the ajax/apps/manifests query string. |
| CVE-2021-23927 | MEDIUM | 6.4 | 0.8% | Jan 12, 2021 | OX App Suite through 7.10.4 allows SSRF via a URL with an @ character in an appsuite/api/oauth/proxy PUT request. |
| CVE-2021-23125 | MEDIUM | 6.1 | 0.8% | Jan 12, 2021 | An issue was discovered in Joomla! 3.1.0 through 3.9.23. The lack of escaping of image-related parameters in multiple co... |
| CVE-2021-23124 | MEDIUM | 6.1 | 81.2% | Jan 12, 2021 | An issue was discovered in Joomla! 3.9.0 through 3.9.23. The lack of escaping in mod_breadcrumbs aria-label attribute al... |
| CVE-2021-23123 | MEDIUM | 5.3 | 1.1% | Jan 12, 2021 | An issue was discovered in Joomla! 3.0.0 through 3.9.23. The lack of ACL checks in the orderPosition endpoint of com_mod... |
| CVE-2021-1725 | MEDIUM | 5.5 | 1.1% | Jan 12, 2021 | Bot Framework SDK Information Disclosure Vulnerability |
| CVE-2021-1717 | MEDIUM | 4.6 | 1.8% | Jan 12, 2021 | Microsoft SharePoint Server Spoofing Vulnerability |
| CVE-2021-1708 | MEDIUM | 5.7 | 3.4% | Jan 12, 2021 | Windows GDI+ Information Disclosure Vulnerability |
| CVE-2021-1705 | MEDIUM | 4.2 | 1.9% | Jan 12, 2021 | Microsoft Edge (HTML-based) Memory Corruption Vulnerability |
| CVE-2021-1699 | MEDIUM | 5.5 | 2.1% | Jan 12, 2021 | Windows (modem.sys) Information Disclosure Vulnerability |
| CVE-2021-1696 | MEDIUM | 5.5 | 4.4% | Jan 12, 2021 | Windows Graphics Component Information Disclosure Vulnerability |
| CVE-2021-1684 | MEDIUM | 5 | 1.6% | Jan 12, 2021 | Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For more information re... |
| CVE-2021-1683 | MEDIUM | 5 | 1.7% | Jan 12, 2021 | Microsoft is aware of the "Impersonation in the Passkey Entry Protocol" vulnerability. For more information re... |
| CVE-2021-1679 | MEDIUM | 6.5 | 3.5% | Jan 12, 2021 | Windows CryptoAPI Denial of Service Vulnerability |
| CVE-2021-1677 | MEDIUM | 5.5 | 1.1% | Jan 12, 2021 | Azure Active Directory Pod Identity Spoofing Vulnerability |
| CVE-2021-1676 | MEDIUM | 5.5 | 1.3% | Jan 12, 2021 | Windows NT Lan Manager Datagram Receiver Driver Information Disclosure Vulnerability |
| CVE-2021-1672 | MEDIUM | 5.5 | 1.3% | Jan 12, 2021 | Windows Projected File System FS Filter Driver Information Disclosure Vulnerability |
| CVE-2021-1670 | MEDIUM | 5.5 | 1.2% | Jan 12, 2021 | Windows Projected File System FS Filter Driver Information Disclosure Vulnerability |
| CVE-2021-1663 | MEDIUM | 5.5 | 1.2% | Jan 12, 2021 | Windows Projected File System FS Filter Driver Information Disclosure Vulnerability |
| CVE-2021-1656 | MEDIUM | 5.5 | 3.0% | Jan 12, 2021 | TPM Device Driver Information Disclosure Vulnerability |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now