2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-47737 | MEDIUM | 5.4 | 0.2% | Dec 23, 2025 | CSZ CMS 1.2.7 contains an HTML injection vulnerability that allows authenticated users to insert malicious hyperlinks in... |
| CVE-2021-47733 | MEDIUM | 6.1 | 0.2% | Dec 23, 2025 | CMSimple 5.4 contains a cross-site scripting vulnerability that allows attackers to bypass input filtering by using HTML... |
| CVE-2021-47732 | MEDIUM | 6.1 | 0.2% | Dec 23, 2025 | CMSimple 5.2 contains a stored cross-site scripting vulnerability in the Filebrowser External input field that allows at... |
| CVE-2021-47722 | MEDIUM | 5.1 | 0.2% | Dec 23, 2025 | Zucchetti Axess CLOKI Access Control 1.64 contains a cross-site request forgery vulnerability that allows attackers to m... |
| CVE-2021-47716 | MEDIUM | 5.4 | 0.2% | Dec 23, 2025 | Orangescrum 1.8.0 contains multiple cross-site scripting vulnerabilities that allow authenticated attackers to inject ma... |
| CVE-2021-47715 | MEDIUM | 6.9 | 0.3% | Dec 22, 2025 | Hasura GraphQL 1.3.3 contains a server-side request forgery vulnerability that allows attackers to inject arbitrary remo... |
| CVE-2021-47714 | MEDIUM | 5.5 | 0.2% | Dec 22, 2025 | Hasura GraphQL 1.3.3 contains a local file read vulnerability that allows attackers to access system files through SQL i... |
| CVE-2021-47729 | MEDIUM | 5.4 | 0.2% | Dec 9, 2025 | Selea Targa IP OCR-ANPR Camera contains a stored cross-site scripting vulnerability in the 'files_list' parameter that a... |
| CVE-2021-47727 | MEDIUM | 5.3 | 0.4% | Dec 9, 2025 | Selea Targa IP OCR-ANPR Camera contains an unauthenticated vulnerability that allows remote attackers to access live vid... |
| CVE-2021-47724 | MEDIUM | 6.5 | 0.6% | Dec 9, 2025 | STVS ProVision 5.9.10 contains a path traversal vulnerability that allows authenticated attackers to access arbitrary fi... |
| CVE-2021-47717 | MEDIUM | 6.9 | 0.3% | Dec 9, 2025 | IntelliChoice eFORCE Software Suite 2.5.9 contains a username enumeration vulnerability that allows attackers to enumera... |
| CVE-2021-47704 | MEDIUM | 6.5 | 0.3% | Dec 9, 2025 | OpenBMCS 2.4 contains an SQL injection vulnerability that allows authenticated attackers to manipulate database queries ... |
| CVE-2021-47702 | MEDIUM | 4.3 | 0.2% | Dec 9, 2025 | OpenBMCS 2.4 contains a CSRF vulnerability that allows attackers to perform actions with administrative privileges by ex... |
| CVE-2021-4472 | MEDIUM | 6.5 | 0.4% | Nov 26, 2025 | The mistral-dashboard plugin for openstack has a local file inclusion vulnerability through the 'Create Workbook' featur... |
| CVE-2021-47698 | MEDIUM | 5.4 | 0.4% | Nov 3, 2025 | Nagios XI versions prior to 5.8.7 using embedded Nagios Core are vulnerable to cross-site scripting (XSS) via the Core U... |
| CVE-2021-47699 | MEDIUM | 5.4 | 0.4% | Oct 30, 2025 | Nagios XI versions prior to 5.8.7 are vulnerable to cross-site scripting (XSS) via the Audit Log page’s Send to NLS form... |
| CVE-2021-47697 | MEDIUM | 5.4 | 0.4% | Oct 30, 2025 | Nagios XI versions prior to 5.8.0 are vulnerable to cross-site scripting (XSS) via the Views feature URL handling. Insuf... |
| CVE-2021-47696 | MEDIUM | 5.4 | 0.4% | Oct 30, 2025 | Nagios XI versions prior to 5.8.0 are vulnerable to cross-site scripting (XSS) via BPI config ID handling. Insufficient ... |
| CVE-2021-47695 | MEDIUM | 5.4 | 0.4% | Oct 30, 2025 | Nagios XI versions prior to 5.8.0 are vulnerable to stored cross-site scripting (XSS) via the My Tools page. Insufficien... |
| CVE-2021-47694 | MEDIUM | 6.1 | 0.5% | Oct 30, 2025 | The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.1.4 / Nagios XI 5.8.6 contains a reflected cross-site... |
| CVE-2021-47691 | MEDIUM | 5.4 | 0.4% | Oct 30, 2025 | The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.1.1 / Nagios XI 5.8.2 contains multiple cross-site sc... |
| CVE-2021-47690 | MEDIUM | 5.4 | 0.4% | Oct 30, 2025 | The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.1.1 / Nagios XI 5.8.2 contains multiple cross-site sc... |
| CVE-2021-47689 | MEDIUM | 5.4 | 0.4% | Oct 30, 2025 | The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.1.0 / Nagios XI 5.8.0 contais a cross-site scripting ... |
| CVE-2021-43768 | MEDIUM | 5.3 | 0.2% | Oct 24, 2025 | In Malwarebytes For Teams v.1.0.990 and before and fixed in v.1.0.1003 and later a privilege escalation can occur via th... |
| CVE-2021-42193 | MEDIUM | 6.1 | 0.2% | Oct 3, 2025 | nopCommerce 4.40.3 is vulnerable to XSS in the Product Name at /Admin/Product/Edit/[id]. Each time a user views the prod... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now