2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-4263 | MEDIUM | 6.1 | 0.5% | Dec 21, 2022 | A vulnerability, which was classified as problematic, has been found in leanote 2.6.1. This issue affects the function d... |
| CVE-2021-4260 | MEDIUM | 6.1 | 0.4% | Dec 19, 2022 | A vulnerability was found in oils-js. It has been declared as critical. This vulnerability affects unknown code of the f... |
| CVE-2021-4257 | MEDIUM | 6.1 | 0.4% | Dec 18, 2022 | A vulnerability was found in ctrlo lenio. It has been declared as problematic. This vulnerability affects unknown code o... |
| CVE-2021-4256 | MEDIUM | 6.1 | 0.4% | Dec 18, 2022 | A vulnerability was found in ctrlo lenio. It has been classified as problematic. This affects an unknown part of the fil... |
| CVE-2021-4255 | MEDIUM | 6.1 | 0.4% | Dec 18, 2022 | A vulnerability was found in ctrlo lenio and classified as problematic. Affected by this issue is some unknown functiona... |
| CVE-2021-4254 | MEDIUM | 6.1 | 0.4% | Dec 18, 2022 | A vulnerability has been found in ctrlo lenio and classified as problematic. Affected by this vulnerability is an unknow... |
| CVE-2021-4253 | MEDIUM | 6.1 | 0.4% | Dec 18, 2022 | A vulnerability, which was classified as problematic, was found in ctrlo lenio. Affected is an unknown function in the l... |
| CVE-2021-4252 | MEDIUM | 6.1 | 0.5% | Dec 18, 2022 | A vulnerability, which was classified as problematic, has been found in WP-Ban. This issue affects the function toggle_c... |
| CVE-2021-4251 | MEDIUM | 6.1 | 0.4% | Dec 18, 2022 | A vulnerability classified as problematic was found in as. This vulnerability affects the function getFullURL of the fil... |
| CVE-2021-28655 | MEDIUM | 6.5 | 1.5% | Dec 16, 2022 | The improper Input Validation vulnerability in "”Move folder to Trash” feature of Apache Zeppelin allows an attacker to ... |
| CVE-2021-39428 | MEDIUM | 5.4 | 0.5% | Dec 15, 2022 | Cross Site Scripting (XSS) vulnerability in Users.php in eyoucms 1.5.4 allows remote attackers to run arbitrary code and... |
| CVE-2021-39427 | MEDIUM | 5.4 | 0.4% | Dec 15, 2022 | Cross site scripting vulnerability in 188Jianzhan 2.10 allows attackers to execute arbitrary code via the username param... |
| CVE-2021-36573 | MEDIUM | 5.4 | 0.5% | Dec 15, 2022 | File Upload vulnerability in Feehi CMS thru 2.1.1 allows attackers to run arbitrary code via crafted image upload. |
| CVE-2021-36572 | MEDIUM | 6.1 | 0.4% | Dec 15, 2022 | Cross Site Scripting (XSS) vulnerability in Feehi CMS thru 2.1.1 allows attackers to run arbitrary code via the user nam... |
| CVE-2021-44695 | MEDIUM | 4.9 | 0.7% | Dec 13, 2022 | Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an atta... |
| CVE-2021-44694 | MEDIUM | 5.5 | 0.6% | Dec 13, 2022 | Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an atta... |
| CVE-2021-44693 | MEDIUM | 4.9 | 0.7% | Dec 13, 2022 | Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an atta... |
| CVE-2021-0934 | MEDIUM | 5.5 | 0.1% | Dec 13, 2022 | In findAllDeAccounts of AccountsDb.java, there is a possible denial of service due to resource exhaustion. This could le... |
| CVE-2021-41943 | MEDIUM | 6.1 | 0.5% | Dec 13, 2022 | Logrhythm Web Console 7.4.9 allows for HTML tag injection through Contextualize Action -> Create a new Contextualize Act... |
| CVE-2021-4244 | MEDIUM | 6.1 | 0.5% | Dec 12, 2022 | A vulnerability classified as problematic has been found in yikes-inc-easy-mailchimp-extender Plugin up to 6.8.5. This a... |
| CVE-2021-46846 | MEDIUM | 6.1 | 0.5% | Dec 12, 2022 | Cross Site Scripting vulnerability in Hewlett Packard Enterprise Integrated Lights-Out 5. |
| CVE-2021-38997 | MEDIUM | 5.4 | 0.4% | Dec 12, 2022 | IBM API Connect V10.0.0.0 through V10.0.5.0, V10.0.1.0 through V10.0.1.7, and V2018.4.1.0 through 2018.4.1.19 is vulnera... |
| CVE-2021-34181 | MEDIUM | 5.4 | 0.4% | Dec 5, 2022 | Cross Site Scripting (XSS) vulnerability in TomExam 3.0 via p_name parameter to list.thtml. |
| CVE-2021-37533 | MEDIUM | 6.5 | 1.9% | Dec 3, 2022 | Prior to Apache Commons Net 3.9.0, Net's FTP client trusts the host from PASV response by default. A malicious server ca... |
| CVE-2021-31740 | MEDIUM | 6.1 | 0.4% | Nov 30, 2022 | SEPPMail's web frontend, user input is not embedded correctly in the web page and therefore leads to cross-site scriptin... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now