2021 CVE Vulnerabilities

23,452 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-20124HIGH7.5A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download functionality of the W...
CVE-2021-20123HIGH7.5A local file inclusion vulnerability exists in Draytek VigorConnect 1.6.0-B3 in the file download functionality of the D...
CVE-2021-39304HIGH7.5Proofpoint Enterprise Protection before 8.12.0-2108090000 allows security control bypass.
CVE-2021-34814HIGH7.5Proofpoint Spam Engine before 8.12.0-2106240000 has a Security Control Bypass.
CVE-2021-41137HIGH8.8Minio is a Kubernetes native application for cloud storage. All users on release `RELEASE.2021-10-10T16-53-30Z` are affe...
CVE-2021-33609MEDIUM4.3Missing check in DataCommunicator class in com.vaadin:vaadin-server versions 8.0.0 through 8.14.0 (Vaadin 8.0.0 through ...
CVE-2021-20834MEDIUM6.1Improper authorization in handler for custom URL scheme vulnerability in Nike App for Android versions prior to 2.177 an...
CVE-2021-20833HIGH7.4The SNKRDUNK Market Place App for iOS versions prior to 2.2.0 does not verify server certificate properly, which allows ...
CVE-2021-20832MEDIUM5.3InBody App for iOS versions prior to 2.3.30 and InBody App for Android versions prior to 2.2.90(510) contain a vulnerabi...
CVE-2021-20831HIGH8.8Cross-site request forgery (CSRF) vulnerability in OG Tags versions prior to 2.0.2 allows a remote attacker to hijack th...
CVE-2021-20807MEDIUM6.1Cross-site scripting vulnerability in the management screen of Cybozu Remote Service 3.0.0 to 3.1.9 allows a remote atta...
CVE-2021-20806MEDIUM6.1Open redirect vulnerability in Cybozu Remote Service 3.0.0 to 3.1.9 allows remote attackers to redirect users to arbitra...
CVE-2021-20805MEDIUM5.4Cross-site scripting vulnerability in the management screen of Cybozu Remote Service 3.1.7 to 3.1.9 allows a remote auth...
CVE-2021-20804MEDIUM6.5Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote authenticated attacker to cause a denial of service (DoS) condition...
CVE-2021-20803MEDIUM5.4Operation restriction bypass in the management screen of Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote authentica...
CVE-2021-20802MEDIUM5.3HTTP header injection vulnerability in Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote attacker to alter the inform...
CVE-2021-20801MEDIUM6.5Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote authenticated attacker to conduct XML External Entity (XXE) attacks...
CVE-2021-20800MEDIUM5.4Cross-site scripting vulnerability in the management screen of Cybozu Remote Service 3.1.8 allows a remote authenticated...
CVE-2021-20799MEDIUM5.4Cross-site scripting vulnerability in the management screen of Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote auth...
CVE-2021-20798MEDIUM5.4Cross-site scripting vulnerability in the management screen of Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote auth...
CVE-2021-20797MEDIUM5.4Cross-site script inclusion vulnerability in the management screen of Cybozu Remote Service 3.1.8 allows a remote authen...
CVE-2021-20796MEDIUM6.5Directory traversal vulnerability in the management screen of Cybozu Remote Service 3.1.8 allows a remote authenticated ...
CVE-2021-20795HIGH8.8Cross-site request forgery (CSRF) vulnerability in the management screen of Cybozu Remote Service 3.1.8 to 3.1.9 allows ...
CVE-2021-41363MEDIUM4.2Intune Management Extension Security Feature Bypass Vulnerability
CVE-2021-41361MEDIUM5.4Active Directory Federation Server Spoofing Vulnerability

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now