2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-29823 | MEDIUM | 6.5 | 0.3% | Sep 1, 2022 | IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacke... |
| CVE-2021-20468 | MEDIUM | 6.5 | 0.3% | Sep 1, 2022 | IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacke... |
| CVE-2021-29864 | MEDIUM | 6.1 | 0.4% | Aug 30, 2022 | IBM Security Identity Manager 6.0 and 6.0.2 could allow a remote attacker to conduct phishing attacks, using an open red... |
| CVE-2021-46837 | MEDIUM | 6.5 | 1.8% | Aug 30, 2022 | res_pjsip_t38 in Sangoma Asterisk 16.x before 16.16.2, 17.x before 17.9.3, and 18.x before 18.2.2, and Certified Asteris... |
| CVE-2021-38934 | MEDIUM | 5.4 | 0.4% | Aug 29, 2022 | IBM Engineering Test Management 7.0, 7.0.1, and 7.0.2 is vulnerable to cross-site scripting. This vulnerability allows u... |
| CVE-2021-40326 | MEDIUM | 5.5 | 0.2% | Aug 29, 2022 | Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, mishandle hidden and incremental ... |
| CVE-2021-4216 | MEDIUM | 5.5 | 0.2% | Aug 26, 2022 | A Floating point exception (division-by-zero) flaw was found in Mupdf for zero width pages in muraster.c. It is fixed in... |
| CVE-2021-3856 | MEDIUM | 4.3 | 0.9% | Aug 26, 2022 | ClassLoaderTheme and ClasspathThemeResourceProviderFactory allows reading any file available as a resource to the classl... |
| CVE-2021-3754 | MEDIUM | 5.3 | 1.8% | Aug 26, 2022 | A flaw was found in keycloak where an attacker is able to register himself with the username same as the email ID of any... |
| CVE-2021-3735 | MEDIUM | 4.4 | 0.2% | Aug 26, 2022 | A deadlock issue was found in the AHCI controller device of QEMU. It occurs on a software reset (ahci_reset_port) while ... |
| CVE-2021-3688 | MEDIUM | 4.8 | 0.5% | Aug 26, 2022 | A flaw was found in Red Hat JBoss Core Services HTTP Server in all versions, where it does not properly normalize the pa... |
| CVE-2021-3669 | MEDIUM | 5.5 | 0.3% | Aug 26, 2022 | A flaw was found in the Linux kernel. Measuring usage of the shared memory does not scale with large shared memory segme... |
| CVE-2021-3585 | MEDIUM | 5.5 | 0.2% | Aug 26, 2022 | A flaw was found in openstack-tripleo-heat-templates. Plain passwords from RHSM exist in the logs during OSP13 deploymen... |
| CVE-2021-3427 | MEDIUM | 6.1 | 0.7% | Aug 26, 2022 | The Deluge Web-UI is vulnerable to XSS through a crafted torrent file. The the data from torrent files is not properly s... |
| CVE-2021-35939 | MEDIUM | 6.7 | 0.5% | Aug 26, 2022 | It was found that the fix for CVE-2017-7500 and CVE-2017-7501 was incomplete: the check was only implemented for the par... |
| CVE-2021-39394 | MEDIUM | 6.5 | 0.3% | Aug 26, 2022 | mm-wiki v0.2.1 was discovered to contain a Cross-Site Request Forgery (CSRF) which allows attackers to arbitrarily add u... |
| CVE-2021-39393 | MEDIUM | 6.1 | 0.5% | Aug 26, 2022 | mm-wiki v0.2.1 was discovered to contain a cross-site scripting (XSS) vulnerability via the markdown editor. |
| CVE-2021-32570 | MEDIUM | 4.9 | 0.7% | Aug 26, 2022 | In Ericsson Network Manager (ENM) releases before 21.2, users belonging to the same AMOS authorization group can retriev... |
| CVE-2021-3979 | MEDIUM | 6.5 | 0.4% | Aug 25, 2022 | A key length flaw was found in Red Hat Ceph Storage. An attacker can exploit the fact that the key length is incorrectly... |
| CVE-2021-3914 | MEDIUM | 6.1 | 0.4% | Aug 25, 2022 | It was found that the smallrye health metrics UI component did not properly sanitize some user inputs. An attacker could... |
| CVE-2021-35938 | MEDIUM | 6.7 | 0.5% | Aug 25, 2022 | A symbolic link issue was found in rpm. It occurs when rpm sets the desired permissions and credentials after installing... |
| CVE-2021-35937 | MEDIUM | 6.4 | 0.3% | Aug 25, 2022 | A race condition vulnerability was found in rpm. A local unprivileged user could use this flaw to bypass the checks that... |
| CVE-2021-33844 | MEDIUM | 5.5 | 0.5% | Aug 25, 2022 | A floating point exception (divide-by-zero) issue was discovered in SoX in functon startread() of wav.c file. An attacke... |
| CVE-2021-23210 | MEDIUM | 5.5 | 0.4% | Aug 25, 2022 | A floating point exception (divide-by-zero) issue was discovered in SoX in functon read_samples() of voc.c file. An atta... |
| CVE-2021-23172 | MEDIUM | 5.5 | 0.4% | Aug 25, 2022 | A vulnerability was found in SoX, where a heap-buffer-overflow occurs in function startread() in hcom.c file. The vulner... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now