2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-38124 | CRITICAL | 9.8 | 2.0% | Sep 28, 2021 | Remote Code Execution vulnerability in Micro Focus ArcSight Enterprise Security Manager (ESM) product, affecting version... |
| CVE-2021-34636 | HIGH | 8.8 | 0.6% | Sep 28, 2021 | The Countdown and CountUp, WooCommerce Sales Timers WordPress plugin is vulnerable to Cross-Site Request Forgery via the... |
| CVE-2021-22535 | MEDIUM | 4.9 | 0.7% | Sep 28, 2021 | Unauthorized information security disclosure vulnerability on Micro Focus Directory and Resource Administrator (DRA) pro... |
| CVE-2021-37146 | HIGH | 7.5 | 1.9% | Sep 28, 2021 | An infinite loop in Open Robotics ros_comm XMLRPC server in ROS Melodic through 1.4.11 and ROS Noetic through1.15.11 all... |
| CVE-2021-41540 | HIGH | 7.8 | 1.1% | Sep 28, 2021 | A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected application contains a... |
| CVE-2021-41539 | HIGH | 7.8 | 1.1% | Sep 28, 2021 | A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected application contains a... |
| CVE-2021-41538 | LOW | 3.3 | 0.9% | Sep 28, 2021 | A vulnerability has been identified in NX 1953 Series (All versions < V1973.3700), NX 1980 Series (All versions < V1988)... |
| CVE-2021-41537 | HIGH | 7.8 | 1.1% | Sep 28, 2021 | A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected application contains a... |
| CVE-2021-41536 | HIGH | 7.8 | 1.1% | Sep 28, 2021 | A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected application contains a... |
| CVE-2021-41535 | HIGH | 7.8 | 1.5% | Sep 28, 2021 | A vulnerability has been identified in NX 1953 Series (All versions < V1973.3700), NX 1980 Series (All versions < V1988)... |
| CVE-2021-41534 | LOW | 3.3 | 0.9% | Sep 28, 2021 | A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP... |
| CVE-2021-41533 | LOW | 3.3 | 0.9% | Sep 28, 2021 | A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP... |
| CVE-2021-36165 | MEDIUM | 5.3 | 0.6% | Sep 28, 2021 | RICON Industrial Cellular Router S9922L 16.10.3(3794) is affected by cleartext storage of sensitive information and send... |
| CVE-2021-33601 | HIGH | 8.8 | 0.9% | Sep 28, 2021 | A vulnerability was discovered in the web user interface of F-Secure Internet Gatekeeper. An authenticated user can modi... |
| CVE-2021-33600 | HIGH | 7.5 | 0.6% | Sep 28, 2021 | A denial-of-service (DoS) vulnerability was discovered in the web user interface of F-Secure Internet Gatekeeper. The vu... |
| CVE-2021-37274 | HIGH | 8.8 | 1.1% | Sep 27, 2021 | Kingdee KIS Professional Edition has a privilege escalation vulnerability. Attackers can use the vulnerability to gain c... |
| CVE-2021-37270 | CRITICAL | 9.8 | 1.4% | Sep 27, 2021 | There is an unauthorized access vulnerability in the CMS Enterprise Website Construction System 5.0. Attackers can use t... |
| CVE-2021-41098 | HIGH | 7.5 | 1.6% | Sep 27, 2021 | Nokogiri is a Rubygem providing HTML, XML, SAX, and Reader parsers with XPath and CSS selector support. In Nokogiri v1.1... |
| CVE-2021-41096 | HIGH | 7.5 | 0.6% | Sep 27, 2021 | Rucky is a USB HID Rubber Ducky Launch Pad for Android. Versions 2.2 and earlier for release builds and versions 425 and... |
| CVE-2021-41095 | MEDIUM | 6.1 | 0.6% | Sep 27, 2021 | Discourse is an open source discussion platform. There is a cross-site scripting (XSS) vulnerability in versions 2.7.7 a... |
| CVE-2021-41097 | HIGH | 7.5 | 4.9% | Sep 27, 2021 | aurelia-path is part of the Aurelia platform and contains utilities for path manipulation. There is a prototype pollutio... |
| CVE-2021-20035 | MEDIUM | 6.5 | 3.9% | Sep 27, 2021 | Improper neutralization of special elements in the SMA100 management interface allows a remote authenticated attacker to... |
| CVE-2021-20034 | CRITICAL | 9.1 | 80.7% | Sep 27, 2021 | An improper access control vulnerability in SMA100 allows a remote unauthenticated attacker to bypass the path traversal... |
| CVE-2021-41753 | HIGH | 7.5 | 4.8% | Sep 27, 2021 | A denial-of-service attack in WPA2, and WPA3-SAE authentication methods in D-Link DIR-X1560, v1.04B04, and DIR-X6060, v1... |
| CVE-2021-41558 | CRITICAL | 9.8 | 1.2% | Sep 27, 2021 | The set_user extension module before 3.0.0 for PostgreSQL allows ProcessUtility_hook bypass via set_config. |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now