2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-40797 | MEDIUM | 6.5 | 1.7% | Sep 8, 2021 | An issue was discovered in the routes middleware in OpenStack Neutron before 16.4.1, 17.x before 17.2.1, and 18.x before... |
| CVE-2021-40537 | LOW | 2.7 | 0.7% | Sep 8, 2021 | Server Side Request Forgery (SSRF) vulnerability exists in owncloud/user_ldap < 0.15.4 in the settings of the user_ldap ... |
| CVE-2021-38388 | HIGH | 8.8 | 0.9% | Sep 8, 2021 | Central Dogma allows privilege escalation with mirroring to the internal dogma repository that has a file managing the a... |
| CVE-2021-36216 | HIGH | 7.8 | 0.4% | Sep 8, 2021 | LINE for Windows 6.2.1.2289 and before allows arbitrary code execution via malicious DLL injection. |
| CVE-2021-36215 | MEDIUM | 5.3 | 0.8% | Sep 8, 2021 | LINE client for iOS 10.21.3 and before allows address bar spoofing due to inappropriate address handling. |
| CVE-2021-32805 | MEDIUM | 6.1 | 0.7% | Sep 8, 2021 | Flask-AppBuilder is an application development framework, built on top of Flask. In affected versions if using Flask-App... |
| CVE-2021-31274 | MEDIUM | 5.4 | 0.8% | Sep 8, 2021 | In LibreNMS < 21.3.0, a stored XSS vulnerability was identified in the API Access page due to insufficient sanitization ... |
| CVE-2021-40346 | HIGH | 7.5 | 56.1% | Sep 8, 2021 | An integer overflow exists in HAProxy 2.0 through 2.5 in htx_add_header that can be exploited to perform an HTTP request... |
| CVE-2021-3055 | MEDIUM | 6.5 | 1.0% | Sep 8, 2021 | An improper restriction of XML external entity (XXE) reference vulnerability in the Palo Alto Networks PAN-OS web interf... |
| CVE-2021-3054 | MEDIUM | 6.6 | 0.9% | Sep 8, 2021 | A time-of-check to time-of-use (TOCTOU) race condition vulnerability in the Palo Alto Networks PAN-OS web interface enab... |
| CVE-2021-3053 | HIGH | 7.5 | 1.0% | Sep 8, 2021 | An improper handling of exceptional conditions vulnerability exists in the Palo Alto Networks PAN-OS dataplane that enab... |
| CVE-2021-3052 | MEDIUM | 5.4 | 0.6% | Sep 8, 2021 | A reflected cross-site scripting (XSS) vulnerability in the Palo Alto Network PAN-OS web interface enables an authentica... |
| CVE-2021-3051 | HIGH | 8.1 | 0.6% | Sep 8, 2021 | An improper verification of cryptographic signature vulnerability exists in Cortex XSOAR SAML authentication that enable... |
| CVE-2021-3049 | MEDIUM | 4.3 | 0.5% | Sep 8, 2021 | An improper authorization vulnerability in the Palo Alto Networks Cortex XSOAR server enables an authenticated network-b... |
| CVE-2021-33982 | HIGH | 7.5 | 1.1% | Sep 8, 2021 | An insufficient session expiration vulnerability exists in the "Fish | Hunt FL" iOS app version 3.8.0 and earlier, which... |
| CVE-2021-33981 | MEDIUM | 4.3 | 0.8% | Sep 8, 2021 | An insecure, direct object vulnerability in hunting/fishing license retrieval function of the "Fish | Hunt FL" iOS app v... |
| CVE-2021-28732 | — | — | — | Sep 8, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-28372. Reason: This candidate is a duplicate of ... |
| CVE-2021-28571 | HIGH | 8.8 | 2.9% | Sep 8, 2021 | Adobe After Effects version 18.1 (and earlier) is affected by a potential Command injection vulnerability when chained w... |
| CVE-2021-28569 | MEDIUM | 4.3 | 2.3% | Sep 8, 2021 | Adobe Media Encoder version 15.1 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a special... |
| CVE-2021-28568 | MEDIUM | 6.5 | 0.6% | Sep 8, 2021 | Adobe Genuine Services version 7.1 (and earlier) is affected by an Insecure file permission vulnerability during install... |
| CVE-2021-28567 | MEDIUM | 6.5 | 0.8% | Sep 8, 2021 | Magento versions 2.4.2 (and earlier), 2.4.1-p1 (and earlier) and 2.3.6-p1 (and earlier) are vulnerable to an Improper Au... |
| CVE-2021-28566 | LOW | 2.7 | 1.4% | Sep 8, 2021 | Magento versions 2.4.2 (and earlier), 2.4.1-p1 (and earlier) and 2.3.6-p1 (and earlier) are vulnerable to an Information... |
| CVE-2021-21105 | HIGH | 8.8 | 6.0% | Sep 8, 2021 | Adobe Illustrator version 25.2 (and earlier) is affected by a memory corruption vulnerability when parsing a specially c... |
| CVE-2021-21104 | HIGH | 8.8 | 5.0% | Sep 8, 2021 | Adobe Illustrator version 25.2 (and earlier) is affected by a memory corruption vulnerability when parsing a specially c... |
| CVE-2021-21103 | HIGH | 8.8 | 3.4% | Sep 8, 2021 | Adobe Illustrator version 25.2 (and earlier) is affected by a memory corruption vulnerability when parsing a specially c... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now