2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-20769 | MEDIUM | 5.4 | 0.6% | Aug 18, 2021 | Cross-site scripting vulnerability in Bulletin of Cybozu Garoon 4.6.0 to 5.0.2 allows a remote authenticated attacker to... |
| CVE-2021-20768 | MEDIUM | 4.3 | 0.8% | Aug 18, 2021 | Operational restrictions bypass vulnerability in Scheduler and MultiReport of Cybozu Garoon 4.0.0 to 5.0.2 allows a remo... |
| CVE-2021-20767 | MEDIUM | 5.4 | 0.6% | Aug 18, 2021 | Cross-site scripting vulnerability in Full Text Search of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated att... |
| CVE-2021-20766 | MEDIUM | 6.1 | 0.8% | Aug 18, 2021 | Cross-site scripting vulnerability in Message of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker to inject an arbi... |
| CVE-2021-20765 | MEDIUM | 6.1 | 0.8% | Aug 18, 2021 | Cross-site scripting vulnerability in Bulletin of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker to inject an arb... |
| CVE-2021-20764 | MEDIUM | 5.3 | 1.0% | Aug 18, 2021 | Improper input validation vulnerability in Attaching Files of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker to a... |
| CVE-2021-20763 | MEDIUM | 4.3 | 0.9% | Aug 18, 2021 | Operational restrictions bypass vulnerability in Portal of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated at... |
| CVE-2021-20762 | MEDIUM | 4.3 | 0.8% | Aug 18, 2021 | Improper input validation vulnerability in E-mail of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated to alter... |
| CVE-2021-20761 | LOW | 2.7 | 0.8% | Aug 18, 2021 | Improper input validation vulnerability in E-mail of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote attacker with an admin... |
| CVE-2021-20760 | MEDIUM | 4.3 | 0.8% | Aug 18, 2021 | Improper input validation vulnerability in User Profile of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated at... |
| CVE-2021-20759 | MEDIUM | 4.3 | 0.8% | Aug 18, 2021 | Operational restrictions bypass vulnerability in Bulletin of Cybozu Garoon 4.6.0 to 5.0.2 allows a remote authenticated ... |
| CVE-2021-20758 | HIGH | 8 | 0.5% | Aug 18, 2021 | Cross-site request forgery (CSRF) vulnerability in Message of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated... |
| CVE-2021-20757 | MEDIUM | 4.3 | 0.8% | Aug 18, 2021 | Operational restrictions bypass vulnerability in E-mail of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated at... |
| CVE-2021-20756 | MEDIUM | 4.3 | 0.9% | Aug 18, 2021 | Viewing restrictions bypass vulnerability in Address of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attac... |
| CVE-2021-20755 | MEDIUM | 4.3 | 0.9% | Aug 18, 2021 | Viewing restrictions bypass vulnerability in Portal of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attack... |
| CVE-2021-20754 | MEDIUM | 4.3 | 0.8% | Aug 18, 2021 | Improper input validation vulnerability in Workflow of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attack... |
| CVE-2021-20753 | MEDIUM | 5.4 | 0.6% | Aug 18, 2021 | Cross-site scripting vulnerability in Scheduler of Cybozu Garoon 4.0.0 to 5.0.2 allows a remote authenticated attacker t... |
| CVE-2021-39268 | MEDIUM | 6.1 | 1.4% | Aug 18, 2021 | Persistent cross-site scripting (XSS) in the web interface of SuiteCRM before 7.11.19 allows a remote attacker to introd... |
| CVE-2021-39267 | MEDIUM | 6.1 | 2.0% | Aug 18, 2021 | Persistent cross-site scripting (XSS) in the web interface of SuiteCRM before 7.11.19 allows a remote attacker to introd... |
| CVE-2021-39250 | MEDIUM | 5.4 | 0.8% | Aug 17, 2021 | Invision Community (aka IPS Community Suite or IP-Board) before 4.6.5.1 allows stored XSS, with resultant code execution... |
| CVE-2021-39249 | MEDIUM | 6.1 | 0.8% | Aug 17, 2021 | Invision Community (aka IPS Community Suite or IP-Board) before 4.6.5.1 allows reflected XSS because the filenames of up... |
| CVE-2021-39131 | HIGH | 7.5 | 1.9% | Aug 17, 2021 | ced detects character encoding using Google’s compact_enc_det library. In ced v0.1.0, passing data types other than `Buf... |
| CVE-2021-0284 | HIGH | 7.5 | 1.0% | Aug 17, 2021 | A buffer overflow vulnerability in the TCP/IP stack of Juniper Networks Junos OS allows an attacker to send specific seq... |
| CVE-2021-28372 | HIGH | 8.3 | 2.5% | Aug 17, 2021 | ThroughTek's Kalay Platform 2.0 network allows an attacker to impersonate an arbitrary ThroughTek (TUTK) device given a ... |
| CVE-2021-39248 | MEDIUM | 6.1 | 0.6% | Aug 17, 2021 | Open edX through Lilac.1 allows XSS in common/static/common/js/discussion/utils.js via crafted LaTeX content within a di... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now