2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-42202MEDIUM5.5An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function swf_DeleteFilter...
CVE-2021-42200MEDIUM5.5An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function main() located i...
CVE-2021-42198MEDIUM5.5An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function swf_GetBits() lo...
CVE-2021-42196MEDIUM5.5An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function traits_parse() l...
CVE-2021-36890MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Social Share Buttons by Supsystic plugin <= 2.2.2 at WordPress.
CVE-2021-36866MEDIUM4.8Authenticated (author or higher role) Stored Cross-Site Scripting (XSS) vulnerability in Fatcat Apps Easy Pricing Tables...
CVE-2021-33504MEDIUM4.9Couchbase Server before 7.1.0 has Incorrect Access Control.
CVE-2021-27914MEDIUM4.8A cross-site scripting (XSS) vulnerability in the installer component of Mautic before 4.3.0 allows admins to inject exe...
CVE-2021-27778MEDIUM4.8HCL Traveler is vulnerable to a cross-site scripting (XSS) caused by improper validation of the Name parameter for Appro...
CVE-2021-27781MEDIUM4.8The Master operator may be able to embed script tag in HTML with alert pop-up display cookie.
CVE-2021-27780MEDIUM5.3The software may be vulnerable to both Un-Auth XML interaction and unauthenticated device enrollment.
CVE-2021-28509MEDIUM6.1This advisory documents the impact of an internally found vulnerability in Arista EOS state streaming telemetry agent Te...
CVE-2021-28508MEDIUM6.1This advisory documents the impact of an internally found vulnerability in Arista EOS state streaming telemetry agent Te...
CVE-2021-4232MEDIUM6.1A vulnerability classified as problematic has been found in Zoo Management System 1.0. Affected is an unknown function o...
CVE-2021-4231MEDIUM5.4A vulnerability was found in Angular up to 11.0.4/11.1.0-next.2. It has been classified as problematic. Affected is the ...
CVE-2021-42692MEDIUM6.5There is a stack-overflow vulnerability in tinytoml v0.4 that can cause a crash or DoS.
CVE-2021-27783MEDIUM6.5User generated PPKG file for Bulk Enroll may have unencrypted sensitive information exposed.
CVE-2021-35487MEDIUM6.5Nokia Broadcast Message Center through 11.1.0 allows an authenticated user to perform a Boolean Blind SQL Injection atta...
CVE-2021-32989MEDIUM6.1When a non-existent resource is requested, the LCDS LAquis SCADA application (version 4.3.1.1011 and prior) returns erro...
CVE-2021-44974MEDIUM5.5radareorg radare2 version 5.5.2 is vulnerable to NULL Pointer Dereference via libr/bin/p/bin_symbols.c binary symbol par...
CVE-2021-3629MEDIUM5.9A flaw was found in Undertow. A potential security issue in flow control handling by the browser over http/2 may potenti...
CVE-2021-3597MEDIUM5.9A flaw was found in undertow. The HTTP2SourceChannel fails to write the final frame under some circumstances, resulting ...
CVE-2021-32964MEDIUM5.3The AGG Software Web Server version 4.0.40.1014 and prior is vulnerable to a path traversal attack, which may allow an a...
CVE-2021-32962MEDIUM6.1The AGG Software Web Server version 4.0.40.1014 and prior is vulnerable to cross-site scripting, which may allow an atta...
CVE-2021-44975MEDIUM5.5radareorg radare2 5.5.2 is vulnerable to Buffer Overflow via /libr/core/anal_objc.c mach-o parser.

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now