2021 CVE Vulnerabilities

23,461 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-22419MEDIUM5.5A component of the HarmonyOS has a Insufficient Verification of Data Authenticity vulnerability. Local attackers may exp...
CVE-2021-22418HIGH7.8A component of the HarmonyOS has a Integer Overflow or Wraparound vulnerability. Local attackers may exploit this vulner...
CVE-2021-22417MEDIUM5.5A component of the HarmonyOS has a Data Processing Errors vulnerability. Local attackers may exploit this vulnerability ...
CVE-2021-22416HIGH7.8A component of the HarmonyOS has a Data Processing Errors vulnerability. Local attackers may exploit this vulnerability ...
CVE-2021-32814HIGH8.1Skytable is a NoSQL database with automated snapshots and TLS. Versions prior to 0.5.1 are vulnerable to a a directory t...
CVE-2021-32017HIGH7.7An issue was discovered in JUMP AMS 3.6.0.04.009-2487. A JUMP SOAP endpoint permitted the listing of the content of the ...
CVE-2021-37558CRITICAL9.8A SQL injection vulnerability in a MediaWiki script in Centreon before 20.04.14, 20.10.8, and 21.04.2 allows remote unau...
CVE-2021-37557HIGH8.8A SQL injection vulnerability in image generation in Centreon before 20.04.14, 20.10.8, and 21.04.2 allows remote authen...
CVE-2021-37556HIGH8.8A SQL injection vulnerability in reporting export in Centreon before 20.04.14, 20.10.8, and 21.04.2 allows remote authen...
CVE-2021-36763HIGH7.5In CODESYS V3 web server before 3.5.17.10, files or directories are accessible to External Parties.
CVE-2021-33486HIGH7.5All versions of the CODESYS V3 Runtime Toolkit for VxWorks from version V3.5.8.0 and before version V3.5.17.10 have Impr...
CVE-2021-33485CRITICAL9.8CODESYS Control Runtime system before 3.5.17.10 has a Heap-based Buffer Overflow.
CVE-2021-31504HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Deskto...
CVE-2021-31503HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Deskto...
CVE-2021-21581MEDIUM6.1Dell EMC iDRAC9 versions prior to 5.00.00.00 contain a cross-site scripting vulnerability. A remote attacker could poten...
CVE-2021-21580MEDIUM4.3Dell EMC iDRAC8 versions prior to 2.80.80.80 & Dell EMC iDRAC9 versions prior to 5.00.00.00 contain a Content spoofing /...
CVE-2021-21579MEDIUM6.1Dell EMC iDRAC9 versions prior to 4.40.40.00 contain an open redirect vulnerability. A remote unauthenticated attacker m...
CVE-2021-21578MEDIUM6.1Dell EMC iDRAC9 versions prior to 4.40.40.00 contain an open redirect vulnerability. A remote unauthenticated attacker m...
CVE-2021-21577MEDIUM6.1Dell EMC iDRAC9 versions prior to 4.40.40.00 contain a DOM-based cross-site scripting vulnerability. A remote attacker c...
CVE-2021-21576MEDIUM6.1Dell EMC iDRAC9 versions prior to 4.40.40.00 contain a DOM-based cross-site scripting vulnerability. A remote attacker c...
CVE-2021-36157MEDIUM5.3An issue was discovered in Grafana Cortex through 1.9.0. The header value X-Scope-OrgID is used to construct file paths ...
CVE-2021-36156MEDIUM5.3An issue was discovered in Grafana Loki through 2.2.1. The header value X-Scope-OrgID is used to construct file paths fo...
CVE-2021-32772HIGH8.8Poddycast is a podcast app made with Electron. Prior to version 0.8.1, an attacker can create a podcast or episode with ...
CVE-2021-31630HIGH8.8Command Injection in Open PLC Webserver v3 allows remote attackers to execute arbitrary code via the "Hardware Layer Cod...
CVE-2021-27954HIGH8.2A heap-based buffer overflow vulnerability exists on the ecobee3 lite 4.5.81.200 device in the HKProcessConfig function ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now