2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-43081MEDIUM6.1An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiOS version 7.0.3 and below...
CVE-2021-39700MEDIUM5.5In the policies of adbd.te, there was a logic error which caused the CTS Listening Ports Test to report invalid results....
CVE-2021-39670MEDIUM5.5In setStream of WallpaperManager.java, there is a possible way to cause a permanent DoS due to improper input validation...
CVE-2021-26390MEDIUM6.2A malicious or compromised UApp or ABL may coerce the bootloader into corrupting arbitrary memory potentially leading to...
CVE-2021-26352MEDIUM5.5Insufficient bound checks in System Management Unit (SMU) PCIe Hot Plug table may result in access/updates from/to inval...
CVE-2021-39024MEDIUM6.1IBM Guardium Data Encryption (GDE) 4.0.0.0 and 5.0.0.0 is vulnerable to cross-site scripting. This vulnerability allows ...
CVE-2021-43712MEDIUM5.4Stored XSS in Add New Employee Form in Sourcecodester Employee Daily Task Management System 1.0 Allows Remote Attacker t...
CVE-2021-27764MEDIUM6.5Cookie without HTTPONLY flag set. NUMBER cookie(s) was set without Secure or HTTPOnly flags. The images show the cookie ...
CVE-2021-27760MEDIUM5.5An issue was discovered in the Sametime chat feature in the Notes 11.0 - 11.0.1 FP4 clients. An authenticated Sametime c...
CVE-2021-27759MEDIUM6.5This vulnerability arises because the application allows the user to perform some sensitive action without verifying tha...
CVE-2021-27758MEDIUM6.5There is a security vulnerability in login form related to Cross-site Request Forgery which prevents user to login after...
CVE-2021-36912MEDIUM5.4Stored Cross-Site Scripting (XSS) vulnerability in Andrea Pernici News Sitemap for Google plugin <= 1.0.16 on WordPress,...
CVE-2021-33845MEDIUM5.3The Splunk Enterprise REST API allows enumeration of usernames via the lockout error message. The potential vulnerabilit...
CVE-2021-39027MEDIUM5IBM Guardium Data Encryption (GDE) 4.0.0 and 5.0.0 prepares a structured message for communication with another componen...
CVE-2021-44054MEDIUM6.1An open redirect vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero and QTS. If exploite...
CVE-2021-44053MEDIUM6.1A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QTS, QuTS hero and QuTScloud....
CVE-2021-38693MEDIUM5.3A path traversal vulnerability has been reported to affect QNAP device running QuTScloud, QuTS hero, QTS, QVR Pro Applia...
CVE-2021-39020MEDIUM5.3IBM Guardium Data Encryption (GDE) 4.0.0.7 and lower stores sensitive information in URL parameters. This may lead to in...
CVE-2021-45783MEDIUM4.6Bookeen Notea Firmware BK_R_1.0.5_20210608 is affected by a directory traversal vulnerability that allows an attacker to...
CVE-2021-43206MEDIUM4.3A server-generated error message containing sensitive information in Fortinet FortiOS 7.0.0 through 7.0.3, 6.4.0 through...
CVE-2021-41032MEDIUM5.4An improper access control vulnerability [CWE-284] in FortiOS versions 6.4.8 and prior and 7.0.3 and prior may allow an ...
CVE-2021-27411MEDIUM6.5Micrium OS Versions 5.10.1 and prior are vulnerable to integer wrap-around in functions Mem_DynPoolCreate, Mem_DynPoolCr...
CVE-2021-39390MEDIUM5.4Stored XSS in PartKeepr 1.4.0 Edit section in multiple api endpoints via name parameter.
CVE-2021-4138MEDIUM5.3Improved Host header checks to reject requests not sent to a well-known local hostname or IP, or the server-specified ho...
CVE-2021-42528MEDIUM5.5XMP Toolkit 2021.07 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially craft...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now