2021 CVE Vulnerabilities

23,464 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-2333MEDIUM4.9Vulnerability in the Oracle XML DB component of Oracle Database Server. Supported versions that are affected are 12.1.0....
CVE-2021-2330MEDIUM4.3Vulnerability in the Core RDBMS component of Oracle Database Server. The supported version that is affected is 19c. Easi...
CVE-2021-2329HIGH7.2Vulnerability in the Oracle XML DB component of Oracle Database Server. Supported versions that are affected are 12.1.0....
CVE-2021-2328HIGH7.2Vulnerability in the Oracle Text component of Oracle Database Server. Supported versions that are affected are 12.1.0.2,...
CVE-2021-2326LOW2.7Vulnerability in the Database Vault component of Oracle Database Server. Supported versions that are affected are 12.2.0...
CVE-2021-2324MEDIUM4.6Vulnerability in the Oracle FLEXCUBE Universal Banking product of Oracle Financial Services Applications (component: Loa...
CVE-2021-2323MEDIUM5.9Vulnerability in the Oracle FLEXCUBE Universal Banking product of Oracle Financial Services Applications (component: Fle...
CVE-2021-32751HIGH7.5Gradle is a build tool with a focus on build automation. In versions prior to 7.2, start scripts generated by the `appli...
CVE-2021-36747MEDIUM5.4Blackboard Learn through 9.1 allows XSS by an authenticated user via the Feedback to Learner form.
CVE-2021-36746MEDIUM5.4Blackboard Learn through 9.1 allows XSS by an authenticated user via the Assignment Instructions HTML editor.
CVE-2021-36230HIGH8.8HashiCorp Terraform Enterprise releases up to v202106-1 did not properly perform authorization checks on a subset of API...
CVE-2021-33910MEDIUM5.5basic/unit-name.c in systemd prior to 246.15, 247.8, 248.5, and 249.1 has a Memory Allocation with an Excessive Size Val...
CVE-2021-33909HIGH7.8fs/seq_file.c in the Linux kernel 3.16 through 5.13.x before 5.13.4 does not properly restrict seq buffer allocations, l...
CVE-2021-32763MEDIUM6.5OpenProject is open-source, web-based project management software. In versions prior to 11.3.3, the `MessagesController`...
CVE-2021-20478LOW3.3IBM Cloud Pak System 2.3 could allow a local user in some situations to view the artifacts of another user in self servi...
CVE-2021-32767MEDIUM6.5TYPO3 is an open source PHP based web content management system. In versions 9.0.0 through 9.5.27, 10.0.0 through 10.4.1...
CVE-2021-32669MEDIUM5.4TYPO3 is an open source PHP based web content management system. Versions 9.0.0 through 9.5.28, 10.0.0 through 10.4.17, ...
CVE-2021-3246HIGH8.8A heap buffer overflow vulnerability in msadpcm_decode_block of libsndfile 1.0.30 allows attackers to execute arbitrary ...
CVE-2021-32668MEDIUM4.8TYPO3 is an open source PHP based web content management system. Versions 9.0.0 through 9.5.28, 10.0.0 through 10.4.17, ...
CVE-2021-32667MEDIUM5.4TYPO3 is an open source PHP based web content management system. Versions 9.0.0 through 9.5.28, 10.0.0 through 10.4.17, ...
CVE-2021-27517MEDIUM6.1Foxit PDF SDK For Web through 7.5.0 allows XSS. There is arbitrary JavaScript code execution in the browser if a victim ...
CVE-2021-27338MEDIUM5.4Faraday Edge before 3.7 allows XSS via the network/create/ page and its network name parameter.
CVE-2021-22235HIGH7.5Crash in DNP dissector in Wireshark 3.4.0 to 3.4.6 and 3.2.0 to 3.2.14 allows denial of service via packet injection or ...
CVE-2021-32463HIGH7.8An incorrect permission assignment denial-of-service vulnerability in Trend Micro Apex One, Apex One as a Service (SaaS)...
CVE-2021-27021HIGH8.8A flaw was discovered in Puppet DB, this flaw results in an escalation of privileges which allows the user to delete tab...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now