2021 CVE Vulnerabilities
23,466 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22916 | MEDIUM | 5.9 | 1.8% | Jul 12, 2021 | In Brave Desktop between versions 1.17 and 1.26.60, when adblocking is enabled and a proxy browser extension is installe... |
| CVE-2021-22515 | MEDIUM | 6.5 | 0.7% | Jul 12, 2021 | Multi-Factor Authentication (MFA) functionality can be bypassed, allowing the use of single factor authentication in Net... |
| CVE-2021-26099 | MEDIUM | 4.9 | 0.5% | Jul 12, 2021 | Missing cryptographic steps in the Identity-Based Encryption service of FortiMail before 7.0.0 may allow an attacker who... |
| CVE-2021-29105 | MEDIUM | 5.4 | 0.6% | Jul 11, 2021 | A stored Cross Site Scripting (XSS) vulnerability in Esri ArcGIS Server Services Directory version 10.8.1 and below may ... |
| CVE-2021-29104 | MEDIUM | 6.1 | 0.8% | Jul 11, 2021 | A stored Cross Site Scripting (XXS) vulnerability in ArcGIS Server Manager version 10.8.1 and below may allow a remote u... |
| CVE-2021-29103 | MEDIUM | 6.1 | 0.7% | Jul 11, 2021 | A reflected Cross Site Scripting (XXS) vulnerability in ArcGIS Server version 10.8.1 and below may allow a remote attack... |
| CVE-2021-29102 | CRITICAL | 9.1 | 1.6% | Jul 11, 2021 | A Server-Side Request Forgery (SSRF) vulnerability in ArcGIS Server Manager version 10.8.1 and below may allow a remote,... |
| CVE-2021-29107 | MEDIUM | 6.1 | 0.9% | Jul 10, 2021 | A stored Cross Site Scripting (XXS) vulnerability in ArcGIS Server Manager version 10.8.1 and below may allow a remote u... |
| CVE-2021-29106 | MEDIUM | 6.1 | 0.7% | Jul 10, 2021 | A reflected Cross Site Scripting (XSS) vulnerability in Esri ArcGIS Server version 10.8.1 and below may allow a remote a... |
| CVE-2021-35361 | MEDIUM | 4.8 | 0.6% | Jul 9, 2021 | A reflected cross site scripting (XSS) vulnerability in dotAdmin/#/c/links of dotCMS 21.05.1 allows attackers to execute... |
| CVE-2021-35360 | MEDIUM | 4.8 | 0.6% | Jul 9, 2021 | A reflected cross site scripting (XSS) vulnerability in dotAdmin/#/c/containers of dotCMS 21.05.1 allows attackers to ex... |
| CVE-2021-35358 | MEDIUM | 4.8 | 0.5% | Jul 9, 2021 | A stored cross site scripting (XSS) vulnerability in dotAdmin/#/c/c_Images of dotCMS 21.05.1 allows authenticated attack... |
| CVE-2021-20024 | HIGH | 8.1 | 0.6% | Jul 9, 2021 | Multiple Out-of-Bound read vulnerability in SonicWall Switch when handling LLDP Protocol allows an attacker to cause a s... |
| CVE-2021-36371 | LOW | 3.7 | 0.7% | Jul 9, 2021 | Emissary-Ingress (formerly Ambassador API Gateway) through 1.13.9 allows attackers to bypass client certificate requirem... |
| CVE-2021-36367 | HIGH | 8.1 | 1.1% | Jul 9, 2021 | PuTTY through 0.75 proceeds with establishing an SSH session even if it has never sent a substantive authentication resp... |
| CVE-2021-33214 | MEDIUM | 6.1 | 0.6% | Jul 9, 2021 | In HMS Ewon eCatcher through 6.6.4, weak filesystem permissions could allow malicious users to access files that could l... |
| CVE-2021-32753 | MEDIUM | 6.5 | 0.8% | Jul 9, 2021 | EdgeX Foundry is an open source project for building a common open framework for internet-of-things edge computing. A vu... |
| CVE-2021-26106 | HIGH | 7.8 | 0.3% | Jul 9, 2021 | An improper neutralization of special elements used in an OS Command vulnerability in FortiAP's console 6.4.1 through 6.... |
| CVE-2021-26100 | HIGH | 7.5 | 0.3% | Jul 9, 2021 | A missing cryptographic step in the Identity-Based Encryption service of FortiMail before 7.0.0 may allow an unauthentic... |
| CVE-2021-24020 | CRITICAL | 9.8 | 0.6% | Jul 9, 2021 | A missing cryptographic step in the implementation of the hash digest algorithm in FortiMail 6.4.0 through 6.4.4, and 6.... |
| CVE-2021-24007 | CRITICAL | 9.8 | 1.4% | Jul 9, 2021 | Multiple improper neutralization of special elements of SQL commands vulnerabilities in FortiMail before 6.4.4 may allow... |
| CVE-2021-22129 | HIGH | 8.8 | 1.1% | Jul 9, 2021 | Multiple instances of incorrect calculation of buffer size in the Webmail and Administrative interface of FortiMail befo... |
| CVE-2021-33795 | MEDIUM | 5.5 | 0.8% | Jul 9, 2021 | Foxit Reader before 10.1.4 and PhantomPDF before 10.1.4 produce incorrect PDF document signatures because the certificat... |
| CVE-2021-33792 | HIGH | 7.8 | 2.1% | Jul 9, 2021 | Foxit Reader before 10.1.4 and PhantomPDF before 10.1.4 have an out-of-bounds write via a crafted /Size key in the Trail... |
| CVE-2021-3541 | MEDIUM | 6.5 | 1.9% | Jul 9, 2021 | A flaw was found in libxml2. Exponential entity expansion attack its possible bypassing all existing protection mechanis... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now