2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-33557 | MEDIUM | 6.1 | 1.8% | Jun 17, 2021 | An XSS issue was discovered in manage_custom_field_edit_page.php in MantisBT before 2.25.2. Unescaped output of the retu... |
| CVE-2021-32575 | MEDIUM | 6.5 | 0.5% | Jun 17, 2021 | HashiCorp Nomad and Nomad Enterprise up to version 1.0.4 bridge networking mode allows ARP spoofing from other bridged t... |
| CVE-2021-32681 | MEDIUM | 5.4 | 1.1% | Jun 17, 2021 | Wagtail is an open source content management system built on Django. A cross-site scripting vulnerability exists in vers... |
| CVE-2021-23396 | CRITICAL | 9.8 | 1.0% | Jun 17, 2021 | All versions of package lutils are vulnerable to Prototype Pollution via the main (merge) function. |
| CVE-2021-29706 | HIGH | 7.1 | 0.2% | Jun 17, 2021 | IBM AIX 7.1 could allow a non-privileged local user to exploit a vulnerability in the trace facility to expose sensitive... |
| CVE-2021-32078 | HIGH | 7.1 | 0.6% | Jun 17, 2021 | An Out-of-Bounds Read was discovered in arch/arm/mach-footbridge/personal-pci.c in the Linux kernel through 5.12.11 beca... |
| CVE-2021-34825 | HIGH | 7.5 | 0.6% | Jun 17, 2021 | Quassel through 0.13.1, when --require-ssl is enabled, launches without SSL or TLS support if a usable X.509 certificate... |
| CVE-2021-31818 | MEDIUM | 4.3 | 0.6% | Jun 17, 2021 | Affected versions of Octopus Server are prone to an authenticated SQL injection vulnerability in the Events REST API bec... |
| CVE-2021-32952 | HIGH | 7.8 | 2.7% | Jun 17, 2021 | An out-of-bounds write issue exists in the DGN file-reading procedure in the Drawings SDK (Version 2022.4 and prior) res... |
| CVE-2021-32950 | HIGH | 7.1 | 2.1% | Jun 17, 2021 | An out-of-bounds read issue exists within the parsing of DXF files in the Drawings SDK (All versions prior to 2022.4) re... |
| CVE-2021-32948 | HIGH | 7.8 | 2.7% | Jun 17, 2021 | An out-of-bounds write issue exists in the DWG file-reading procedure in the Drawings SDK (All versions prior to 2022.4)... |
| CVE-2021-32944 | HIGH | 7.8 | 2.7% | Jun 17, 2021 | A use-after-free issue exists in the DGN file-reading procedure in the Drawings SDK (All versions prior to 2022.4) resul... |
| CVE-2021-32940 | HIGH | 7.1 | 2.1% | Jun 17, 2021 | An out-of-bounds read issue exists in the DWG file-recovering procedure in the Drawings SDK (All versions prior to 2022.... |
| CVE-2021-32938 | HIGH | 7.1 | 1.4% | Jun 17, 2021 | Drawings SDK (All versions prior to 2022.4) are vulnerable to an out-of-bounds read due to parsing of DWG files resultin... |
| CVE-2021-32936 | HIGH | 7.8 | 2.8% | Jun 17, 2021 | An out-of-bounds write issue exists in the DXF file-recovering procedure in the Drawings SDK (All versions prior to 2022... |
| CVE-2021-3603 | HIGH | 8.1 | 2.3% | Jun 17, 2021 | PHPMailer 6.4.1 and earlier contain a vulnerability that can result in untrusted code being called (if such code is inje... |
| CVE-2021-32946 | HIGH | 7.8 | 2.8% | Jun 17, 2021 | An improper check for unusual or exceptional conditions issue exists within the parsing DGN files from Drawings SDK (Ver... |
| CVE-2021-32582 | HIGH | 7.5 | 1.1% | Jun 17, 2021 | An issue was discovered in ConnectWise Automate before 2021.5. A blind SQL injection vulnerability exists in core agent ... |
| CVE-2021-31521 | MEDIUM | 5.4 | 1.4% | Jun 17, 2021 | Trend Micro InterScan Web Security Virtual Appliance version 6.5 was found to have a reflected cross-site scripting (XSS... |
| CVE-2021-0143 | HIGH | 7.8 | 0.2% | Jun 17, 2021 | Improper permissions in the installer for the Intel(R) Brand Verification Tool before version 11.0.0.1225 may allow an a... |
| CVE-2021-21777 | CRITICAL | 10 | 1.7% | Jun 17, 2021 | An information disclosure vulnerability exists in the Ethernet/IP UDP handler functionality of EIP Stack Group OpENer 2.... |
| CVE-2021-31477 | HIGH | 7.3 | 2.6% | Jun 16, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of GE Reason RPV311 14A03... |
| CVE-2021-31476 | HIGH | 7.8 | 6.0% | Jun 16, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1.... |
| CVE-2021-32691 | CRITICAL | 9.8 | 1.5% | Jun 16, 2021 | Apollos Apps is an open source platform for launching church-related apps. In Apollos Apps versions prior to 2.20.0, new... |
| CVE-2021-32690 | HIGH | 8.6 | 1.4% | Jun 16, 2021 | Helm is a tool for managing Charts (packages of pre-configured Kubernetes resources). In versions of helm prior to 3.6.1... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now