2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-32245MEDIUM5.4In PageKit v1.0.18, a user can upload SVG files in the file upload portion of the CMS. These SVG files can contain malic...
CVE-2021-32244MEDIUM5.4Cross Site Scripting (XSS) in Moodle 3.10.3 allows remote attackers to execute arbitrary web script or HTML via the "Des...
CVE-2021-32243HIGH8.8FOGProject v1.5.9 is affected by a File Upload RCE (Authenticated).
CVE-2021-34204MEDIUM6.8D-Link DIR-2640-US 1.01B04 is affected by Insufficiently Protected Credentials. D-Link AC2600(DIR-2640) stores the devic...
CVE-2021-34203HIGH8.1D-Link DIR-2640-US 1.01B04 is vulnerable to Incorrect Access Control. Router ac2600 (dir-2640-us), when setting PPPoE, w...
CVE-2021-34201HIGH7.1D-Link DIR-2640-US 1.01B04 is vulnerable to Buffer Overflow. There are multiple out-of-bounds vulnerabilities in some pr...
CVE-2021-34202HIGH7.8There are multiple out-of-bounds vulnerabilities in some processes of D-Link AC2600(DIR-2640) 1.01B04. Ordinary permissi...
CVE-2021-32659MEDIUM4.9Matrix-appservice-bridge is the bridging service for the Matrix communication program's application services. In version...
CVE-2021-34813CRITICAL9.8Matrix libolm before 3.2.3 allows a malicious Matrix homeserver to crash a client (while it is attempting to retrieve an...
CVE-2021-34551HIGH8.1PHPMailer before 6.5.0 on Windows allows remote code execution if lang_path is untrusted data and has a UNC pathname.
CVE-2021-1571MEDIUM6.1Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could a...
CVE-2021-1570MEDIUM6.5Multiple vulnerabilities in Cisco Jabber for Windows, Cisco Jabber for Mac, and Cisco Jabber for mobile platforms could ...
CVE-2021-1569MEDIUM6.5Multiple vulnerabilities in Cisco Jabber for Windows, Cisco Jabber for Mac, and Cisco Jabber for mobile platforms could ...
CVE-2021-1568MEDIUM5.5A vulnerability in Cisco AnyConnect Secure Mobility Client for Windows could allow an authenticated, local attacker to c...
CVE-2021-1567MEDIUM6.7A vulnerability in the DLL loading mechanism of Cisco AnyConnect Secure Mobility Client for Windows could allow an authe...
CVE-2021-1566HIGH7.4A vulnerability in the Cisco Advanced Malware Protection (AMP) for Endpoints integration of Cisco AsyncOS for Cisco Emai...
CVE-2021-1543MEDIUM6.1Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could a...
CVE-2021-1542HIGH8.1Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could a...
CVE-2021-1541HIGH7.2Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could a...
CVE-2021-1524MEDIUM6.5A vulnerability in the API of Cisco Meeting Server could allow an authenticated, remote attacker to cause a denial of se...
CVE-2021-1395MEDIUM6.1A vulnerability in the web-based management interface of Cisco Unified Intelligence Center could allow an unauthenticate...
CVE-2021-29702HIGH7.5Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1.4 and 11.5.5 is vulnerable to a denial of service as ...
CVE-2021-20567MEDIUM4.4IBM Resilient SOAR V38.0 could allow a local privileged attacker to obtain sensitive information due to improper or none...
CVE-2021-20566HIGH7.5IBM Resilient SOAR V38.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt high...
CVE-2021-20488MEDIUM6.5IBM Security Identity Manager 6.0.2 could allow an authenticated malicious user to change the passwords of other users i...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now