2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22913 | MEDIUM | 6.5 | 1.4% | Jun 11, 2021 | Nextcloud Deck before 1.2.7, 1.4.1 suffers from an information disclosure vulnerability when searches for sharees utiliz... |
| CVE-2021-22912 | MEDIUM | 6.5 | 1.4% | Jun 11, 2021 | Nextcloud iOS before 3.4.2 suffers from an information disclosure vulnerability when searches for sharees utilize the lo... |
| CVE-2021-22906 | MEDIUM | 6.5 | 0.7% | Jun 11, 2021 | Nextcloud End-to-End Encryption before 1.5.3, 1.6.3 and 1.7.1 suffers from a denial of service vulnerability due to perm... |
| CVE-2021-22905 | MEDIUM | 6.5 | 1.4% | Jun 11, 2021 | Nextcloud Android App (com.nextcloud.client) before v3.16.0 is vulnerable to information disclosure due to searches for ... |
| CVE-2021-22904 | HIGH | 7.5 | 4.8% | Jun 11, 2021 | The actionpack ruby gem before 6.1.3.2, 6.0.3.7, 5.2.4.6, 5.2.6 suffers from a possible denial of service vulnerability ... |
| CVE-2021-22903 | MEDIUM | 6.1 | 1.2% | Jun 11, 2021 | The actionpack ruby gem before 6.1.3.2 suffers from a possible open redirect vulnerability. Specially crafted Host heade... |
| CVE-2021-22902 | HIGH | 7.5 | 2.8% | Jun 11, 2021 | The actionpack ruby gem (a framework for handling and responding to web requests in Rails) before 6.0.3.7, 6.1.3.2 suffe... |
| CVE-2021-22901 | HIGH | 8.1 | 60.1% | Jun 11, 2021 | curl 7.75.0 through 7.76.1 suffers from a use-after-free vulnerability resulting in already freed memory being used when... |
| CVE-2021-22898 | LOW | 3.1 | 4.4% | Jun 11, 2021 | curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELN... |
| CVE-2021-22897 | MEDIUM | 5.3 | 3.0% | Jun 11, 2021 | curl 7.61.0 through 7.76.1 suffers from exposure of data element to wrong session due to a mistake in the code for CURLO... |
| CVE-2021-22896 | MEDIUM | 4.3 | 1.0% | Jun 11, 2021 | Nextcloud Mail before 1.9.5 suffers from improper access control due to a missing permission check allowing other authen... |
| CVE-2021-22895 | MEDIUM | 5.9 | 1.0% | Jun 11, 2021 | Nextcloud Desktop Client before 3.3.1 is vulnerable to improper certificate validation due to lack of SSL certificate ve... |
| CVE-2021-22769 | MEDIUM | 4.3 | 0.6% | Jun 11, 2021 | A CWE-552: Files or Directories Accessible to External Parties vulnerability exists in Easergy T300 with firmware V2.7.1... |
| CVE-2021-22768 | CRITICAL | 9.8 | 2.7% | Jun 11, 2021 | A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic ... |
| CVE-2021-22767 | CRITICAL | 9.8 | 2.7% | Jun 11, 2021 | A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic ... |
| CVE-2021-22766 | HIGH | 7.5 | 1.3% | Jun 11, 2021 | A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic ... |
| CVE-2021-22765 | CRITICAL | 9.8 | 2.7% | Jun 11, 2021 | A CWE-20: Improper Input Validation vulnerability exists in PowerLogic EGX100 (Versions 3.0.0 and newer) and PowerLogic ... |
| CVE-2021-22764 | MEDIUM | 5.3 | 1.9% | Jun 11, 2021 | A CWE-287: Improper Authentication vulnerability exists in PowerLogic PM55xx, PowerLogic PM8ECC, PowerLogic EGX100 and P... |
| CVE-2021-22763 | CRITICAL | 9.8 | 1.8% | Jun 11, 2021 | A CWE-640: Weak Password Recovery Mechanism for Forgotten Password vulnerability exists in PowerLogic PM55xx, PowerLogic... |
| CVE-2021-22762 | HIGH | 7.8 | 1.4% | Jun 11, 2021 | A CWE-22: Improper Limitation of a Pathname to a Restricted Directory vulnerability exists inIGSS Definition (Def.exe) V... |
| CVE-2021-22761 | HIGH | 7.8 | 0.7% | Jun 11, 2021 | A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists inIGSS Definitio... |
| CVE-2021-22760 | HIGH | 7.8 | 1.2% | Jun 11, 2021 | A CWE-763: Release of invalid pointer or reference vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and pr... |
| CVE-2021-22759 | HIGH | 7.8 | 1.2% | Jun 11, 2021 | A CWE-416: Use after free vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in ... |
| CVE-2021-22758 | HIGH | 7.8 | 1.2% | Jun 11, 2021 | A CWE-824: Access of uninitialized pointer vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that... |
| CVE-2021-22757 | HIGH | 7.8 | 1.3% | Jun 11, 2021 | A CWE-125: Out-of-bounds read vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now