2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22735 | HIGH | 7.2 | 1.0% | May 26, 2021 | Improper Verification of Cryptographic Signature vulnerability exists inhomeLYnk (Wiser For KNX) and spaceLYnk V2.60 and... |
| CVE-2021-22734 | HIGH | 7.2 | 1.0% | May 26, 2021 | Improper Verification of Cryptographic Signature vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 an... |
| CVE-2021-22733 | HIGH | 7.8 | 0.2% | May 26, 2021 | Improper Privilege Management vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior which could... |
| CVE-2021-22732 | HIGH | 7.8 | 0.3% | May 26, 2021 | Improper Privilege Management vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior which could... |
| CVE-2021-22731 | CRITICAL | 9.8 | 1.4% | May 26, 2021 | Weak Password Recovery Mechanism for Forgotten Password vulnerability exists on Modicon Managed Switch MCSESM* and MCSES... |
| CVE-2021-22705 | HIGH | 7.8 | 0.2% | May 26, 2021 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause denial of ... |
| CVE-2021-22699 | HIGH | 7.5 | 1.0% | May 26, 2021 | Improper Input Validation vulnerability exists in Modicon M241/M251 logic controllers firmware prior to V5.1.9.1 that co... |
| CVE-2021-33470 | CRITICAL | 9.8 | 2.3% | May 26, 2021 | COVID19 Testing Management System 1.0 is vulnerable to SQL Injection via the admin panel. |
| CVE-2021-33469 | MEDIUM | 4.8 | 0.7% | May 26, 2021 | COVID19 Testing Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via the "Admin name" parameter. |
| CVE-2021-20492 | HIGH | 8.2 | 2.1% | May 26, 2021 | IBM WebSphere Application Server 8.0, 8.5, 9.0, and Liberty Java Batch is vulnerable to an XML External Entity Injection... |
| CVE-2021-20487 | CRITICAL | 9.1 | 0.7% | May 26, 2021 | IBM Power9 Self Boot Engine(SBE) could allow a privileged user to inject malicious code and compromise the integrity of ... |
| CVE-2021-20486 | MEDIUM | 6.5 | 0.9% | May 26, 2021 | IBM Cloud Pak for Data 3.0 could allow an authenticated user to obtain sensitive information when installed with additio... |
| CVE-2021-33506 | HIGH | 7.5 | 1.2% | May 26, 2021 | jitsi-meet-prosody in Jitsi Meet before 2.0.5963-1 does not ensure that restrict_room_creation is set by default. This c... |
| CVE-2021-33194 | HIGH | 7.5 | 7.5% | May 26, 2021 | golang.org/x/net before v0.0.0-20210520170846-37e1c6afe023 allows attackers to cause a denial of service (infinite loop)... |
| CVE-2021-25945 | CRITICAL | 9.8 | 3.0% | May 26, 2021 | Prototype pollution vulnerability in 'js-extend' versions 0.0.1 through 1.0.1 allows attacker to cause a denial of servi... |
| CVE-2021-21986 | CRITICAL | 9.8 | 12.9% | May 26, 2021 | The vSphere Client (HTML5) contains a vulnerability in a vSphere authentication mechanism for the Virtual SAN Health Che... |
| CVE-2021-21985 | CRITICAL | 9.8 | 100.0% | May 26, 2021 | The vSphere Client (HTML5) contains a remote code execution vulnerability due to lack of input validation in the Virtual... |
| CVE-2021-33038 | HIGH | 7.5 | 1.8% | May 26, 2021 | An issue was discovered in management/commands/hyperkitty_import.py in HyperKitty through 1.3.4. When importing a privat... |
| CVE-2021-32457 | HIGH | 7.8 | 0.4% | May 26, 2021 | Trend Micro Home Network Security version 6.6.604 and earlier is vulnerable to an iotcl stack-based buffer overflow vuln... |
| CVE-2021-22160 | CRITICAL | 9.8 | 52.9% | May 26, 2021 | If Apache Pulsar is configured to authenticate clients using tokens based on JSON Web Tokens (JWT), the signature of the... |
| CVE-2021-20178 | MEDIUM | 5.5 | 0.3% | May 26, 2021 | A flaw was found in ansible module where credentials are disclosed in the console log by default and not protected by th... |
| CVE-2021-27676 | MEDIUM | 5.4 | 0.6% | May 26, 2021 | Centreon version 20.10.2 is affected by a cross-site scripting (XSS) vulnerability. The dep_description (Dependency Desc... |
| CVE-2021-26034 | MEDIUM | 6.5 | 0.6% | May 26, 2021 | An issue was discovered in Joomla! 3.0.0 through 3.9.26. A missing token check causes a CSRF vulnerability in data downl... |
| CVE-2021-26033 | MEDIUM | 6.5 | 0.6% | May 26, 2021 | An issue was discovered in Joomla! 3.0.0 through 3.9.26. A missing token check causes a CSRF vulnerability in the AJAX r... |
| CVE-2021-26032 | MEDIUM | 6.1 | 1.0% | May 26, 2021 | An issue was discovered in Joomla! 3.0.0 through 3.9.26. HTML was missing in the executable block list of MediaHelper::c... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now