2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-29209 | MEDIUM | 4.8 | 0.5% | May 25, 2021 | A remote dom xss, crlf injection vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380... |
| CVE-2021-29208 | MEDIUM | 4.8 | 0.5% | May 25, 2021 | A remote dom xss, crlf injection vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380... |
| CVE-2021-33425 | MEDIUM | 5.4 | 0.6% | May 25, 2021 | A stored cross-site scripting (XSS) vulnerability was discovered in the Web Interface for OpenWRT LuCI version 19.07 whi... |
| CVE-2021-29207 | MEDIUM | 4.8 | 0.7% | May 25, 2021 | A remote xss vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrate... |
| CVE-2021-29206 | MEDIUM | 4.8 | 0.7% | May 25, 2021 | A remote xss vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrate... |
| CVE-2021-29205 | MEDIUM | 4.8 | 0.7% | May 25, 2021 | A remote xss vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrate... |
| CVE-2021-29204 | MEDIUM | 4.8 | 0.7% | May 25, 2021 | A remote xss vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrate... |
| CVE-2021-29202 | MEDIUM | 6.7 | 0.3% | May 25, 2021 | A local buffer overflow vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HP... |
| CVE-2021-29201 | MEDIUM | 4.8 | 0.7% | May 25, 2021 | A remote xss vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrate... |
| CVE-2021-27823 | HIGH | 7.5 | 1.1% | May 25, 2021 | An information disclosure vulnerability was discovered in /index.class.php (via port 8181) on NetWave System 1.0 which a... |
| CVE-2021-27821 | MEDIUM | 6.1 | 0.8% | May 25, 2021 | The Web Interface for OpenWRT LuCI version 19.07 and lower has been discovered to have a cross-site scripting vulnerabil... |
| CVE-2021-30195 | HIGH | 7.5 | 7.2% | May 25, 2021 | CODESYS V2 runtime system before 2.4.7.55 has Improper Input Validation. |
| CVE-2021-30194 | CRITICAL | 9.1 | 1.2% | May 25, 2021 | CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Read. |
| CVE-2021-30193 | CRITICAL | 9.8 | 1.2% | May 25, 2021 | CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Write. |
| CVE-2021-30192 | CRITICAL | 9.8 | 1.2% | May 25, 2021 | CODESYS V2 Web-Server before 1.1.9.20 has an Improperly Implemented Security Check. |
| CVE-2021-30191 | HIGH | 7.5 | 1.0% | May 25, 2021 | CODESYS V2 Web-Server before 1.1.9.20 has a a Buffer Copy without Checking the Size of the Input. |
| CVE-2021-30190 | CRITICAL | 9.8 | 1.4% | May 25, 2021 | CODESYS V2 Web-Server before 1.1.9.20 has Improper Access Control. |
| CVE-2021-30189 | CRITICAL | 9.8 | 1.3% | May 25, 2021 | CODESYS V2 Web-Server before 1.1.9.20 has a Stack-based Buffer Overflow. |
| CVE-2021-30188 | CRITICAL | 9.8 | 1.3% | May 25, 2021 | CODESYS V2 runtime system SP before 2.4.7.55 has a Stack-based Buffer Overflow. |
| CVE-2021-30186 | HIGH | 7.5 | 7.4% | May 25, 2021 | CODESYS V2 runtime system SP before 2.4.7.55 has a Heap-based Buffer Overflow. |
| CVE-2021-30187 | MEDIUM | 5.3 | 0.3% | May 25, 2021 | CODESYS V2 runtime system SP before 2.4.7.55 has Improper Neutralization of Special Elements used in an OS Command. |
| CVE-2021-20096 | HIGH | 8.1 | 0.6% | May 25, 2021 | Cross-site request forgery in OpenOversight 0.6.4 allows a remote attacker to perform sensitive application actions by t... |
| CVE-2021-33563 | HIGH | 7.5 | 0.8% | May 24, 2021 | Koel before 5.1.4 lacks login throttling, lacks a password strength policy, and shows whether a failed login attempt had... |
| CVE-2021-33562 | MEDIUM | 4.8 | 2.9% | May 24, 2021 | A reflected cross-site scripting (XSS) vulnerability in Shopizer before 2.17.0 allows remote attackers to inject arbitra... |
| CVE-2021-33561 | MEDIUM | 4.8 | 2.9% | May 24, 2021 | A stored cross-site scripting (XSS) vulnerability in Shopizer before 2.17.0 allows remote attackers to inject arbitrary ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now