2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-29209MEDIUM4.8A remote dom xss, crlf injection vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380...
CVE-2021-29208MEDIUM4.8A remote dom xss, crlf injection vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380...
CVE-2021-33425MEDIUM5.4A stored cross-site scripting (XSS) vulnerability was discovered in the Web Interface for OpenWRT LuCI version 19.07 whi...
CVE-2021-29207MEDIUM4.8A remote xss vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrate...
CVE-2021-29206MEDIUM4.8A remote xss vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrate...
CVE-2021-29205MEDIUM4.8A remote xss vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrate...
CVE-2021-29204MEDIUM4.8A remote xss vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrate...
CVE-2021-29202MEDIUM6.7A local buffer overflow vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HP...
CVE-2021-29201MEDIUM4.8A remote xss vulnerability was discovered in HPE Integrated Lights-Out 4 (iLO 4); HPE SimpliVity 380 Gen9; HPE Integrate...
CVE-2021-27823HIGH7.5An information disclosure vulnerability was discovered in /index.class.php (via port 8181) on NetWave System 1.0 which a...
CVE-2021-27821MEDIUM6.1The Web Interface for OpenWRT LuCI version 19.07 and lower has been discovered to have a cross-site scripting vulnerabil...
CVE-2021-30195HIGH7.5CODESYS V2 runtime system before 2.4.7.55 has Improper Input Validation.
CVE-2021-30194CRITICAL9.1CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Read.
CVE-2021-30193CRITICAL9.8CODESYS V2 Web-Server before 1.1.9.20 has an Out-of-bounds Write.
CVE-2021-30192CRITICAL9.8CODESYS V2 Web-Server before 1.1.9.20 has an Improperly Implemented Security Check.
CVE-2021-30191HIGH7.5CODESYS V2 Web-Server before 1.1.9.20 has a a Buffer Copy without Checking the Size of the Input.
CVE-2021-30190CRITICAL9.8CODESYS V2 Web-Server before 1.1.9.20 has Improper Access Control.
CVE-2021-30189CRITICAL9.8CODESYS V2 Web-Server before 1.1.9.20 has a Stack-based Buffer Overflow.
CVE-2021-30188CRITICAL9.8CODESYS V2 runtime system SP before 2.4.7.55 has a Stack-based Buffer Overflow.
CVE-2021-30186HIGH7.5CODESYS V2 runtime system SP before 2.4.7.55 has a Heap-based Buffer Overflow.
CVE-2021-30187MEDIUM5.3CODESYS V2 runtime system SP before 2.4.7.55 has Improper Neutralization of Special Elements used in an OS Command.
CVE-2021-20096HIGH8.1Cross-site request forgery in OpenOversight 0.6.4 allows a remote attacker to perform sensitive application actions by t...
CVE-2021-33563HIGH7.5Koel before 5.1.4 lacks login throttling, lacks a password strength policy, and shows whether a failed login attempt had...
CVE-2021-33562MEDIUM4.8A reflected cross-site scripting (XSS) vulnerability in Shopizer before 2.17.0 allows remote attackers to inject arbitra...
CVE-2021-33561MEDIUM4.8A stored cross-site scripting (XSS) vulnerability in Shopizer before 2.17.0 allows remote attackers to inject arbitrary ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now