2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-29258 | HIGH | 7.5 | 1.7% | May 20, 2021 | An issue was discovered in Envoy 1.14.0. There is a remotely exploitable crash for HTTP2 Metadata, because an empty META... |
| CVE-2021-28683 | HIGH | 7.5 | 1.7% | May 20, 2021 | An issue was discovered in Envoy through 1.71.1. There is a remotely exploitable NULL pointer dereference and crash in T... |
| CVE-2021-28682 | HIGH | 7.5 | 2.0% | May 20, 2021 | An issue was discovered in Envoy through 1.71.1. There is a remotely exploitable integer overflow in which a very large ... |
| CVE-2021-23386 | MEDIUM | 6.5 | 1.4% | May 20, 2021 | This affects the package dns-packet before 5.2.2. It creates buffers with allocUnsafe and does not always fill them befo... |
| CVE-2021-3313 | MEDIUM | 5.4 | 1.0% | May 20, 2021 | Plone CMS until version 5.2.4 has a stored Cross-Site Scripting (XSS) vulnerability in the user fullname property and th... |
| CVE-2021-32632 | MEDIUM | 4.3 | 0.6% | May 20, 2021 | Pajbot is a Twitch chat bot. Pajbot versions prior to 1.52 are vulnerable to cross-site request forgery (CSRF). Hosters ... |
| CVE-2021-27432 | HIGH | 7.5 | 2.2% | May 20, 2021 | OPC Foundation UA .NET Standard versions prior to 1.4.365.48 and OPC UA .NET Legacy are vulnerable to an uncontrolled re... |
| CVE-2021-29692 | MEDIUM | 5.9 | 1.0% | May 20, 2021 | IBM Security Identity Manager 7.0.2 could allow a remote attacker to obtain sensitive information, caused by the failure... |
| CVE-2021-29691 | HIGH | 7.5 | 0.9% | May 20, 2021 | IBM Security Identity Manager 7.0.2 contains hard-coded credentials, such as a password or cryptographic key, which it u... |
| CVE-2021-29688 | HIGH | 7.5 | 2.0% | May 20, 2021 | IBM Security Identity Manager 7.0.2 could allow a remote attacker to obtain sensitive information when a detailed techni... |
| CVE-2021-29687 | MEDIUM | 5.3 | 1.3% | May 20, 2021 | IBM Security Identity Manager 7.0.2 could allow a remote user to enumerate usernames due to a difference of responses fr... |
| CVE-2021-29686 | HIGH | 8.8 | 0.8% | May 20, 2021 | IBM Security Identity Manager 7.0.2 could allow an authenticated user to bypass security and perform actions that they s... |
| CVE-2021-29683 | MEDIUM | 6.5 | 0.5% | May 20, 2021 | IBM Security Identity Manager 7.0.2 stores user credentials in plain clear text which can be read by an authenticated us... |
| CVE-2021-29682 | MEDIUM | 5.3 | 1.3% | May 20, 2021 | IBM Security Identity Manager 7.0.2 could allow a remote attacker to obtain sensitive information when a detailed techni... |
| CVE-2021-25933 | MEDIUM | 4.8 | 1.0% | May 20, 2021 | In OpenNMS Horizon, versions opennms-1-0-stable through opennms-27.1.0-1; OpenNMS Meridian, versions meridian-foundation... |
| CVE-2021-25931 | HIGH | 8.8 | 0.7% | May 20, 2021 | In OpenNMS Horizon, versions opennms-1-0-stable through opennms-27.1.0-1; OpenNMS Meridian, versions meridian-foundation... |
| CVE-2021-25929 | MEDIUM | 4.8 | 1.0% | May 20, 2021 | In OpenNMS Horizon, versions opennms-1-0-stable through opennms-27.1.0-1; OpenNMS Meridian, versions meridian-foundation... |
| CVE-2021-3438 | HIGH | 7.8 | 2.9% | May 20, 2021 | A potential buffer overflow in the software drivers for certain HP LaserJet products and Samsung product printers could ... |
| CVE-2021-28112 | HIGH | 8.8 | 1.9% | May 20, 2021 | Draeger X-Dock Firmware before 03.00.13 has Active Debug Code on a debug port, leading to remote code execution by an au... |
| CVE-2021-28111 | HIGH | 8.8 | 3.1% | May 20, 2021 | Draeger X-Dock Firmware before 03.00.13 has Hard-Coded Credentials, leading to remote code execution by an authenticated... |
| CVE-2021-27434 | HIGH | 7.5 | 1.7% | May 20, 2021 | Products with Unified Automation .NET based OPC UA Client/Server SDK Bundle: Versions V3.0.7 and prior (.NET 4.5, 4.0, a... |
| CVE-2021-25930 | MEDIUM | 4.3 | 0.6% | May 20, 2021 | In OpenNMS Horizon, versions opennms-1-0-stable through opennms-27.1.0-1; OpenNMS Meridian, versions meridian-foundation... |
| CVE-2021-3536 | MEDIUM | 4.8 | 0.5% | May 20, 2021 | A flaw was found in Wildfly in versions before 23.0.2.Final while creating a new role in domain mode via the admin conso... |
| CVE-2021-3480 | HIGH | 7.5 | 1.7% | May 20, 2021 | A flaw was found in slapi-nis in versions before 0.56.7. A NULL pointer dereference during the parsing of the Binding DN... |
| CVE-2021-3426 | MEDIUM | 5.7 | 1.9% | May 20, 2021 | There's a flaw in Python 3's pydoc. A local or adjacent attacker who discovers or is able to convince another local or a... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now