2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-20091HIGH8.8The web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 firmware version <= 1.24 do not pr...
CVE-2021-20090CRITICAL9.8A path traversal vulnerability in the web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 ...
CVE-2021-29141MEDIUM6.5A remote disclosure of sensitive information vulnerability was discovered in Aruba ClearPass Policy Manager version(s) p...
CVE-2021-29139MEDIUM4.8A remote cross-site scripting (XSS) vulnerability was discovered in Aruba ClearPass Policy Manager version(s) prior to 6...
CVE-2021-29142MEDIUM4.8A remote cross-site scripting (XSS) vulnerability was discovered in Aruba ClearPass Policy Manager version(s) prior to 6...
CVE-2021-29140HIGH8.2A remote XML external entity (XXE) vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to 6...
CVE-2021-29138MEDIUM6.5A remote disclosure of privileged information vulnerability was discovered in Aruba ClearPass Policy Manager version(s) ...
CVE-2021-29147HIGH8.8A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s) prior to ...
CVE-2021-29146MEDIUM5.4A remote cross-site scripting (XSS) vulnerability was discovered in Aruba ClearPass Policy Manager version(s) prior to 6...
CVE-2021-29145CRITICAL9.8A remote server side request forgery (SSRF) remote code execution vulnerability was discovered in Aruba ClearPass Policy...
CVE-2021-29144MEDIUM6.5A remote disclosure of sensitive information vulnerability was discovered in Aruba ClearPass Policy Manager version(s) p...
CVE-2021-29137MEDIUM6.1A remote URL redirection vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1....
CVE-2021-25167HIGH8.8A remote unauthorized access vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.1...
CVE-2021-25166HIGH8.8A remote unauthorized access vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.1...
CVE-2021-25163HIGH8.1A remote XML external entity vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.1...
CVE-2021-31879MEDIUM6.1GNU Wget through 1.21.1 does not omit the Authorization header upon a redirect to a different origin, a related issue to...
CVE-2021-31875CRITICAL9.8In mjs_json.c in Cesanta MongooseOS mJS 1.26, a maliciously formed JSON string can trigger an off-by-one heap-based buff...
CVE-2021-31776HIGH7.8Aviatrix VPN Client before 2.14.14 on Windows has an unquoted search path that enables local privilege escalation to the...
CVE-2021-25216CRITICAL9.8In BIND 9.5.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.11.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BI...
CVE-2021-25215HIGH7.5In BIND 9.0.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIN...
CVE-2021-25214MEDIUM6.5In BIND 9.8.5 -> 9.8.8, 9.9.3 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9...
CVE-2021-21414HIGH7.2Prisma is an open source ORM for Node.js & TypeScript. As of today, we are not aware of any Prisma users or external con...
CVE-2021-21391MEDIUM6.5CKEditor 5 provides a WYSIWYG editing solution. This CVE affects the following npm packages: ckeditor5-engine, ckeditor5...
CVE-2021-2321MEDIUM6Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that...
CVE-2021-29483HIGH7.5ManageWiki is an extension to the MediaWiki project. The 'wikiconfig' API leaked the value of private configuration vari...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now