2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-20091 | HIGH | 8.8 | 8.7% | Apr 29, 2021 | The web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 firmware version <= 1.24 do not pr... |
| CVE-2021-20090 | CRITICAL | 9.8 | 100.0% | Apr 29, 2021 | A path traversal vulnerability in the web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 ... |
| CVE-2021-29141 | MEDIUM | 6.5 | 1.1% | Apr 29, 2021 | A remote disclosure of sensitive information vulnerability was discovered in Aruba ClearPass Policy Manager version(s) p... |
| CVE-2021-29139 | MEDIUM | 4.8 | 0.5% | Apr 29, 2021 | A remote cross-site scripting (XSS) vulnerability was discovered in Aruba ClearPass Policy Manager version(s) prior to 6... |
| CVE-2021-29142 | MEDIUM | 4.8 | 0.5% | Apr 29, 2021 | A remote cross-site scripting (XSS) vulnerability was discovered in Aruba ClearPass Policy Manager version(s) prior to 6... |
| CVE-2021-29140 | HIGH | 8.2 | 1.6% | Apr 29, 2021 | A remote XML external entity (XXE) vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to 6... |
| CVE-2021-29138 | MEDIUM | 6.5 | 1.1% | Apr 29, 2021 | A remote disclosure of privileged information vulnerability was discovered in Aruba ClearPass Policy Manager version(s) ... |
| CVE-2021-29147 | HIGH | 8.8 | 3.2% | Apr 29, 2021 | A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s) prior to ... |
| CVE-2021-29146 | MEDIUM | 5.4 | 0.5% | Apr 29, 2021 | A remote cross-site scripting (XSS) vulnerability was discovered in Aruba ClearPass Policy Manager version(s) prior to 6... |
| CVE-2021-29145 | CRITICAL | 9.8 | 1.9% | Apr 29, 2021 | A remote server side request forgery (SSRF) remote code execution vulnerability was discovered in Aruba ClearPass Policy... |
| CVE-2021-29144 | MEDIUM | 6.5 | 1.1% | Apr 29, 2021 | A remote disclosure of sensitive information vulnerability was discovered in Aruba ClearPass Policy Manager version(s) p... |
| CVE-2021-29137 | MEDIUM | 6.1 | 0.8% | Apr 29, 2021 | A remote URL redirection vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.12.1.... |
| CVE-2021-25167 | HIGH | 8.8 | 1.5% | Apr 29, 2021 | A remote unauthorized access vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.1... |
| CVE-2021-25166 | HIGH | 8.8 | 1.5% | Apr 29, 2021 | A remote unauthorized access vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.1... |
| CVE-2021-25163 | HIGH | 8.1 | 1.2% | Apr 29, 2021 | A remote XML external entity vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.1... |
| CVE-2021-31879 | MEDIUM | 6.1 | 1.1% | Apr 29, 2021 | GNU Wget through 1.21.1 does not omit the Authorization header upon a redirect to a different origin, a related issue to... |
| CVE-2021-31875 | CRITICAL | 9.8 | 2.2% | Apr 29, 2021 | In mjs_json.c in Cesanta MongooseOS mJS 1.26, a maliciously formed JSON string can trigger an off-by-one heap-based buff... |
| CVE-2021-31776 | HIGH | 7.8 | 0.3% | Apr 29, 2021 | Aviatrix VPN Client before 2.14.14 on Windows has an unquoted search path that enables local privilege escalation to the... |
| CVE-2021-25216 | CRITICAL | 9.8 | 83.4% | Apr 29, 2021 | In BIND 9.5.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.11.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BI... |
| CVE-2021-25215 | HIGH | 7.5 | 11.3% | Apr 29, 2021 | In BIND 9.0.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIN... |
| CVE-2021-25214 | MEDIUM | 6.5 | 5.9% | Apr 29, 2021 | In BIND 9.8.5 -> 9.8.8, 9.9.3 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9... |
| CVE-2021-21414 | HIGH | 7.2 | 2.1% | Apr 29, 2021 | Prisma is an open source ORM for Node.js & TypeScript. As of today, we are not aware of any Prisma users or external con... |
| CVE-2021-21391 | MEDIUM | 6.5 | 1.7% | Apr 29, 2021 | CKEditor 5 provides a WYSIWYG editing solution. This CVE affects the following npm packages: ckeditor5-engine, ckeditor5... |
| CVE-2021-2321 | MEDIUM | 6 | 0.6% | Apr 28, 2021 | Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that... |
| CVE-2021-29483 | HIGH | 7.5 | 1.2% | Apr 28, 2021 | ManageWiki is an extension to the MediaWiki project. The 'wikiconfig' API leaked the value of private configuration vari... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now