2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-24810 | MEDIUM | 4.8 | 0.6% | Mar 7, 2022 | The WP Event Manager WordPress plugin before 3.1.23 does not escape some of its Field Editor settings when outputting th... |
| CVE-2021-44748 | MEDIUM | 6.1 | 0.5% | Mar 6, 2022 | A vulnerability affecting F-Secure SAFE browser was discovered whereby browsers loads images automatically this vulnerab... |
| CVE-2021-46353 | MEDIUM | 5.3 | 2.1% | Mar 4, 2022 | An information disclosure in web interface in D-Link DIR-X1860 before 1.03 RevA1 allows a remote unauthenticated attacke... |
| CVE-2021-43590 | MEDIUM | 6 | 0.1% | Mar 4, 2022 | Dell EMC Enterprise Storage Analytics for vRealize Operations, versions 4.0.1 to 6.2.1, contain a Plain-text password st... |
| CVE-2021-3428 | MEDIUM | 5.5 | 0.3% | Mar 4, 2022 | A flaw was found in the Linux kernel. A denial of service problem is identified if an extent tree is corrupted in a craf... |
| CVE-2021-20303 | MEDIUM | 6.1 | 0.8% | Mar 4, 2022 | A flaw found in function dataWindowForTile() of IlmImf/ImfTiledMisc.cpp. An attacker who is able to submit a crafted fil... |
| CVE-2021-20302 | MEDIUM | 5.5 | 0.9% | Mar 4, 2022 | A flaw was found in OpenEXR's TiledInputFile functionality. This flaw allows an attacker who can submit a crafted single... |
| CVE-2021-20300 | MEDIUM | 5.5 | 0.9% | Mar 4, 2022 | A flaw was found in OpenEXR's hufUncompress functionality in OpenEXR/IlmImf/ImfHuf.cpp. This flaw allows an attacker who... |
| CVE-2021-46382 | MEDIUM | 6.1 | 0.7% | Mar 4, 2022 | Unauthenticated cross-site scripting (XSS) in Netgear WAC120 AC Access Point may lead to mulitple attacks like session h... |
| CVE-2021-46379 | MEDIUM | 6.1 | 15.7% | Mar 4, 2022 | DLink DIR850 ET850-1.08TRb03 is affected by an incorrect access control vulnerability through URL redirection to untrust... |
| CVE-2021-3744 | MEDIUM | 5.5 | 0.5% | Mar 4, 2022 | A memory leak flaw was found in the Linux kernel in the ccp_run_aes_gcm_cmd() function in drivers/crypto/ccp/ccp-ops.c, ... |
| CVE-2021-44321 | MEDIUM | 5 | 0.3% | Mar 4, 2022 | Mini-Inventory-and-Sales-Management-System is affected by Cross Site Request Forgery (CSRF), where an attacker can updat... |
| CVE-2021-43393 | MEDIUM | 6.2 | 0.1% | Mar 4, 2022 | STMicroelectronics STSAFE-J 1.1.4, J-SAFE3 1.2.5, and J-SIGN sometimes allow attackers to abuse signature verification. ... |
| CVE-2021-43392 | MEDIUM | 6.2 | 0.2% | Mar 4, 2022 | STMicroelectronics STSAFE-J 1.1.4, J-SAFE3 1.2.5, and J-SIGN sometimes allow attackers to obtain information on cryptogr... |
| CVE-2021-3638 | MEDIUM | 6.5 | 0.4% | Mar 3, 2022 | An out-of-bounds memory access flaw was found in the ATI VGA device emulation of QEMU. This flaw occurs in the ati_2d_bl... |
| CVE-2021-4002 | MEDIUM | 4.4 | 0.5% | Mar 3, 2022 | A memory leak flaw in the Linux kernel's hugetlbfs memory usage was found in the way the user maps some regions of memor... |
| CVE-2021-3620 | MEDIUM | 5.5 | 0.4% | Mar 3, 2022 | A flaw was found in Ansible Engine's ansible-connection module, where sensitive information such as the Ansible user cre... |
| CVE-2021-3602 | MEDIUM | 5.5 | 0.3% | Mar 3, 2022 | An information disclosure flaw was found in Buildah, when building containers using chroot isolation. Running processes ... |
| CVE-2021-43774 | MEDIUM | 4.9 | 0.7% | Mar 3, 2022 | A risky-algorithm issue was discovered on Fujifilm DocuCentre-VI C4471 1.8 devices. An attacker that obtained access to ... |
| CVE-2021-40637 | MEDIUM | 6.1 | 0.8% | Mar 3, 2022 | OS4ED openSIS 8.0 is affected by cross-site scripting (XSS) in EmailCheckOthers.php. An attacker can inject JavaScript c... |
| CVE-2021-38269 | MEDIUM | 5.4 | 0.6% | Mar 3, 2022 | Cross-site scripting (XSS) vulnerability in the Gogo Shell module in Liferay Portal 7.1.0 through 7.3.6 and 7.4.0, and L... |
| CVE-2021-38267 | MEDIUM | 5.4 | 0.6% | Mar 3, 2022 | Cross-site scripting (XSS) vulnerability in the Blogs module's edit blog entry page in Liferay Portal 7.3.2 through 7.3.... |
| CVE-2021-38265 | MEDIUM | 5.4 | 0.6% | Mar 3, 2022 | Cross-site scripting (XSS) vulnerability in the Asset module in Liferay Portal 7.3.4 through 7.3.6 allow remote attacker... |
| CVE-2021-38264 | MEDIUM | 6.1 | 0.7% | Mar 3, 2022 | Cross-site scripting (XSS) vulnerability in the Frontend Taglib module in Liferay Portal 7.4.0 and 7.4.1 allows remote a... |
| CVE-2021-38263 | MEDIUM | 6.1 | 1.1% | Mar 3, 2022 | Cross-site scripting (XSS) vulnerability in the Server module's script console in Liferay Portal 7.3.2 and earlier, and ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now