2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-21096 | MEDIUM | 5.5 | 0.7% | Apr 15, 2021 | Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Improper Authorization vulnerabil... |
| CVE-2021-21095 | HIGH | 7.8 | 3.9% | Apr 15, 2021 | Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Out-of-bounds write vulnerability... |
| CVE-2021-21094 | HIGH | 7.8 | 3.9% | Apr 15, 2021 | Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Out-of-bounds write vulnerability... |
| CVE-2021-21093 | HIGH | 7.8 | 3.9% | Apr 15, 2021 | Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by a memory corruption vulnerability wh... |
| CVE-2021-21092 | HIGH | 7.8 | 3.9% | Apr 15, 2021 | Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by a memory corruption vulnerability wh... |
| CVE-2021-21091 | LOW | 3.3 | 2.4% | Apr 15, 2021 | Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Out-of-bounds read vulnerability ... |
| CVE-2021-21087 | MEDIUM | 5.4 | 37.1% | Apr 15, 2021 | Adobe Coldfusion versions 2016 (update 16 and earlier), 2018 (update 10 and earlier) and 2021.0.0.323925 are affected by... |
| CVE-2021-0488 | MEDIUM | 6.7 | 0.1% | Apr 15, 2021 | In pb_write of pb_encode.c, there is a possible out of bounds write due to a missing bounds check. This could lead to lo... |
| CVE-2021-27545 | MEDIUM | 6.5 | 2.0% | Apr 15, 2021 | SQL Injection in the "add-services.php" component of PHPGurukul Beauty Parlour Management System v1.0 allows remote atta... |
| CVE-2021-27544 | MEDIUM | 4.8 | 1.1% | Apr 15, 2021 | Cross Site Scripting (XSS) in the "add-services.php" component of PHPGurukul Beauty Parlour Management System v1.0 allow... |
| CVE-2021-27129 | MEDIUM | 5.4 | 0.6% | Apr 15, 2021 | CASAP Automated Enrollment System version 1.0 contains a cross-site scripting (XSS) vulnerability through the Students >... |
| CVE-2021-27850 | CRITICAL | 9.8 | 94.1% | Apr 15, 2021 | A critical unauthenticated remote code execution vulnerability was found all recent versions of Apache Tapestry. The aff... |
| CVE-2021-23887 | HIGH | 7.8 | 0.2% | Apr 15, 2021 | Privilege Escalation vulnerability in McAfee Data Loss Prevention (DLP) Endpoint for Windows prior to 11.6.100 allows a ... |
| CVE-2021-23886 | MEDIUM | 5.5 | 0.2% | Apr 15, 2021 | Denial of Service vulnerability in McAfee Data Loss Prevention (DLP) Endpoint for Windows prior to 11.6.100 allows a loc... |
| CVE-2021-23884 | MEDIUM | 4.3 | 0.2% | Apr 15, 2021 | Cleartext Transmission of Sensitive Information vulnerability in the ePO Extension of McAfee Content Security Reporter (... |
| CVE-2021-30487 | LOW | 2.7 | 0.7% | Apr 15, 2021 | In the topic moving API in Zulip Server 3.x before 3.4, organization administrators were able to move messages to stream... |
| CVE-2021-30479 | MEDIUM | 5.3 | 0.9% | Apr 15, 2021 | An issue was discovered in Zulip Server before 3.4. A bug in the implementation of the all_public_streams API feature re... |
| CVE-2021-30478 | MEDIUM | 4.3 | 0.6% | Apr 15, 2021 | An issue was discovered in Zulip Server before 3.4. A bug in the implementation of the can_forge_sender permission (prev... |
| CVE-2021-30477 | MEDIUM | 4.3 | 0.7% | Apr 15, 2021 | An issue was discovered in Zulip Server before 3.4. A bug in the implementation of replies to messages sent by outgoing ... |
| CVE-2021-26076 | LOW | 3.7 | 1.2% | Apr 15, 2021 | The jira.editor.user.mode cookie set by the Jira Editor Plugin in Jira Server and Data Center before version 8.5.12, fro... |
| CVE-2021-26075 | MEDIUM | 4.3 | 1.6% | Apr 15, 2021 | The Jira importers plugin AttachTemporaryFile rest resource in Jira Server and Data Center before version 8.5.12, from v... |
| CVE-2021-27183 | HIGH | 7.2 | 2.7% | Apr 14, 2021 | An issue was discovered in MDaemon before 20.0.4. Administrators can use Remote Administration to exploit an Arbitrary F... |
| CVE-2021-27182 | HIGH | 8.8 | 1.6% | Apr 14, 2021 | An issue was discovered in MDaemon before 20.0.4. There is an IFRAME injection vulnerability in Webmail (aka WorldClient... |
| CVE-2021-27181 | HIGH | 8.8 | 0.7% | Apr 14, 2021 | An issue was discovered in MDaemon before 20.0.4. Remote Administration allows an attacker to perform a fixation of the ... |
| CVE-2021-27180 | MEDIUM | 6.1 | 0.9% | Apr 14, 2021 | An issue was discovered in MDaemon before 20.0.4. There is Reflected XSS in Webmail (aka WorldClient). It can be exploit... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now