2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-21096MEDIUM5.5Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Improper Authorization vulnerabil...
CVE-2021-21095HIGH7.8Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Out-of-bounds write vulnerability...
CVE-2021-21094HIGH7.8Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Out-of-bounds write vulnerability...
CVE-2021-21093HIGH7.8Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by a memory corruption vulnerability wh...
CVE-2021-21092HIGH7.8Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by a memory corruption vulnerability wh...
CVE-2021-21091LOW3.3Adobe Bridge versions 10.1.1 (and earlier) and 11.0.1 (and earlier) are affected by an Out-of-bounds read vulnerability ...
CVE-2021-21087MEDIUM5.4Adobe Coldfusion versions 2016 (update 16 and earlier), 2018 (update 10 and earlier) and 2021.0.0.323925 are affected by...
CVE-2021-0488MEDIUM6.7In pb_write of pb_encode.c, there is a possible out of bounds write due to a missing bounds check. This could lead to lo...
CVE-2021-27545MEDIUM6.5SQL Injection in the "add-services.php" component of PHPGurukul Beauty Parlour Management System v1.0 allows remote atta...
CVE-2021-27544MEDIUM4.8Cross Site Scripting (XSS) in the "add-services.php" component of PHPGurukul Beauty Parlour Management System v1.0 allow...
CVE-2021-27129MEDIUM5.4CASAP Automated Enrollment System version 1.0 contains a cross-site scripting (XSS) vulnerability through the Students >...
CVE-2021-27850CRITICAL9.8A critical unauthenticated remote code execution vulnerability was found all recent versions of Apache Tapestry. The aff...
CVE-2021-23887HIGH7.8Privilege Escalation vulnerability in McAfee Data Loss Prevention (DLP) Endpoint for Windows prior to 11.6.100 allows a ...
CVE-2021-23886MEDIUM5.5Denial of Service vulnerability in McAfee Data Loss Prevention (DLP) Endpoint for Windows prior to 11.6.100 allows a loc...
CVE-2021-23884MEDIUM4.3Cleartext Transmission of Sensitive Information vulnerability in the ePO Extension of McAfee Content Security Reporter (...
CVE-2021-30487LOW2.7In the topic moving API in Zulip Server 3.x before 3.4, organization administrators were able to move messages to stream...
CVE-2021-30479MEDIUM5.3An issue was discovered in Zulip Server before 3.4. A bug in the implementation of the all_public_streams API feature re...
CVE-2021-30478MEDIUM4.3An issue was discovered in Zulip Server before 3.4. A bug in the implementation of the can_forge_sender permission (prev...
CVE-2021-30477MEDIUM4.3An issue was discovered in Zulip Server before 3.4. A bug in the implementation of replies to messages sent by outgoing ...
CVE-2021-26076LOW3.7The jira.editor.user.mode cookie set by the Jira Editor Plugin in Jira Server and Data Center before version 8.5.12, fro...
CVE-2021-26075MEDIUM4.3The Jira importers plugin AttachTemporaryFile rest resource in Jira Server and Data Center before version 8.5.12, from v...
CVE-2021-27183HIGH7.2An issue was discovered in MDaemon before 20.0.4. Administrators can use Remote Administration to exploit an Arbitrary F...
CVE-2021-27182HIGH8.8An issue was discovered in MDaemon before 20.0.4. There is an IFRAME injection vulnerability in Webmail (aka WorldClient...
CVE-2021-27181HIGH8.8An issue was discovered in MDaemon before 20.0.4. Remote Administration allows an attacker to perform a fixation of the ...
CVE-2021-27180MEDIUM6.1An issue was discovered in MDaemon before 20.0.4. There is Reflected XSS in Webmail (aka WorldClient). It can be exploit...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now