2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-37504 | MEDIUM | 6.1 | 0.9% | Feb 25, 2022 | A cross-site scripting (XSS) vulnerability in the fileNameStr parameter of jQuery-Upload-File v4.0.11 allows attackers t... |
| CVE-2021-37103 | MEDIUM | 5.5 | 0.1% | Feb 25, 2022 | There is an improper permission management vulnerability in the Wallet apps. Successful exploitation of this vulnerabili... |
| CVE-2021-22479 | MEDIUM | 5.5 | 0.1% | Feb 25, 2022 | The interface of a certain HarmonyOS module has an invalid address access vulnerability. Successful exploitation of this... |
| CVE-2021-22478 | MEDIUM | 5.5 | 0.2% | Feb 25, 2022 | The interface of a certain HarmonyOS module has a UAF vulnerability. Successful exploitation of this vulnerability may l... |
| CVE-2021-22441 | MEDIUM | 5.5 | 0.1% | Feb 25, 2022 | Some Huawei products have an integer overflow vulnerability. Successful exploitation of this vulnerability may lead to k... |
| CVE-2021-38993 | MEDIUM | 5.5 | 0.2% | Feb 25, 2022 | IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the smbcd daem... |
| CVE-2021-45229 | MEDIUM | 6.1 | 2.5% | Feb 25, 2022 | It was discovered that the "Trigger DAG with config" screen was susceptible to XSS attacks via the `origin` query argume... |
| CVE-2021-34361 | MEDIUM | 6.1 | 0.7% | Feb 25, 2022 | A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Proxy Server. If exploited, t... |
| CVE-2021-34359 | MEDIUM | 5.4 | 0.6% | Feb 25, 2022 | A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Proxy Server. If exploited, t... |
| CVE-2021-43745 | MEDIUM | 5.5 | 0.3% | Feb 24, 2022 | A Denial of Service vulnerabilty exists in Trilium Notes 0.48.6 in the setupPage function |
| CVE-2021-29217 | MEDIUM | 6.1 | 0.7% | Feb 24, 2022 | A remote URL redirection vulnerability was discovered in HPE OneView Global Dashboard version(s): Prior to 2.5. HPE has ... |
| CVE-2021-29216 | MEDIUM | 6.1 | 0.6% | Feb 24, 2022 | A remote cross-site scripting vulnerability was discovered in HPE OneView Global Dashboard version(s): Prior to 2.5. HPE... |
| CVE-2021-44665 | MEDIUM | 6.5 | 7.7% | Feb 24, 2022 | A Directory Traversal vulnerability exists in the Xerte Project Xerte through 3.10.3 when downloading a project file via... |
| CVE-2021-44662 | MEDIUM | 6.1 | 1.1% | Feb 24, 2022 | A Site Scripting (XSS) vulnerability exists in the Xerte Project Xerte through 3.8.4 via the link parameter in print.php... |
| CVE-2021-44533 | MEDIUM | 5.3 | 9.4% | Feb 24, 2022 | Node.js < 12.22.9, < 14.18.3, < 16.13.2, and < 17.3.1 did not handle multi-value Relative Distinguished Names correctly.... |
| CVE-2021-44532 | MEDIUM | 5.3 | 10.4% | Feb 24, 2022 | Node.js < 12.22.9, < 14.18.3, < 16.13.2, and < 17.3.1 converts SANs (Subject Alternative Names) to a string format. It u... |
| CVE-2021-3700 | MEDIUM | 6.4 | 0.3% | Feb 24, 2022 | A use-after-free vulnerability was found in usbredir in versions prior to 0.11.0 in the usbredirparser_serialize() in us... |
| CVE-2021-3608 | MEDIUM | 6 | 0.4% | Feb 24, 2022 | A flaw was found in the QEMU implementation of VMWare's paravirtual RDMA device in versions prior to 6.1.0. The issue oc... |
| CVE-2021-3607 | MEDIUM | 6 | 0.3% | Feb 24, 2022 | An integer overflow was found in the QEMU implementation of VMWare's paravirtual RDMA device in versions prior to 6.1.0.... |
| CVE-2021-3596 | MEDIUM | 6.5 | 1.9% | Feb 24, 2022 | A NULL pointer dereference flaw was found in ImageMagick in versions prior to 7.0.10-31 in ReadSVGImage() in coders/svg.... |
| CVE-2021-39038 | MEDIUM | 5.4 | 0.7% | Feb 24, 2022 | IBM WebSphere Application Server 9.0 and IBM WebSphere Application Server Liberty 17.0.0.3 through 22.0.0.2 could allow ... |
| CVE-2021-38995 | MEDIUM | 5.5 | 0.2% | Feb 24, 2022 | IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel... |
| CVE-2021-38994 | MEDIUM | 5.5 | 0.2% | Feb 24, 2022 | IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel... |
| CVE-2021-44608 | MEDIUM | 5.4 | 0.5% | Feb 24, 2022 | Multiple Cross Site Scripting (XSS) vulnerabilities exists in bloofoxCMS 0.5.2.1 - 0.5.1 via the (1) file parameter and ... |
| CVE-2021-44607 | MEDIUM | 5.4 | 0.5% | Feb 24, 2022 | A Cross Site Scripting (XSS) vulnerability exists in FUEL-CMS 1.5.1 in the Assets page via an SVG file. |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now