2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-28832 | HIGH | 7.8 | 1.2% | Apr 5, 2021 | VSCodeVim before 1.19.0 allows attackers to execute arbitrary code via a crafted workspace configuration. |
| CVE-2021-30127 | HIGH | 7.3 | 0.9% | Apr 3, 2021 | TerraMaster F2-210 devices through 2021-04-03 use UPnP to make the admin web server accessible over the Internet on TCP ... |
| CVE-2021-21533 | MEDIUM | 4.3 | 0.8% | Apr 2, 2021 | Wyse Management Suite versions up to 3.2 contains a vulnerability wherein a malicious authenticated user can cause a den... |
| CVE-2021-21532 | MEDIUM | 6.3 | 0.2% | Apr 2, 2021 | Dell Wyse ThinOS 8.6 MR9 contains remediation for an improper management server validation vulnerability that could be p... |
| CVE-2021-21529 | MEDIUM | 5.5 | 0.2% | Apr 2, 2021 | Dell System Update (DSU) 1.9 and earlier versions contain a denial of service vulnerability. A local authenticated malic... |
| CVE-2021-30074 | MEDIUM | 6.1 | 0.8% | Apr 2, 2021 | docsify 4.12.1 is affected by Cross Site Scripting (XSS) because the search component does not appropriately encode Code... |
| CVE-2021-30126 | MEDIUM | 6.5 | 0.7% | Apr 2, 2021 | Lightmeter ControlCenter 1.1.0 through 1.5.x before 1.5.1 allows anyone who knows the URL of a publicly available Lightm... |
| CVE-2021-30125 | MEDIUM | 6.1 | 0.6% | Apr 2, 2021 | Jamf Pro before 10.28.0 allows XSS related to inventory history, aka PI-009376. |
| CVE-2021-30072 | CRITICAL | 9.8 | 1.4% | Apr 2, 2021 | An issue was discovered in prog.cgi on D-Link DIR-878 1.30B08 devices. Because strcat is misused, there is a stack-based... |
| CVE-2021-28941 | MEDIUM | 5.3 | 1.1% | Apr 2, 2021 | Because of no validation on a curl command in MagpieRSS 0.72 in the /extlib/Snoopy.class.inc file, when you send a reque... |
| CVE-2021-28940 | CRITICAL | 9.8 | 3.3% | Apr 2, 2021 | Because of a incorrect escaped exec command in MagpieRSS in 0.72 in the /extlib/Snoopy.class.inc file, it is possible to... |
| CVE-2021-3374 | MEDIUM | 5.3 | 14.3% | Apr 2, 2021 | Directory traversal in RStudio Shiny Server before 1.5.16 allows attackers to read the application source code, involvin... |
| CVE-2021-29661 | MEDIUM | 5.4 | 0.6% | Apr 2, 2021 | Softing AG OPC Toolbox through 4.10.1.13035 allows /en/diag_values.html Stored XSS via the ITEMLISTVALUES##ITEMID parame... |
| CVE-2021-29660 | HIGH | 8.8 | 0.6% | Apr 2, 2021 | A Cross-Site Request Forgery (CSRF) vulnerability in en/cfg_setpwd.html in Softing AG OPC Toolbox through 4.10.1.13035 a... |
| CVE-2021-27973 | HIGH | 7.2 | 11.0% | Apr 2, 2021 | SQL injection exists in Piwigo before 11.4.0 via the language parameter to admin.php?page=languages. |
| CVE-2021-1879 | MEDIUM | 6.1 | 7.1% | Apr 2, 2021 | This issue was addressed by improved management of object lifetimes. This issue is fixed in iOS 12.5.2, iOS 14.4.2 and i... |
| CVE-2021-1871 | CRITICAL | 9.8 | 7.1% | Apr 2, 2021 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-... |
| CVE-2021-1870 | CRITICAL | 9.8 | 7.9% | Apr 2, 2021 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Big Sur 11.2, Security Update 2021-... |
| CVE-2021-1844 | HIGH | 8.8 | 2.4% | Apr 2, 2021 | A memory corruption issue was addressed with improved validation. This issue is fixed in iOS 14.4.1 and iPadOS 14.4.1, S... |
| CVE-2021-1818 | CRITICAL | 9.8 | 2.9% | Apr 2, 2021 | A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Security Update 2... |
| CVE-2021-1806 | HIGH | 7 | 0.9% | Apr 2, 2021 | A race condition was addressed with additional validation. This issue is fixed in macOS Big Sur 11.2.1, macOS Catalina 1... |
| CVE-2021-1805 | HIGH | 7.8 | 1.1% | Apr 2, 2021 | An out-of-bounds write was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.2.1, macOS ... |
| CVE-2021-1803 | LOW | 3.3 | 0.6% | Apr 2, 2021 | The issue was addressed with improved permissions logic. This issue is fixed in macOS Big Sur 11.0.1. A local applicatio... |
| CVE-2021-1802 | HIGH | 7.8 | 0.2% | Apr 2, 2021 | A logic issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Security Update 2... |
| CVE-2021-1801 | MEDIUM | 6.5 | 1.5% | Apr 2, 2021 | This issue was addressed with improved iframe sandbox enforcement. This issue is fixed in macOS Big Sur 11.2, Security U... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now