2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-20504MEDIUM5.4IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary ...
CVE-2021-20503MEDIUM5.4IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary ...
CVE-2021-20502HIGH7.1IBM Jazz Foundation Products are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A...
CVE-2021-20447MEDIUM5.4IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary ...
CVE-2021-20352MEDIUM5.4IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary ...
CVE-2021-21398MEDIUM5.4PrestaShop is a fully scalable open source e-commerce solution. In PrestaShop before version 1.7.7.3, an attacker can in...
CVE-2021-20482HIGH7.1IBM Cloud Pak for Automation 20.0.2 and 20.0.3 IF002 are vulnerable to an XML External Entity Injection (XXE) attack whe...
CVE-2021-27271HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1....
CVE-2021-27270HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1....
CVE-2021-27269HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1....
CVE-2021-27268HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1....
CVE-2021-27267HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1....
CVE-2021-27266LOW3.3This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP...
CVE-2021-27265LOW3.3This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP...
CVE-2021-27264LOW3.3This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP...
CVE-2021-27263LOW3.3This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP...
CVE-2021-27262LOW3.3This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP...
CVE-2021-27261HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1....
CVE-2021-23363HIGH8.8This affects the package kill-by-port before 0.0.2. If (attacker-controlled) user input is given to the killByPort funct...
CVE-2021-21409MEDIUM5.9Netty is an open-source, asynchronous event-driven network application framework for rapid development of maintainable h...
CVE-2021-26810CRITICAL9.8D-link DIR-816 A2 v1.10 is affected by a remote code injection vulnerability. An HTTP request parameter can be used in c...
CVE-2021-29343MEDIUM5.4Ovidentia CMS 6.x contains a SQL injection vulnerability in the "id" parameter of index.php. The "checkbox" property int...
CVE-2021-28935MEDIUM5.4CMS Made Simple (CMSMS) 2.2.15 allows authenticated XSS via the /admin/addbookmark.php script through the Site Admin > M...
CVE-2021-21638HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins Team Foundation Server Plugin 5.157.1 and earlier allows at...
CVE-2021-21637MEDIUM6.5A missing permission check in Jenkins Team Foundation Server Plugin 5.157.1 and earlier allows attackers with Overall/Re...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now