2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-20504 | MEDIUM | 5.4 | 0.5% | Mar 30, 2021 | IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary ... |
| CVE-2021-20503 | MEDIUM | 5.4 | 0.5% | Mar 30, 2021 | IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary ... |
| CVE-2021-20502 | HIGH | 7.1 | 1.4% | Mar 30, 2021 | IBM Jazz Foundation Products are vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A... |
| CVE-2021-20447 | MEDIUM | 5.4 | 0.5% | Mar 30, 2021 | IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary ... |
| CVE-2021-20352 | MEDIUM | 5.4 | 0.5% | Mar 30, 2021 | IBM Jazz Foundation Products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary ... |
| CVE-2021-21398 | MEDIUM | 5.4 | 0.7% | Mar 30, 2021 | PrestaShop is a fully scalable open source e-commerce solution. In PrestaShop before version 1.7.7.3, an attacker can in... |
| CVE-2021-20482 | HIGH | 7.1 | 1.4% | Mar 30, 2021 | IBM Cloud Pak for Automation 20.0.2 and 20.0.3 IF002 are vulnerable to an XML External Entity Injection (XXE) attack whe... |
| CVE-2021-27271 | HIGH | 7.8 | 3.3% | Mar 30, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1.... |
| CVE-2021-27270 | HIGH | 7.8 | 2.7% | Mar 30, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1.... |
| CVE-2021-27269 | HIGH | 7.8 | 2.5% | Mar 30, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1.... |
| CVE-2021-27268 | HIGH | 7.8 | 2.5% | Mar 30, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1.... |
| CVE-2021-27267 | HIGH | 7.8 | 2.5% | Mar 30, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1.... |
| CVE-2021-27266 | LOW | 3.3 | 2.2% | Mar 30, 2021 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP... |
| CVE-2021-27265 | LOW | 3.3 | 2.0% | Mar 30, 2021 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP... |
| CVE-2021-27264 | LOW | 3.3 | 2.2% | Mar 30, 2021 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP... |
| CVE-2021-27263 | LOW | 3.3 | 2.9% | Mar 30, 2021 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP... |
| CVE-2021-27262 | LOW | 3.3 | 2.0% | Mar 30, 2021 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomP... |
| CVE-2021-27261 | HIGH | 7.8 | 2.7% | Mar 30, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1.... |
| CVE-2021-23363 | HIGH | 8.8 | 1.8% | Mar 30, 2021 | This affects the package kill-by-port before 0.0.2. If (attacker-controlled) user input is given to the killByPort funct... |
| CVE-2021-21409 | MEDIUM | 5.9 | 4.9% | Mar 30, 2021 | Netty is an open-source, asynchronous event-driven network application framework for rapid development of maintainable h... |
| CVE-2021-26810 | CRITICAL | 9.8 | 4.9% | Mar 30, 2021 | D-link DIR-816 A2 v1.10 is affected by a remote code injection vulnerability. An HTTP request parameter can be used in c... |
| CVE-2021-29343 | MEDIUM | 5.4 | 0.8% | Mar 30, 2021 | Ovidentia CMS 6.x contains a SQL injection vulnerability in the "id" parameter of index.php. The "checkbox" property int... |
| CVE-2021-28935 | MEDIUM | 5.4 | 1.6% | Mar 30, 2021 | CMS Made Simple (CMSMS) 2.2.15 allows authenticated XSS via the /admin/addbookmark.php script through the Site Admin > M... |
| CVE-2021-21638 | HIGH | 8.8 | 0.8% | Mar 30, 2021 | A cross-site request forgery (CSRF) vulnerability in Jenkins Team Foundation Server Plugin 5.157.1 and earlier allows at... |
| CVE-2021-21637 | MEDIUM | 6.5 | 1.0% | Mar 30, 2021 | A missing permission check in Jenkins Team Foundation Server Plugin 5.157.1 and earlier allows attackers with Overall/Re... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now