2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-21350CRITICAL9.8XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulne...
CVE-2021-21349HIGH8.6XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulne...
CVE-2021-21348HIGH7.5XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulne...
CVE-2021-21347CRITICAL9.8XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulne...
CVE-2021-21346CRITICAL9.8XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulne...
CVE-2021-21345CRITICAL9.9XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulne...
CVE-2021-21344CRITICAL9.8XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulne...
CVE-2021-21343HIGH7.5XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulne...
CVE-2021-21342CRITICAL9.1XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is a vulne...
CVE-2021-21341HIGH7.5XStream is a Java library to serialize objects to XML and back again. In XStream before version 1.4.16, there is vulnera...
CVE-2021-25922MEDIUM6.1In OpenEMR, versions 4.2.0 to 6.0.0 are vulnerable to Reflected Cross-Site-Scripting (XSS) due to user input not being v...
CVE-2021-25921MEDIUM5.4In OpenEMR, versions 2.7.3-rc1 to 6.0.0 are vulnerable to Stored Cross-Site-Scripting (XSS) due to user input not being ...
CVE-2021-25920MEDIUM6.5In OpenEMR, versions v2.7.2-rc1 to 6.0.0 are vulnerable to Improper Access Control when creating a new user, which leads...
CVE-2021-25919MEDIUM4.8In OpenEMR, versions 5.0.2 to 6.0.0 are vulnerable to Stored Cross-Site-Scripting (XSS) due to user input not being vali...
CVE-2021-25918MEDIUM4.8In OpenEMR, versions 5.0.2 to 6.0.0 are vulnerable to Stored Cross-Site-Scripting (XSS) due to user input not being vali...
CVE-2021-25917MEDIUM4.8In OpenEMR, versions 5.0.2 to 6.0.0 are vulnerable to Stored Cross-Site-Scripting (XSS) due to user input not being vali...
CVE-2021-22321MEDIUM5.3There is a use-after-free vulnerability in a Huawei product. A module cannot deal with specific operations in special sc...
CVE-2021-22314HIGH7.8There is a local privilege escalation vulnerability in some versions of ManageOne. A local authenticated attacker could ...
CVE-2021-22320HIGH7.5There is a denial of service vulnerability in Huawei products. A module cannot deal with specific messages correctly. At...
CVE-2021-22311HIGH7.2There is an improper permission assignment vulnerability in Huawei ManageOne product. Due to improper security hardening...
CVE-2021-22310MEDIUM4.4There is an information leakage vulnerability in some huawei products. Due to the properly storage of specific informati...
CVE-2021-26578HIGH7.5A potential security vulnerability has been identified in HPE Network Orchestrator (NetO) version(s): Prior to 2.5. The ...
CVE-2021-25265HIGH8.8A malicious website could execute code remotely in Sophos Connect Client before version 2.1.
CVE-2021-22309HIGH7.5There is insecure algorithm vulnerability in Huawei products. A module uses less random input in a secure mechanism. Att...
CVE-2021-28972MEDIUM6.7In drivers/pci/hotplug/rpadlpar_sysfs.c in the Linux kernel through 5.11.8, the RPA PCI Hotplug driver has a user-tolera...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now