2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-27330MEDIUM6.1Triconsole Datepicker Calendar <3.77 is affected by cross-site scripting (XSS) in calendar_form.php. Attackers can read ...
CVE-2021-3124MEDIUM5.4Stored cross-site scripting (XSS) in form field in robust.systems product Custom Global Variables v 1.0.5 allows a remot...
CVE-2021-3273HIGH7.2Nagios XI below 5.7 is affected by code injection in the /nagiosxi/admin/graphtemplates.php component. To exploit this v...
CVE-2021-21066HIGH7.8Adobe Bridge version 11.0 (and earlier) is affected by an out-of-bounds write vulnerability when parsing TTF files that ...
CVE-2021-21065HIGH7.8Adobe Bridge version 11.0 (and earlier) is affected by an out-of-bounds write vulnerability when parsing TTF files that ...
CVE-2021-21064MEDIUM4.9Magento UPWARD-php version 1.1.4 (and earlier) is affected by a Path traversal vulnerability in Magento UPWARD Connector...
CVE-2021-27671MEDIUM6.1An issue was discovered in the comrak crate before 0.9.1 for Rust. XSS can occur because the protection mechanism for da...
CVE-2021-27670CRITICAL9.8Appspace 6.2.4 allows SSRF via the api/v1/core/proxy/jsonprequest url parameter.
CVE-2021-1450MEDIUM5.5A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility Client could allow a...
CVE-2021-1396MEDIUM6.5Multiple vulnerabilities in Cisco Application Services Engine could allow an unauthenticated, remote attacker to gain pr...
CVE-2021-1393CRITICAL9.8Multiple vulnerabilities in Cisco Application Services Engine could allow an unauthenticated, remote attacker to gain pr...
CVE-2021-1388CRITICAL10A vulnerability in an API endpoint of Cisco ACI Multi-Site Orchestrator (MSO) installed on the Application Services Engi...
CVE-2021-1387HIGH8.6A vulnerability in the network stack of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a ...
CVE-2021-1368HIGH8.8A vulnerability in the Unidirectional Link Detection (UDLD) feature of Cisco FXOS Software and Cisco NX-OS Software coul...
CVE-2021-1367MEDIUM4.3A vulnerability in the Protocol Independent Multicast (PIM) feature of Cisco NX-OS Software could allow an unauthenticat...
CVE-2021-1361CRITICAL9.1A vulnerability in the implementation of an internal file management service for Cisco Nexus 3000 Series Switches and Ci...
CVE-2021-1231MEDIUM4.7A vulnerability in the Link Layer Discovery Protocol (LLDP) for Nexus 9000 Series Fabric Switches in Application Centric...
CVE-2021-1230HIGH7.5A vulnerability with the Border Gateway Protocol (BGP) for Cisco Nexus 9000 Series Fabric Switches in Application Centri...
CVE-2021-1229MEDIUM5.3A vulnerability in ICMP Version 6 (ICMPv6) processing in Cisco NX-OS Software could allow an unauthenticated, remote att...
CVE-2021-1228MEDIUM6.5A vulnerability in the fabric infrastructure VLAN connection establishment of Cisco Nexus 9000 Series Fabric Switches in...
CVE-2021-1227HIGH8.1A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to conduct...
CVE-2021-22667CRITICAL9.8BB-ESWGP506-2SFP-T versions 1.01.09 and prior is vulnerable due to the use of hard-coded credentials, which may allow an...
CVE-2021-21974HIGH8.8OpenSLP as used in ESXi (7.0 before ESXi70U1c-17325551, 6.7 before ESXi670-202102401-SG, 6.5 before ESXi650-202102101-SG...
CVE-2021-21973MEDIUM5.3The vSphere Client (HTML5) contains an SSRF (Server Side Request Forgery) vulnerability due to improper validation of UR...
CVE-2021-21972CRITICAL9.8The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now