2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-21615 | MEDIUM | 5.3 | 0.9% | Jan 26, 2021 | Jenkins 2.275 and LTS 2.263.2 allows reading arbitrary files using the file browser for workspaces and archived artifact... |
| CVE-2021-21275 | MEDIUM | 4.3 | 0.7% | Jan 25, 2021 | The MediaWiki "Report" extension has a Cross-Site Request Forgery (CSRF) vulnerability. Before fixed version, there was ... |
| CVE-2021-21272 | HIGH | 7.7 | 1.4% | Jan 25, 2021 | ORAS is open source software which enables a way to push OCI Artifacts to OCI Conformant registries. ORAS is both a CLI ... |
| CVE-2021-23901 | CRITICAL | 9.1 | 4.4% | Jan 25, 2021 | An XML external entity (XXE) injection vulnerability was discovered in the Nutch DmozParser and is known to affect Nutch... |
| CVE-2021-21270 | MEDIUM | 5.5 | 0.3% | Jan 22, 2021 | OctopusDSC is a PowerShell module with DSC resources that can be used to install and configure an Octopus Deploy Server ... |
| CVE-2021-21260 | MEDIUM | 5.4 | 0.6% | Jan 22, 2021 | Online Invoicing System (OIS) is open source software which is a lean invoicing system for small businesses, consultants... |
| CVE-2021-21259 | MEDIUM | 6.1 | 1.4% | Jan 22, 2021 | HedgeDoc is open source software which lets you create real-time collaborative markdown notes. In HedgeDoc before versio... |
| CVE-2021-22849 | MEDIUM | 5.4 | 0.5% | Jan 22, 2021 | Hyweb HyCMS-J1 backend editing function does not filter special characters. Users after log-in can inject JavaScript syn... |
| CVE-2021-22847 | HIGH | 8.8 | 1.6% | Jan 22, 2021 | Hyweb HyCMS-J1's API fail to filter POST request parameters. Remote attackers can inject SQL syntax and execute commands... |
| CVE-2021-21253 | MEDIUM | 5.3 | 0.7% | Jan 21, 2021 | OnlineVotingSystem is an open source project hosted on GitHub. OnlineVotingSystem before version 1.1.2 hashes user passw... |
| CVE-2021-21239 | MEDIUM | 6.5 | 1.2% | Jan 21, 2021 | PySAML2 is a pure python implementation of SAML Version 2 Standard. PySAML2 before 6.5.0 has an improper verification of... |
| CVE-2021-21238 | MEDIUM | 6.5 | 1.1% | Jan 21, 2021 | PySAML2 is a pure python implementation of SAML Version 2 Standard. PySAML2 before 6.5.0 has an improper verification of... |
| CVE-2021-1069 | MEDIUM | 6.1 | 0.3% | Jan 20, 2021 | NVIDIA SHIELD TV, all versions prior to 8.2.2, contains a vulnerability in the NVHost function, which may lead to abnorm... |
| CVE-2021-1068 | HIGH | 7.8 | 0.4% | Jan 20, 2021 | NVIDIA SHIELD TV, all versions prior to 8.2.2, contains a vulnerability in the NVDEC component, in which an attacker can... |
| CVE-2021-1067 | MEDIUM | 6.8 | 0.4% | Jan 20, 2021 | NVIDIA SHIELD TV, all versions prior to 8.2.2, contains a vulnerability in the implementation of the RPMB command status... |
| CVE-2021-1250 | MEDIUM | 5.4 | 0.6% | Jan 20, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow a... |
| CVE-2021-1249 | MEDIUM | 5.4 | 0.6% | Jan 20, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow a... |
| CVE-2021-1248 | HIGH | 7.2 | 1.9% | Jan 20, 2021 | Multiple vulnerabilities in certain REST API endpoints of Cisco Data Center Network Manager (DCNM) could allow an authen... |
| CVE-2021-1247 | HIGH | 8.8 | 1.9% | Jan 20, 2021 | Multiple vulnerabilities in certain REST API endpoints of Cisco Data Center Network Manager (DCNM) could allow an authen... |
| CVE-2021-1241 | HIGH | 7.5 | 1.4% | Jan 20, 2021 | Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute denial of s... |
| CVE-2021-1235 | MEDIUM | 5.5 | 0.3% | Jan 20, 2021 | A vulnerability in the CLI of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to read sensiti... |
| CVE-2021-1233 | MEDIUM | 4.4 | 0.3% | Jan 20, 2021 | A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to access sensitive inf... |
| CVE-2021-1225 | CRITICAL | 9.1 | 1.4% | Jan 20, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco SD-WAN vManage Software could allow an unauthent... |
| CVE-2021-1222 | HIGH | 8.1 | 1.2% | Jan 20, 2021 | A vulnerability in the web-based management interface of Cisco Smart Software Manager Satellite could allow an authentic... |
| CVE-2021-1219 | HIGH | 7.8 | 0.3% | Jan 20, 2021 | A vulnerability in Cisco Smart Software Manager Satellite could allow an authenticated, local attacker to access sensiti... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now