2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2021-29003CRITICAL9.8Genexis PLATINUM 4410 2.1 P4410-V2-1.28 devices allow remote attackers to execute arbitrary code via shell metacharacter...
CVE-2021-30503CRITICAL9.8The unofficial GLSL Linting extension before 1.4.0 for Visual Studio Code allows remote code execution via a crafted gls...
CVE-2021-21524CRITICAL9.8Dell SRM versions prior to 4.5.0.1 and Dell SMR versions prior to 4.5.0.1 contain an Untrusted Deserialization Vulnerabi...
CVE-2021-24229CRITICAL9.6The Jetpack Scan team identified a Reflected Cross-Site Scripting via the patreon_save_attachment_patreon_level AJAX act...
CVE-2021-24228CRITICAL9.6The Jetpack Scan team identified a Reflected Cross-Site Scripting in the Login Form of the Patreon WordPress plugin befo...
CVE-2021-24223CRITICAL9.8The N5 Upload Form WordPress plugin through 1.0 suffers from an arbitrary file upload issue in page where a Form from th...
CVE-2021-24222CRITICAL9.8The WP-Curriculo Vitae Free WordPress plugin through 6.3 suffers from an arbitrary file upload issue in page where the [...
CVE-2021-24220CRITICAL9.1Thrive “Legacy” Rise by Thrive Themes WordPress theme before 2.0.0, Luxe by Thrive Themes WordPress theme before 2.0.0, ...
CVE-2021-24215CRITICAL9.8An Improper Access Control vulnerability was discovered in the Controlled Admin Access WordPress plugin before 1.5.2. Un...
CVE-2021-23370CRITICAL9.8This affects the package swiper before 6.5.1.
CVE-2021-23369CRITICAL9.8The package handlebars before 4.7.7 are vulnerable to Remote Code Execution (RCE) when selecting certain compiling optio...
CVE-2021-28879CRITICAL9.8In the standard library in Rust before 1.52.0, the Zip implementation can report an incorrect size due to an integer ove...
CVE-2021-30481CRITICAL9Valve Steam before 2021-04-17, when a Source engine game is installed, allows remote authenticated users to execute arbi...
CVE-2021-20020CRITICAL9.8A command execution vulnerability in SonicWall GMS 9.3 allows a remote unauthenticated attacker to locally escalate priv...
CVE-2021-25360CRITICAL9.8An improper input validation vulnerability in libswmfextractor library prior to SMR APR-2021 Release 1 allows attackers ...
CVE-2021-20021CRITICAL9.8A vulnerability in the SonicWall Email Security version 10.0.9.x allows an attacker to create an administrative account ...
CVE-2021-22507CRITICAL9.8Authentication bypass vulnerability in Micro Focus Operations Bridge Manager affects versions 2019.05, 2019.11, 2020.05 ...
CVE-2021-28925CRITICAL9.8SQL injection vulnerability in Nagios Network Analyzer before 2.4.3 via the o[col] parameter to api/checks/read/.
CVE-2021-1479CRITICAL9.8Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arb...
CVE-2021-1473CRITICAL9.8Multiple vulnerabilities exist in the web-based management interface of Cisco Small Business RV Series Routers. A remote...
CVE-2021-1472CRITICAL9.8Multiple vulnerabilities exist in the web-based management interface of Cisco Small Business RV Series Routers. A remote...
CVE-2021-1459CRITICAL9.8A vulnerability in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers ...
CVE-2021-30457CRITICAL9.8An issue was discovered in the id-map crate through 2021-02-26 for Rust. A double free can occur in remove_set upon a pa...
CVE-2021-30456CRITICAL9.8An issue was discovered in the id-map crate through 2021-02-26 for Rust. A double free can occur in get_or_insert upon a...
CVE-2021-30455CRITICAL9.8An issue was discovered in the id-map crate through 2021-02-26 for Rust. A double free can occur in IdMap::clone_from up...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now