2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-43947 | HIGH | 7.2 | 4.1% | Jan 6, 2022 | Affected versions of Atlassian Jira Server and Data Center allow remote attackers with administrator privileges to execu... |
| CVE-2021-45971 | HIGH | 8.2 | 0.3% | Jan 6, 2022 | An issue was discovered in SdHostDriver in Insyde InsydeH2O with kernel 5.1 before 05.16.25, 5.2 before 05.26.25, 5.3 be... |
| CVE-2021-45970 | HIGH | 8.2 | 0.3% | Jan 5, 2022 | An issue was discovered in IdeBusDxe in Insyde InsydeH2O with kernel 5.1 before 05.16.25, 5.2 before 05.26.25, 5.3 befor... |
| CVE-2021-45969 | HIGH | 8.2 | 0.3% | Jan 5, 2022 | An issue was discovered in AhciBusDxe in Insyde InsydeH2O with kernel 5.1 before 05.16.25, 5.2 before 05.26.25, 5.3 befo... |
| CVE-2021-38918 | HIGH | 7.5 | 1.2% | Jan 5, 2022 | IBM PowerVM Hypervisor FW860, FW940, FW950, and FW1010, through a specific sequence of VM management operations could le... |
| CVE-2021-45116 | HIGH | 7.5 | 1.8% | Jan 5, 2022 | An issue was discovered in Django 2.2 before 2.2.26, 3.2 before 3.2.11, and 4.0 before 4.0.1. Due to leveraging the Djan... |
| CVE-2021-45115 | HIGH | 7.5 | 2.4% | Jan 5, 2022 | An issue was discovered in Django 2.2 before 2.2.26, 3.2 before 3.2.11, and 4.0 before 4.0.1. UserAttributeSimilarityVal... |
| CVE-2021-41388 | HIGH | 7.8 | 0.2% | Jan 4, 2022 | Netskope client prior to 89.x on macOS is impacted by a local privilege escalation vulnerability. The XPC implementation... |
| CVE-2021-22045 | HIGH | 7.8 | 4.7% | Jan 4, 2022 | VMware ESXi (7.0, 6.7 before ESXi670-202111101-SG and 6.5 before ESXi650-202110101-SG), VMware Workstation (16.2.0) and ... |
| CVE-2021-43852 | HIGH | 8.8 | 1.1% | Jan 4, 2022 | OroPlatform is a PHP Business Application Platform. In affected versions by sending a specially crafted request, an atta... |
| CVE-2021-41141 | HIGH | 7.5 | 1.4% | Jan 4, 2022 | PJSIP is a free and open source multimedia communication library written in the C language implementing standard based p... |
| CVE-2021-39143 | HIGH | 7.1 | 0.3% | Jan 4, 2022 | Spinnaker is an open source, multi-cloud continuous delivery platform. A path traversal vulnerability was discovered in ... |
| CVE-2021-3845 | HIGH | 7.5 | 1.2% | Jan 4, 2022 | ws-scrcpy is vulnerable to External Control of File Name or Path |
| CVE-2021-45912 | HIGH | 7.8 | 0.3% | Jan 4, 2022 | An unauthenticated Named Pipe channel in Controlup Real-Time Agent (cuAgent.exe) before 8.5 potentially allows an attack... |
| CVE-2021-40148 | HIGH | 7.5 | 0.7% | Jan 4, 2022 | In Modem EMM, there is a possible information disclosure due to a missing data encryption. This could lead to remote inf... |
| CVE-2021-45980 | HIGH | 7.8 | 1.5% | Jan 4, 2022 | Foxit PDF Reader and PDF Editor before 11.1 on macOS allow remote attackers to execute arbitrary code via getURL in the ... |
| CVE-2021-45979 | HIGH | 7.8 | 1.5% | Jan 4, 2022 | Foxit PDF Reader and PDF Editor before 11.1 on macOS allow remote attackers to execute arbitrary code via app.launchURL ... |
| CVE-2021-45978 | HIGH | 7.8 | 1.5% | Jan 4, 2022 | Foxit PDF Reader and PDF Editor before 11.1 on macOS allow remote attackers to execute arbitrary code via xfa.host.gotoU... |
| CVE-2021-45913 | HIGH | 7.2 | 1.0% | Jan 4, 2022 | A hardcoded key in ControlUp Real-Time Agent (cuAgent.exe) before 8.2.5 may allow a potential attacker to run OS command... |
| CVE-2021-3842 | HIGH | 7.5 | 1.5% | Jan 4, 2022 | nltk is vulnerable to Inefficient Regular Expression Complexity |
| CVE-2021-44168 | HIGH | 7.8 | 0.9% | Jan 4, 2022 | A download of code without integrity check vulnerability in the "execute restore src-vis" command of FortiOS before 7.0.... |
| CVE-2021-31833 | HIGH | 7.8 | 0.3% | Jan 4, 2022 | Potential product security bypass vulnerability in McAfee Application and Change Control (MACC) prior to version 8.3.4 a... |
| CVE-2021-40110 | HIGH | 7.5 | 2.9% | Jan 4, 2022 | In Apache James, using Jazzer fuzzer, we identified that an IMAP user can craft IMAP LIST commands to orchestrate a Deni... |
| CVE-2021-34797 | HIGH | 7.5 | 2.9% | Jan 4, 2022 | Apache Geode versions up to 1.12.4 and 1.13.4 are vulnerable to a log file redaction of sensitive information flaw when ... |
| CVE-2021-39989 | HIGH | 7.5 | 0.7% | Jan 3, 2022 | The HwNearbyMain module has a Exposure of Sensitive Information to an Unauthorized Actor vulnerability.Successful exploi... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now