2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-43947HIGH7.2Affected versions of Atlassian Jira Server and Data Center allow remote attackers with administrator privileges to execu...
CVE-2021-45971HIGH8.2An issue was discovered in SdHostDriver in Insyde InsydeH2O with kernel 5.1 before 05.16.25, 5.2 before 05.26.25, 5.3 be...
CVE-2021-45970HIGH8.2An issue was discovered in IdeBusDxe in Insyde InsydeH2O with kernel 5.1 before 05.16.25, 5.2 before 05.26.25, 5.3 befor...
CVE-2021-45969HIGH8.2An issue was discovered in AhciBusDxe in Insyde InsydeH2O with kernel 5.1 before 05.16.25, 5.2 before 05.26.25, 5.3 befo...
CVE-2021-38918HIGH7.5IBM PowerVM Hypervisor FW860, FW940, FW950, and FW1010, through a specific sequence of VM management operations could le...
CVE-2021-45116HIGH7.5An issue was discovered in Django 2.2 before 2.2.26, 3.2 before 3.2.11, and 4.0 before 4.0.1. Due to leveraging the Djan...
CVE-2021-45115HIGH7.5An issue was discovered in Django 2.2 before 2.2.26, 3.2 before 3.2.11, and 4.0 before 4.0.1. UserAttributeSimilarityVal...
CVE-2021-41388HIGH7.8Netskope client prior to 89.x on macOS is impacted by a local privilege escalation vulnerability. The XPC implementation...
CVE-2021-22045HIGH7.8VMware ESXi (7.0, 6.7 before ESXi670-202111101-SG and 6.5 before ESXi650-202110101-SG), VMware Workstation (16.2.0) and ...
CVE-2021-43852HIGH8.8OroPlatform is a PHP Business Application Platform. In affected versions by sending a specially crafted request, an atta...
CVE-2021-41141HIGH7.5PJSIP is a free and open source multimedia communication library written in the C language implementing standard based p...
CVE-2021-39143HIGH7.1Spinnaker is an open source, multi-cloud continuous delivery platform. A path traversal vulnerability was discovered in ...
CVE-2021-3845HIGH7.5ws-scrcpy is vulnerable to External Control of File Name or Path
CVE-2021-45912HIGH7.8An unauthenticated Named Pipe channel in Controlup Real-Time Agent (cuAgent.exe) before 8.5 potentially allows an attack...
CVE-2021-40148HIGH7.5In Modem EMM, there is a possible information disclosure due to a missing data encryption. This could lead to remote inf...
CVE-2021-45980HIGH7.8Foxit PDF Reader and PDF Editor before 11.1 on macOS allow remote attackers to execute arbitrary code via getURL in the ...
CVE-2021-45979HIGH7.8Foxit PDF Reader and PDF Editor before 11.1 on macOS allow remote attackers to execute arbitrary code via app.launchURL ...
CVE-2021-45978HIGH7.8Foxit PDF Reader and PDF Editor before 11.1 on macOS allow remote attackers to execute arbitrary code via xfa.host.gotoU...
CVE-2021-45913HIGH7.2A hardcoded key in ControlUp Real-Time Agent (cuAgent.exe) before 8.2.5 may allow a potential attacker to run OS command...
CVE-2021-3842HIGH7.5nltk is vulnerable to Inefficient Regular Expression Complexity
CVE-2021-44168HIGH7.8A download of code without integrity check vulnerability in the "execute restore src-vis" command of FortiOS before 7.0....
CVE-2021-31833HIGH7.8Potential product security bypass vulnerability in McAfee Application and Change Control (MACC) prior to version 8.3.4 a...
CVE-2021-40110HIGH7.5In Apache James, using Jazzer fuzzer, we identified that an IMAP user can craft IMAP LIST commands to orchestrate a Deni...
CVE-2021-34797HIGH7.5Apache Geode versions up to 1.12.4 and 1.13.4 are vulnerable to a log file redaction of sensitive information flaw when ...
CVE-2021-39989HIGH7.5The HwNearbyMain module has a Exposure of Sensitive Information to an Unauthorized Actor vulnerability.Successful exploi...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now