2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-27274 | CRITICAL | 9.8 | 8.2% | Mar 29, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR ProSAFE Networ... |
| CVE-2021-28673 | CRITICAL | 9.8 | 1.9% | Mar 29, 2021 | Xerox Phaser 6510 before 64.61.23 and 64.59.11 (Bridge), WorkCentre 6515 before 65.61.23 and 65.59.11 (Bridge), VersaLin... |
| CVE-2021-28668 | CRITICAL | 9.8 | 1.0% | Mar 29, 2021 | Xerox AltaLink B80xx before 103.008.020.23120, C8030/C8035 before 103.001.020.23120, C8045/C8055 before 103.002.020.2312... |
| CVE-2021-26714 | CRITICAL | 9.8 | 2.5% | Mar 29, 2021 | The Enterprise License Manager portal in Mitel MiContact Center Enterprise before 9.4 could allow a user to access restr... |
| CVE-2021-29417 | CRITICAL | 9.8 | 3.8% | Mar 29, 2021 | gitjacker before 0.1.0 allows remote attackers to execute arbitrary code via a crafted .git directory because of directo... |
| CVE-2021-28670 | CRITICAL | 9.1 | 1.0% | Mar 29, 2021 | Xerox AltaLink B8045/B8090 before 103.008.030.32000, C8030/C8035 before 103.001.030.32000, C8045/C8055 before 103.002.03... |
| CVE-2021-21403 | CRITICAL | 9.8 | 1.4% | Mar 26, 2021 | In github.com/kongchuanhujiao/server before version 1.3.21 there is an authentication Bypass by Primary Weakness vulnera... |
| CVE-2021-1628 | CRITICAL | 9.8 | 1.2% | Mar 26, 2021 | MuleSoft is aware of a XML External Entity (XXE) vulnerability affecting certain versions of a Mule runtime component th... |
| CVE-2021-1627 | CRITICAL | 9.8 | 1.0% | Mar 26, 2021 | MuleSoft is aware of a Server Side Request Forgery vulnerability affecting certain versions of a Mule runtime component ... |
| CVE-2021-1626 | CRITICAL | 9.8 | 2.0% | Mar 26, 2021 | MuleSoft is aware of a Remote Code Execution vulnerability affecting certain versions of a Mule runtime component that m... |
| CVE-2021-27372 | CRITICAL | 9.8 | 1.6% | Mar 25, 2021 | Realtek xPON RTL9601D SDK 1.9 stores passwords in plaintext which may allow attackers to possibly gain access to the dev... |
| CVE-2021-27440 | CRITICAL | 9.8 | 1.4% | Mar 25, 2021 | The software contains a hard-coded password it uses for its own inbound authentication or for outbound communication to ... |
| CVE-2021-3466 | CRITICAL | 9.8 | 8.7% | Mar 25, 2021 | A flaw was found in libmicrohttpd. A missing bounds check in the post_process_urlencoded function leads to a buffer over... |
| CVE-2021-27193 | CRITICAL | 9.8 | 1.5% | Mar 25, 2021 | Incorrect default permissions vulnerability in the API of Netop Vision Pro up to and including 9.7.1 allows a remote una... |
| CVE-2021-21783 | CRITICAL | 9.8 | 5.0% | Mar 25, 2021 | A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially cr... |
| CVE-2021-26715 | CRITICAL | 9.1 | 1.5% | Mar 25, 2021 | The OpenID Connect server implementation for MITREid Connect through 1.3.3 contains a Server Side Request Forgery (SSRF)... |
| CVE-2021-21386 | CRITICAL | 9.8 | 2.3% | Mar 24, 2021 | APKLeaks is an open-source project for scanning APK file for URIs, endpoints & secrets. APKLeaks prior to v2.0.3 allows ... |
| CVE-2021-1411 | CRITICAL | 9.9 | 1.4% | Mar 24, 2021 | Multiple vulnerabilities in Cisco Jabber for Windows, Cisco Jabber for MacOS, and Cisco Jabber for mobile platforms coul... |
| CVE-2021-1451 | CRITICAL | 9.8 | 3.2% | Mar 24, 2021 | A vulnerability in the Easy Virtual Switching System (VSS) feature of Cisco IOS XE Software for Cisco Catalyst 4500 Seri... |
| CVE-2021-28967 | CRITICAL | 9.8 | 2.0% | Mar 24, 2021 | The unofficial MATLAB extension before 2.0.1 for Visual Studio Code allows attackers to execute arbitrary code via a cra... |
| CVE-2021-23274 | CRITICAL | 9.8 | 1.2% | Mar 23, 2021 | The Config UI component of TIBCO Software Inc.'s TIBCO API Exchange Gateway and TIBCO API Exchange Gateway Distribution ... |
| CVE-2021-29079 | CRITICAL | 9.6 | 0.7% | Mar 23, 2021 | Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK852 before 3.2... |
| CVE-2021-29078 | CRITICAL | 9.6 | 0.8% | Mar 23, 2021 | Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK852 before 3.2... |
| CVE-2021-29077 | CRITICAL | 9.6 | 0.8% | Mar 23, 2021 | Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBW30 before 2.6.... |
| CVE-2021-29076 | CRITICAL | 9.6 | 0.8% | Mar 23, 2021 | Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK852 before 3.2... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now