2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2021-27274CRITICAL9.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of NETGEAR ProSAFE Networ...
CVE-2021-28673CRITICAL9.8Xerox Phaser 6510 before 64.61.23 and 64.59.11 (Bridge), WorkCentre 6515 before 65.61.23 and 65.59.11 (Bridge), VersaLin...
CVE-2021-28668CRITICAL9.8Xerox AltaLink B80xx before 103.008.020.23120, C8030/C8035 before 103.001.020.23120, C8045/C8055 before 103.002.020.2312...
CVE-2021-26714CRITICAL9.8The Enterprise License Manager portal in Mitel MiContact Center Enterprise before 9.4 could allow a user to access restr...
CVE-2021-29417CRITICAL9.8gitjacker before 0.1.0 allows remote attackers to execute arbitrary code via a crafted .git directory because of directo...
CVE-2021-28670CRITICAL9.1Xerox AltaLink B8045/B8090 before 103.008.030.32000, C8030/C8035 before 103.001.030.32000, C8045/C8055 before 103.002.03...
CVE-2021-21403CRITICAL9.8In github.com/kongchuanhujiao/server before version 1.3.21 there is an authentication Bypass by Primary Weakness vulnera...
CVE-2021-1628CRITICAL9.8MuleSoft is aware of a XML External Entity (XXE) vulnerability affecting certain versions of a Mule runtime component th...
CVE-2021-1627CRITICAL9.8MuleSoft is aware of a Server Side Request Forgery vulnerability affecting certain versions of a Mule runtime component ...
CVE-2021-1626CRITICAL9.8MuleSoft is aware of a Remote Code Execution vulnerability affecting certain versions of a Mule runtime component that m...
CVE-2021-27372CRITICAL9.8Realtek xPON RTL9601D SDK 1.9 stores passwords in plaintext which may allow attackers to possibly gain access to the dev...
CVE-2021-27440CRITICAL9.8The software contains a hard-coded password it uses for its own inbound authentication or for outbound communication to ...
CVE-2021-3466CRITICAL9.8A flaw was found in libmicrohttpd. A missing bounds check in the post_process_urlencoded function leads to a buffer over...
CVE-2021-27193CRITICAL9.8Incorrect default permissions vulnerability in the API of Netop Vision Pro up to and including 9.7.1 allows a remote una...
CVE-2021-21783CRITICAL9.8A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially cr...
CVE-2021-26715CRITICAL9.1The OpenID Connect server implementation for MITREid Connect through 1.3.3 contains a Server Side Request Forgery (SSRF)...
CVE-2021-21386CRITICAL9.8APKLeaks is an open-source project for scanning APK file for URIs, endpoints & secrets. APKLeaks prior to v2.0.3 allows ...
CVE-2021-1411CRITICAL9.9Multiple vulnerabilities in Cisco Jabber for Windows, Cisco Jabber for MacOS, and Cisco Jabber for mobile platforms coul...
CVE-2021-1451CRITICAL9.8A vulnerability in the Easy Virtual Switching System (VSS) feature of Cisco IOS XE Software for Cisco Catalyst 4500 Seri...
CVE-2021-28967CRITICAL9.8The unofficial MATLAB extension before 2.0.1 for Visual Studio Code allows attackers to execute arbitrary code via a cra...
CVE-2021-23274CRITICAL9.8The Config UI component of TIBCO Software Inc.'s TIBCO API Exchange Gateway and TIBCO API Exchange Gateway Distribution ...
CVE-2021-29079CRITICAL9.6Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK852 before 3.2...
CVE-2021-29078CRITICAL9.6Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK852 before 3.2...
CVE-2021-29077CRITICAL9.6Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBW30 before 2.6....
CVE-2021-29076CRITICAL9.6Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK852 before 3.2...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now