2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-25916 | CRITICAL | 9.8 | 3.5% | Mar 16, 2021 | Prototype pollution vulnerability in 'patchmerge' versions 1.0.0 through 1.0.1 allows an attacker to cause a denial of s... |
| CVE-2021-26987 | CRITICAL | 9.8 | 2.4% | Mar 15, 2021 | Element Plug-in for vCenter Server incorporates SpringBoot Framework. SpringBoot Framework versions prior to 1.3.2 are s... |
| CVE-2021-27817 | CRITICAL | 9.8 | 3.2% | Mar 15, 2021 | A remote command execution vulnerability in shopxo 1.9.3 allows an attacker to upload malicious code generated by phar w... |
| CVE-2021-23356 | CRITICAL | 9.8 | 1.1% | Mar 15, 2021 | This affects all versions of package kill-process-by-name. If (attacker-controlled) user input is given, it is possible ... |
| CVE-2021-23355 | CRITICAL | 9.8 | 1.2% | Mar 15, 2021 | This affects all versions of package ps-kill. If (attacker-controlled) user input is given to the kill function, it is p... |
| CVE-2021-20232 | CRITICAL | 9.8 | 3.4% | Mar 12, 2021 | A flaw was found in gnutls. A use after free issue in client_send_params in lib/ext/pre_shared_key.c may lead to memory ... |
| CVE-2021-20231 | CRITICAL | 9.8 | 3.8% | Mar 12, 2021 | A flaw was found in gnutls. A use after free issue in client sending key_share extension may lead to memory corruption a... |
| CVE-2021-28308 | CRITICAL | 9.1 | 1.3% | Mar 12, 2021 | An issue was discovered in the fltk crate before 0.15.3 for Rust. There is an out-of bounds read because the pixmap cons... |
| CVE-2021-28305 | CRITICAL | 9.8 | 1.3% | Mar 12, 2021 | An issue was discovered in the diesel crate before 1.4.6 for Rust. There is a use-after-free in the SQLite backend becau... |
| CVE-2021-27647 | CRITICAL | 9.8 | 3.1% | Mar 12, 2021 | Out-of-bounds Read vulnerability in iscsi_snapshot_comm_core in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 ... |
| CVE-2021-27646 | CRITICAL | 9.8 | 3.8% | Mar 12, 2021 | Use After Free vulnerability in iscsi_snapshot_comm_core in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allo... |
| CVE-2021-28154 | CRITICAL | 9.1 | 1.5% | Mar 11, 2021 | Camunda Modeler (aka camunda-modeler) through 4.6.0 allows arbitrary file access. A remote attacker may send a crafted I... |
| CVE-2021-22714 | CRITICAL | 9.8 | 2.4% | Mar 11, 2021 | A CWE-119:Improper restriction of operations within the bounds of a memory buffer vulnerability exists in PowerLogic ION... |
| CVE-2021-28141 | CRITICAL | 9.8 | 2.2% | Mar 11, 2021 | An issue was discovered in Progress Telerik UI for ASP.NET AJAX 2021.1.224. It allows unauthorized access to MicrosoftAj... |
| CVE-2021-27080 | CRITICAL | 9.3 | 1.2% | Mar 11, 2021 | Azure Sphere Unsigned Code Execution Vulnerability |
| CVE-2021-26897 | CRITICAL | 9.8 | 13.9% | Mar 11, 2021 | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2021-26895 | CRITICAL | 9.8 | 6.8% | Mar 11, 2021 | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2021-26894 | CRITICAL | 9.8 | 6.8% | Mar 11, 2021 | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2021-26893 | CRITICAL | 9.8 | 6.4% | Mar 11, 2021 | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2021-26877 | CRITICAL | 9.8 | 19.3% | Mar 11, 2021 | Windows DNS Server Remote Code Execution Vulnerability |
| CVE-2021-26867 | CRITICAL | 9.9 | 2.6% | Mar 11, 2021 | Windows Hyper-V Remote Code Execution Vulnerability |
| CVE-2021-28132 | CRITICAL | 9.8 | 3.2% | Mar 11, 2021 | LUCY Security Awareness Software through 4.7.x allows unauthenticated remote code execution because the Migration Tool (... |
| CVE-2021-28134 | CRITICAL | 9.8 | 5.2% | Mar 11, 2021 | Clipper before 1.0.5 allows remote command execution. A remote attacker may send a crafted IPC message to the exposed vu... |
| CVE-2021-24030 | CRITICAL | 9.8 | 1.7% | Mar 10, 2021 | The fbgames protocol handler registered as part of Facebook Gameroom does not properly quote arguments passed to the exe... |
| CVE-2021-24025 | CRITICAL | 9.8 | 1.7% | Mar 10, 2021 | Due to incorrect string size calculations inside the preg_quote function, a large input string passed to the function ca... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now