2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-1140 | CRITICAL | 9.8 | 4.4% | Jan 20, 2021 | Multiple vulnerabilities in the web UI of Cisco Smart Software Manager Satellite could allow an unauthenticated, remote ... |
| CVE-2021-1138 | CRITICAL | 9.8 | 4.4% | Jan 20, 2021 | Multiple vulnerabilities in the web UI of Cisco Smart Software Manager Satellite could allow an unauthenticated, remote ... |
| CVE-2021-1301 | CRITICAL | 9.8 | 2.1% | Jan 20, 2021 | Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute attacks aga... |
| CVE-2021-1300 | CRITICAL | 9.8 | 2.1% | Jan 20, 2021 | Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute attacks aga... |
| CVE-2021-2108 | CRITICAL | 9.8 | 3.7% | Jan 20, 2021 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core Components). The suppor... |
| CVE-2021-2101 | CRITICAL | 9.1 | 1.5% | Jan 20, 2021 | Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). Support... |
| CVE-2021-2100 | CRITICAL | 9.1 | 1.5% | Jan 20, 2021 | Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). Support... |
| CVE-2021-2075 | CRITICAL | 9.8 | 3.8% | Jan 20, 2021 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Samples). Supported versions... |
| CVE-2021-2064 | CRITICAL | 9.8 | 3.7% | Jan 20, 2021 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core Components). The suppor... |
| CVE-2021-2047 | CRITICAL | 9.8 | 3.8% | Jan 20, 2021 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core Components). Supported ... |
| CVE-2021-2029 | CRITICAL | 9.8 | 1.7% | Jan 20, 2021 | Vulnerability in the Oracle Scripting product of Oracle E-Business Suite (component: Miscellaneous). Supported versions ... |
| CVE-2021-1994 | CRITICAL | 9.8 | 5.5% | Jan 20, 2021 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Services). Supported ver... |
| CVE-2021-3110 | CRITICAL | 9.8 | 20.7% | Jan 20, 2021 | The store system in PrestaShop 1.7.7.0 allows time-based boolean SQL injection via the module=productcomments controller... |
| CVE-2021-25323 | CRITICAL | 9.1 | 1.3% | Jan 19, 2021 | The default setting of MISP 2.4.136 did not enable the requirements (aka require_password_confirmation) to provide the p... |
| CVE-2021-22851 | CRITICAL | 9.8 | 1.2% | Jan 19, 2021 | HGiga EIP product contains SQL Injection vulnerability. Attackers can inject SQL commands into specific URL parameter (d... |
| CVE-2021-22850 | CRITICAL | 9.8 | 1.0% | Jan 19, 2021 | HGiga EIP product lacks ineffective access control in certain pages that allow attackers to access database or perform p... |
| CVE-2021-3177 | CRITICAL | 9.8 | 23.3% | Jan 19, 2021 | Python 3.x through 3.9.1 has a buffer overflow in PyCArg_repr in _ctypes/callproc.c, which may lead to remote code execu... |
| CVE-2021-25294 | CRITICAL | 9.8 | 10.7% | Jan 18, 2021 | OpenCATS through 0.9.5-3 unsafely deserializes index.php?m=activity requests, leading to remote code execution. This occ... |
| CVE-2021-21245 | CRITICAL | 9.8 | 1.2% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, AttachmentUploadServlet also saves user control... |
| CVE-2021-21242 | CRITICAL | 9.8 | 74.2% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, there is a critical vulnerability which can lea... |
| CVE-2021-21244 | CRITICAL | 9.8 | 1.5% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, There is a vulnerability that enabled pre-auth ... |
| CVE-2021-21243 | CRITICAL | 9.8 | 54.5% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, a Kubernetes REST endpoint exposes two methods ... |
| CVE-2021-0211 | CRITICAL | 10 | 1.3% | Jan 15, 2021 | An improper check for unusual or exceptional conditions in Juniper Networks Junos OS and Junos OS Evolved Routing Protoc... |
| CVE-2021-23926 | CRITICAL | 9.1 | 6.3% | Jan 14, 2021 | The XML parsers used by XMLBeans up to version 2.6.0 did not set the properties needed to protect the user from maliciou... |
| CVE-2021-20618 | CRITICAL | 9.8 | 3.3% | Jan 14, 2021 | Privilege chaining vulnerability in acmailer ver. 4.0.2 and earlier, and acmailer DB ver. 1.1.4 and earlier allows remot... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now