2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-44030 | MEDIUM | 6.1 | 4.2% | Dec 22, 2021 | Quest KACE Desktop Authority before 11.2 allows XSS because it does not prevent untrusted HTML from reaching the jQuery.... |
| CVE-2021-44028 | MEDIUM | 5.5 | 3.0% | Dec 22, 2021 | XXE can occur in Quest KACE Desktop Authority before 11.2 because the log4net configuration file might be controlled by ... |
| CVE-2021-44927 | MEDIUM | 5.5 | 0.7% | Dec 21, 2021 | A null pointer dereference vulnerability exists in gpac 1.1.0 in the gf_sg_vrml_mf_append function, which causes a segme... |
| CVE-2021-44926 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A null pointer dereference vulnerability exists in gpac 1.1.0-DEV in the gf_node_get_tag function, which causes a segmen... |
| CVE-2021-44925 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A null pointer dereference vulnerability exists in gpac 1.1.0 in the gf_svg_get_attribute_name function, which causes a ... |
| CVE-2021-44924 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | An infinite loop vulnerability exists in gpac 1.1.0 in the gf_log function, which causes a Denial of Service. |
| CVE-2021-44923 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A null pointer dereference vulnerability exists in gpac 1.1.0 in the gf_dump_vrml_dyn_field.isra function, which causes ... |
| CVE-2021-44922 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A null pointer dereference vulnerability exists in gpac 1.1.0 in the BD_CheckSFTimeOffset function, which causes a segme... |
| CVE-2021-44921 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A null pointer dereference vulnerability exists in gpac 1.1.0 in the gf_isom_parse_movie_boxes_internal function, which ... |
| CVE-2021-44920 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | An invalid memory address dereference vulnerability exists in gpac 1.1.0 in the dump_od_to_saf.isra function, which caus... |
| CVE-2021-44919 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A Null Pointer Dereference vulnerability exists in the gf_sg_vrml_mf_alloc function in gpac 1.1.0-DEV, which causes a se... |
| CVE-2021-44918 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A Null Pointer Dereference vulnerability exists in gpac 1.1.0 in the gf_node_get_field function, which can cause a segme... |
| CVE-2021-44917 | MEDIUM | 5.5 | 0.7% | Dec 21, 2021 | A Divide by Zero vulnerability exists in gnuplot 5.4 in the boundary3d function in graph3d.c, which could cause a Arithm... |
| CVE-2021-45297 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | An infinite loop vulnerability exists in Gpac 1.0.1 in gf_get_bit_size. |
| CVE-2021-38966 | MEDIUM | 5.4 | 0.5% | Dec 21, 2021 | IBM Cloud Pak for Automation 21.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbi... |
| CVE-2021-38900 | MEDIUM | 6.5 | 1.1% | Dec 21, 2021 | IBM Business Process Manager 8.5 and 8.6 and IBM Business Automation Workflow 18.0, 19.0, 20.0 and 21.0 could allow a pr... |
| CVE-2021-38893 | MEDIUM | 5.4 | 0.7% | Dec 21, 2021 | IBM Business Process Manager 8.5 and 8.6 and IBM Business Automation Workflow 18.0, 19.0, 20.0 and 21.0 are vulnerable t... |
| CVE-2021-45293 | MEDIUM | 5.5 | 0.8% | Dec 21, 2021 | A Denial of Service vulnerability exists in Binaryen 103 due to an Invalid memory address dereference in wasm::WasmBinar... |
| CVE-2021-45292 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | The gf_isom_hint_rtp_read function in GPAC 1.0.1 allows attackers to cause a denial of service (Invalid memory address d... |
| CVE-2021-45291 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | The gf_dump_setup function in GPAC 1.0.1 allows malicoius users to cause a denial of service (Invalid memory address der... |
| CVE-2021-45289 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A vulnerability exists in GPAC 1.0.1 due to an omission of security-relevant Information, which could cause a Denial of ... |
| CVE-2021-45288 | MEDIUM | 5.5 | 0.6% | Dec 21, 2021 | A Double Free vulnerability exists in filedump.c in GPAC 1.0.1, which could cause a Denail of Service via a crafted file... |
| CVE-2021-44876 | MEDIUM | 5.3 | 0.8% | Dec 21, 2021 | Dalmark Systems Systeam 2.22.8 build 1724 is vulnerable to User enumeration. The Systeam application is an ERP system th... |
| CVE-2021-44875 | MEDIUM | 5.3 | 0.8% | Dec 21, 2021 | Dalmark Systems Systeam 2.22.8 build 1724 is vulnerable to User enumeration. The Systeam application is an ERP system th... |
| CVE-2021-43587 | MEDIUM | 6.7 | 0.2% | Dec 21, 2021 | Dell PowerPath Management Appliance, versions 3.2, 3.1, 3.0 P01, 3.0, and 2.6, use hard-coded cryptographic key. A local... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now