2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-40453 | HIGH | 7.8 | 2.2% | Dec 15, 2021 | HEVC Video Extensions Remote Code Execution Vulnerability |
| CVE-2021-40452 | HIGH | 7.8 | 2.5% | Dec 15, 2021 | HEVC Video Extensions Remote Code Execution Vulnerability |
| CVE-2021-40441 | HIGH | 7.8 | 0.7% | Dec 15, 2021 | Windows Media Center Elevation of Privilege Vulnerability |
| CVE-2021-45043 | HIGH | 7.5 | 33.1% | Dec 15, 2021 | HD-Network Real-time Monitoring System 2.0 allows ../ directory traversal to read /etc/shadow via the /language/lang s_L... |
| CVE-2021-43326 | HIGH | 7.8 | 1.2% | Dec 15, 2021 | Automox Agent before 32 on Windows incorrectly sets permissions on a temporary directory. |
| CVE-2021-43325 | HIGH | 7.8 | 0.2% | Dec 15, 2021 | Automox Agent 33 on Windows incorrectly sets permissions on a temporary directory. NOTE: this issue exists because of a ... |
| CVE-2021-40827 | HIGH | 7.8 | 1.2% | Dec 15, 2021 | Clementine Music Player through 1.3.1 (when a GLib 2.0.0 DLL is used) is vulnerable to a Read Access Violation on Block ... |
| CVE-2021-40826 | HIGH | 7.8 | 1.2% | Dec 15, 2021 | Clementine Music Player through 1.3.1 is vulnerable to a User Mode Write Access Violation, affecting the MP3 file parsin... |
| CVE-2021-41870 | HIGH | 8.8 | 1.1% | Dec 15, 2021 | An issue was discovered in the firmware update form in Socomec REMOTE VIEW PRO 2.0.41.4. An authenticated attacker can b... |
| CVE-2021-4110 | HIGH | 7.5 | 1.6% | Dec 15, 2021 | mruby is vulnerable to NULL Pointer Dereference |
| CVE-2021-43830 | HIGH | 8.8 | 0.9% | Dec 14, 2021 | OpenProject is a web-based project management software. OpenProject versions >= 12.0.0 are vulnerable to a SQL injection... |
| CVE-2021-43829 | HIGH | 8.8 | 59.2% | Dec 14, 2021 | PatrOwl is a free and open-source solution for orchestrating Security Operations. In versions prior to 1.7.7 PatrowlMana... |
| CVE-2021-43828 | HIGH | 7.5 | 1.4% | Dec 14, 2021 | PatrOwl is a free and open-source solution for orchestrating Security Operations. In versions prior to 1.77 an improper ... |
| CVE-2021-43821 | HIGH | 7.7 | 2.0% | Dec 14, 2021 | Opencast is an Open Source Lecture Capture & Video Management for Education. Opencast before version 9.10 or 10.6 allows... |
| CVE-2021-34426 | HIGH | 7.8 | 0.2% | Dec 14, 2021 | A vulnerability was discovered in the Keybase Client for Windows before version 5.6.0 when a user executed the "keybase ... |
| CVE-2021-4044 | HIGH | 7.5 | 50.1% | Dec 14, 2021 | Internally libssl in OpenSSL calls X509_verify_cert() on the client side to verify a certificate supplied by a server. T... |
| CVE-2021-43388 | HIGH | 7.5 | 0.6% | Dec 14, 2021 | Unisys Cargo Mobile Application before 1.2.29 uses cleartext to store sensitive information, which might be revealed in ... |
| CVE-2021-38950 | HIGH | 7.8 | 0.2% | Dec 14, 2021 | IBM MQ on HPE NonStop 8.0.4 and 8.1.0 is vulnerable to a privilege escalation attack when SharedBindingsUserId is set to... |
| CVE-2021-4073 | HIGH | 8.1 | 7.0% | Dec 14, 2021 | The RegistrationMagic WordPress plugin made it possible for unauthenticated users to log in as any site user, including ... |
| CVE-2021-44549 | HIGH | 7.4 | 1.9% | Dec 14, 2021 | Apache Sling Commons Messaging Mail provides a simple layer on top of JavaMail/Jakarta Mail for OSGi to send mails via S... |
| CVE-2021-44233 | HIGH | 8.8 | 0.8% | Dec 14, 2021 | SAP GRC Access Control - versions V1100_700, V1100_731, V1200_750, does not perform necessary authorization checks for a... |
| CVE-2021-44232 | HIGH | 7.7 | 1.0% | Dec 14, 2021 | SAF-T Framework Transaction SAFTN_G allows an attacker to exploit insufficient validation of path information provided b... |
| CVE-2021-41067 | HIGH | 7.5 | 0.6% | Dec 14, 2021 | An issue was discovered in Listary through 6. Improper implementation of the update process leads to the download of sof... |
| CVE-2021-41066 | HIGH | 7.5 | 1.3% | Dec 14, 2021 | An issue was discovered in Listary through 6. When Listary is configured as admin, Listary will not ask for permissions ... |
| CVE-2021-41065 | HIGH | 7.3 | 0.5% | Dec 14, 2021 | An issue was discovered in Listary through 6. An attacker can create a \\.\pipe\Listary.listaryService named pipe and wa... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now