2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-43811HIGH7.8Sockeye is an open-source sequence-to-sequence framework for Neural Machine Translation built on PyTorch. Sockeye uses Y...
CVE-2021-43539HIGH8.8Failure to correctly record the location of live pointers across wasm instance calls resulted in a GC occurring within t...
CVE-2021-43537HIGH8.8An incorrect type conversion of sizes from 64bit to 32bit integers allowed an attacker to corrupt memory leading to a po...
CVE-2021-43535HIGH8.8A use-after-free could have occured when an HTTP2 session object was released on a different thread, leading to memory c...
CVE-2021-43534HIGH8.8Mozilla developers and community members reported memory safety bugs present in Firefox 93 and Firefox ESR 91.2. Some of...
CVE-2021-38510HIGH8.8The executable file warning was not presented when downloading .inetloc files, which, due to a flaw in Mac OS, can run c...
CVE-2021-38504HIGH8.8When interacting with an HTML input element's file picker dialog with webkitdirectory set, a use-after-free could have r...
CVE-2021-37941HIGH7.8A local privilege escalation issue was found with the APM Java agent, where a user on the system could attach a maliciou...
CVE-2021-23862HIGH7.2A crafted configuration packet sent by an authenticated administrative user can be used to execute arbitrary commands in...
CVE-2021-23859HIGH7.5An unauthenticated attacker is able to send a special HTTP request, that causes a service to crash. In case of a standal...
CVE-2021-21957HIGH7.3A privilege escalation vulnerability exists in the Remote Server functionality of Dream Report ODS Remote Connector 20.2...
CVE-2021-36719HIGH8.8PineApp - Mail Secure - The attacker must be logged in as a user to the Pineapp system. The attacker exploits the vulner...
CVE-2021-43978HIGH8.1Allegro WIndows 3.3.4152.0, embeds software administrator database credentials into its binary files, which allows users...
CVE-2021-43809HIGH7.3`Bundler` is a package for managing application dependencies in Ruby. In `bundler` versions before 2.2.33, when working ...
CVE-2021-43399HIGH7.5The Yubico YubiHSM YubiHSM2 library 2021.08, included in the yubihsm-shell project, does not properly validate the lengt...
CVE-2021-41017HIGH8.8Multiple heap-based buffer overflow vulnerabilities in some web API controllers of FortiWeb 6.4.1, 6.4.0, and 6.3.0 thro...
CVE-2021-36195HIGH8.8Multiple command injection vulnerabilities in the command line interpreter of FortiWeb versions 6.4.1, 6.4.0, 6.3.0 thro...
CVE-2021-36173HIGH8.8A heap-based buffer overflow in the firmware signature verification function of FortiOS versions 7.0.1, 7.0.0, 6.4.0 thr...
CVE-2021-41090HIGH7.5Grafana Agent is a telemetry collector for sending metrics, logs, and trace data to the opinionated Grafana observabilit...
CVE-2021-27860HIGH8.8A vulnerability in the web management interface of FatPipe WARP, IPVPN, and MPVPN software prior to versions 10.1.2r60p9...
CVE-2021-42110HIGH7.8An issue was discovered in Allegro Windows (formerly Popsy Windows) before 3.3.4156.1. A standard user can escalate priv...
CVE-2021-41450HIGH7.5An HTTP request smuggling attack in TP-Link AX10v1 before v1_211117 allows a remote unauthenticated attacker to DoS the ...
CVE-2021-42835HIGH7An issue was discovered in Plex Media Server through 1.24.4.5081-e362dc1ee. An attacker (with a foothold in a endpoint v...
CVE-2021-40861HIGH7.2A SQL Injection in the custom filter query component in Genesys intelligent Workload Distribution (IWD) 9.0.017.07 allow...
CVE-2021-40860HIGH7.2A SQL Injection in the custom filter query component in Genesys intelligent Workload Distribution (IWD) before 9.0.013.1...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now