2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-20846HIGH8.8Cross-site request forgery (CSRF) vulnerability in Push Notifications for WordPress (Lite) versions prior to 6.0.1 allow...
CVE-2021-20845HIGH8.8Cross-site request forgery (CSRF) vulnerability in Unlimited Sitemap Generator versions prior to v8.2 allows a remote at...
CVE-2021-20835HIGH7.5Improper authorization in handler for custom URL scheme vulnerability in Android App 'Mercari (Merpay) - Marketplace and...
CVE-2021-28709HIGH7.8issues with partially successful P2M updates on x86 T[his CNA information record relates to multiple CVEs; the text expl...
CVE-2021-28705HIGH7.8issues with partially successful P2M updates on x86 T[his CNA information record relates to multiple CVEs; the text expl...
CVE-2021-42306HIGH8.1An information disclosure vulnerability manifests when a user or an application uploads unprotected private key data as ...
CVE-2021-28708HIGH8.8PoD operations on misaligned GFNs T[his CNA information record relates to multiple CVEs; the text explains which aspects...
CVE-2021-28707HIGH8.8PoD operations on misaligned GFNs T[his CNA information record relates to multiple CVEs; the text explains which aspects...
CVE-2021-28706HIGH8.6guests may exceed their designated memory limit When a guest is permitted to have close to 16TiB of memory, it may be ab...
CVE-2021-28704HIGH8.8PoD operations on misaligned GFNs T[his CNA information record relates to multiple CVEs; the text explains which aspects...
CVE-2021-38003HIGH8.8Inappropriate implementation in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially explo...
CVE-2021-38001HIGH8.8Type confusion in V8 in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exploit heap corrup...
CVE-2021-37998HIGH8.8Use after free in Garbage Collection in Google Chrome prior to 95.0.4638.69 allowed a remote attacker to potentially exp...
CVE-2021-37997HIGH8.8Use after free in Sign-In in Google Chrome prior to 95.0.4638.69 allowed a remote attacker who convinced a user to sign ...
CVE-2021-35033HIGH7.8A vulnerability in specific versions of Zyxel NBG6818, NBG7815, WSQ20, WSQ50, WSQ60, and WSR30 firmware with pre-configu...
CVE-2021-43775HIGH8.6Aim is an open-source, self-hosted machine learning experiment tracking tool. Versions of Aim prior to 3.1.0 are vulnera...
CVE-2021-41281HIGH7.5Synapse is a package for Matrix homeservers written in Python 3/Twisted. Prior to version 1.47.1, Synapse instances with...
CVE-2021-38891HIGH7.5IBM Sterling Connect:Direct Web Services 1.0 and 6.0 uses weaker than expected cryptographic algorithms that could allow...
CVE-2021-38890HIGH7.5IBM Sterling Connect:Direct Web Services 1.0 and 6.0 uses an inadequate account lockout setting that could allow a remot...
CVE-2021-36335HIGH8.8Dell EMC CloudLink 7.1 and all prior versions contain an Improper Input Validation Vulnerability. A remote low privilege...
CVE-2021-36313HIGH7.2Dell EMC CloudLink 7.1 and all prior versions contain an OS command injection Vulnerability. A remote high privileged at...
CVE-2021-36311HIGH7.8Dell EMC Networker versions prior to 19.5 contain an Improper Authorization vulnerability. Any local malicious user with...
CVE-2021-36301HIGH7.2Dell iDRAC 9 prior to version 4.40.40.00 and iDRAC 8 prior to version 2.80.80.80 contain a Stack Buffer Overflow in Raca...
CVE-2021-36300HIGH8.2iDRAC9 versions prior to 5.00.00.00 contain an improper input validation vulnerability. An unauthenticated remote attack...
CVE-2021-36299HIGH8.1Dell iDRAC9 versions 4.40.00.00 and later, but prior to 4.40.29.00 and 5.00.00.00 contain an SQL injection vulnerability...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now