2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-37004HIGH7.5There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability wi...
CVE-2021-37003HIGH7.5There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability wi...
CVE-2021-35052HIGH7.8A component in Kaspersky Password Manager could allow an attacker to elevate a process Integrity level from Medium to Hi...
CVE-2021-39976HIGH7.8There is a privilege escalation vulnerability in CloudEngine 5800 V200R020C00SPC600. Due to lack of privilege restrictio...
CVE-2021-20601HIGH7.5Improper input validation vulnerability in GOT2000 series GT27 model all versions, GOT2000 series GT25 model all version...
CVE-2021-40831HIGH7.2The AWS IoT Device SDK v2 for Java, Python, C++ and Node.js appends a user supplied Certificate Authority (CA) to the ro...
CVE-2021-40830HIGH8.8The AWS IoT Device SDK v2 for Java, Python, C++ and Node.js appends a user supplied Certificate Authority (CA) to the ro...
CVE-2021-40829HIGH8.8Connections initialized by the AWS IoT Device SDK v2 for Java (versions prior to 1.4.2), Python (versions prior to 1.6.1...
CVE-2021-40828HIGH8.8Connections initialized by the AWS IoT Device SDK v2 for Java (versions prior to 1.3.3), Python (versions prior to 1.5.1...
CVE-2021-44150HIGH7.5The client in tusdotnet through 2.5.0 relies on SHA-1 to prevent spoofing of file content.
CVE-2021-42707HIGH7.8PLC Editor Versions 1.3.8 and prior is vulnerable to an out-of-bounds write while processing project files, which may al...
CVE-2021-42705HIGH7.8PLC Editor Versions 1.3.8 and prior is vulnerable to a stack-based buffer overflow while processing project files, which...
CVE-2021-38448HIGH7.6The affected controllers do not properly sanitize the input containing code syntax. As a result, an attacker could craft...
CVE-2021-23718HIGH7.5The package ssrf-agent before 1.0.5 are vulnerable to Server-side Request Forgery (SSRF) via the defaultIpChecker functi...
CVE-2021-43559HIGH8.8A flaw was found in Moodle in versions 3.11 to 3.11.3, 3.10 to 3.10.7, 3.9 to 3.9.10 and earlier unsupported versions. T...
CVE-2021-43015HIGH7.8Adobe InCopy version 16.4 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a m...
CVE-2021-42738HIGH7.8Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ...
CVE-2021-42737HIGH7.8Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ...
CVE-2021-42727HIGH7.8Adobe Bridge 11.1.1 (and earlier) is affected by a stack overflow vulnerability due to insecure handling of a crafted fi...
CVE-2021-40775HIGH7.8Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ...
CVE-2021-40772HIGH7.8Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ...
CVE-2021-40771HIGH7.8Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ...
CVE-2021-40770HIGH7.8Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ...
CVE-2021-3935HIGH8.1When PgBouncer is configured to use "cert" authentication, a man-in-the-middle attacker can inject arbitrary SQL queries...
CVE-2021-43582HIGH7.8A Use-After-Free Remote Vulnerability exists when reading a DWG file using Open Design Alliance Drawings SDK before 2022...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now