2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-37004 | HIGH | 7.5 | 0.7% | Nov 23, 2021 | There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability wi... |
| CVE-2021-37003 | HIGH | 7.5 | 0.7% | Nov 23, 2021 | There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability wi... |
| CVE-2021-35052 | HIGH | 7.8 | 0.3% | Nov 23, 2021 | A component in Kaspersky Password Manager could allow an attacker to elevate a process Integrity level from Medium to Hi... |
| CVE-2021-39976 | HIGH | 7.8 | 0.2% | Nov 23, 2021 | There is a privilege escalation vulnerability in CloudEngine 5800 V200R020C00SPC600. Due to lack of privilege restrictio... |
| CVE-2021-20601 | HIGH | 7.5 | 2.3% | Nov 23, 2021 | Improper input validation vulnerability in GOT2000 series GT27 model all versions, GOT2000 series GT25 model all version... |
| CVE-2021-40831 | HIGH | 7.2 | 0.6% | Nov 23, 2021 | The AWS IoT Device SDK v2 for Java, Python, C++ and Node.js appends a user supplied Certificate Authority (CA) to the ro... |
| CVE-2021-40830 | HIGH | 8.8 | 0.4% | Nov 23, 2021 | The AWS IoT Device SDK v2 for Java, Python, C++ and Node.js appends a user supplied Certificate Authority (CA) to the ro... |
| CVE-2021-40829 | HIGH | 8.8 | 0.4% | Nov 23, 2021 | Connections initialized by the AWS IoT Device SDK v2 for Java (versions prior to 1.4.2), Python (versions prior to 1.6.1... |
| CVE-2021-40828 | HIGH | 8.8 | 0.4% | Nov 23, 2021 | Connections initialized by the AWS IoT Device SDK v2 for Java (versions prior to 1.3.3), Python (versions prior to 1.5.1... |
| CVE-2021-44150 | HIGH | 7.5 | 0.5% | Nov 22, 2021 | The client in tusdotnet through 2.5.0 relies on SHA-1 to prevent spoofing of file content. |
| CVE-2021-42707 | HIGH | 7.8 | 0.9% | Nov 22, 2021 | PLC Editor Versions 1.3.8 and prior is vulnerable to an out-of-bounds write while processing project files, which may al... |
| CVE-2021-42705 | HIGH | 7.8 | 1.0% | Nov 22, 2021 | PLC Editor Versions 1.3.8 and prior is vulnerable to a stack-based buffer overflow while processing project files, which... |
| CVE-2021-38448 | HIGH | 7.6 | 0.3% | Nov 22, 2021 | The affected controllers do not properly sanitize the input containing code syntax. As a result, an attacker could craft... |
| CVE-2021-23718 | HIGH | 7.5 | 1.6% | Nov 22, 2021 | The package ssrf-agent before 1.0.5 are vulnerable to Server-side Request Forgery (SSRF) via the defaultIpChecker functi... |
| CVE-2021-43559 | HIGH | 8.8 | 0.6% | Nov 22, 2021 | A flaw was found in Moodle in versions 3.11 to 3.11.3, 3.10 to 3.10.7, 3.9 to 3.9.10 and earlier unsupported versions. T... |
| CVE-2021-43015 | HIGH | 7.8 | 1.6% | Nov 22, 2021 | Adobe InCopy version 16.4 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a m... |
| CVE-2021-42738 | HIGH | 7.8 | 1.9% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ... |
| CVE-2021-42737 | HIGH | 7.8 | 1.7% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ... |
| CVE-2021-42727 | HIGH | 7.8 | 40.9% | Nov 22, 2021 | Adobe Bridge 11.1.1 (and earlier) is affected by a stack overflow vulnerability due to insecure handling of a crafted fi... |
| CVE-2021-40775 | HIGH | 7.8 | 1.7% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ... |
| CVE-2021-40772 | HIGH | 7.8 | 1.7% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ... |
| CVE-2021-40771 | HIGH | 7.8 | 1.7% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ... |
| CVE-2021-40770 | HIGH | 7.8 | 1.7% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ... |
| CVE-2021-3935 | HIGH | 8.1 | 1.0% | Nov 22, 2021 | When PgBouncer is configured to use "cert" authentication, a man-in-the-middle attacker can inject arbitrary SQL queries... |
| CVE-2021-43582 | HIGH | 7.8 | 1.3% | Nov 22, 2021 | A Use-After-Free Remote Vulnerability exists when reading a DWG file using Open Design Alliance Drawings SDK before 2022... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now