2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-3909HIGH7.5OctoRPKI does not limit the length of a connection, allowing for a slowloris DOS attack to take place which makes OctoRP...
CVE-2021-3908HIGH7.5OctoRPKI does not limit the depth of a certificate chain, allowing for a CA to create children in an ad-hoc fashion, the...
CVE-2021-26558HIGH7.5Deserialization of Untrusted Data vulnerability of Apache ShardingSphere-UI allows an attacker to inject outer link reso...
CVE-2021-25980HIGH8.8In Talkyard, versions v0.04.01 through v0.6.74-WIP-63220cb, v0.2020.22-WIP-b2e97fe0e through v0.2021.02-WIP-879ef3fe1 an...
CVE-2021-43397HIGH8.8LiquidFiles before 3.6.3 allows remote attackers to elevate their privileges from Admin (or User Admin) to Sysadmin.
CVE-2021-40873HIGH7.5An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66, and uaToolkit Embedded before 1.40....
CVE-2021-40872HIGH7.5An issue was discovered in Softing Industrial Automation uaToolkit Embedded before 1.40. Remote attackers to cause a den...
CVE-2021-40871HIGH7.5An issue was discovered in Softing Industrial Automation OPC UA C++ SDK before 5.66. Remote attackers to cause a denial ...
CVE-2021-32023HIGH7.8An elevation of privilege vulnerability in the message broker of BlackBerry Protect for Windows version(s) versions 1574...
CVE-2021-32021HIGH7.8A denial of service vulnerability in the message broker of BlackBerry Protect for Windows version(s) versions 1574 and e...
CVE-2021-22048HIGH8.8The vCenter Server contains a privilege escalation vulnerability in the IWA (Integrated Windows Authentication) authenti...
CVE-2021-3063HIGH7.5An improper handling of exceptional conditions vulnerability exists in Palo Alto Networks GlobalProtect portal and gatew...
CVE-2021-3062HIGH8.8An improper access control vulnerability in PAN-OS software enables an attacker with authenticated access to GlobalProte...
CVE-2021-3061HIGH7.2An OS command injection vulnerability in the Palo Alto Networks PAN-OS command line interface (CLI) enables an authentic...
CVE-2021-3060HIGH8.1An OS command injection vulnerability in the Simple Certificate Enrollment Protocol (SCEP) feature of PAN-OS software al...
CVE-2021-3059HIGH8.1An OS command injection vulnerability in the Palo Alto Networks PAN-OS management interface exists when performing dynam...
CVE-2021-3058HIGH7.2An OS command injection vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated administra...
CVE-2021-3056HIGH8.8A memory corruption vulnerability in Palo Alto Networks PAN-OS GlobalProtect Clientless VPN enables an authenticated att...
CVE-2021-43564HIGH7.5An issue was discovered in the jobfair (aka Job Fair) extension before 1.0.13 and 2.x before 2.0.2 for TYPO3. The extens...
CVE-2021-43563HIGH8.8An issue was discovered in the pixxio (aka pixx.io integration or DAM) extension before 1.0.6 for TYPO3. The Access Cont...
CVE-2021-41426HIGH8.8Beeline Smart box 2.0.38 is vulnerable to Cross Site Request Forgery (CSRF) via mgt_end_user.htm.
CVE-2021-40503HIGH7.8An information disclosure vulnerability exists in SAP GUI for Windows - versions < 7.60 PL13, 7.70 PL4, which allows an ...
CVE-2021-40502HIGH8.8SAP Commerce - versions 2105.3, 2011.13, 2005.18, 1905.34, does not perform necessary authorization checks for an authen...
CVE-2021-40501HIGH8.1SAP ABAP Platform Kernel - versions 7.77, 7.81, 7.85, 7.86, does not perform necessary authorization checks for an authe...
CVE-2021-43562HIGH8.8An issue was discovered in the pixxio (aka pixx.io integration or DAM) extension before 1.0.6 for TYPO3. The extension f...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now