2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-43129MEDIUM6.5A bypass exists for Desire2Learn/D2L Brightspace’s “Disable Right Click” option in the quizzing feature, which allows a ...
CVE-2021-41570MEDIUM5.4Veritas NetBackup OpsCenter Analytics 9.1 allows XSS via the NetBackup Master Server Name, Display Name, NetBackup User ...
CVE-2021-25120MEDIUM6.1The Easy Social Feed Free and Pro WordPress plugins before 6.2.7 do not sanitise some of their parameters used via AJAX ...
CVE-2021-42782MEDIUM5.3Stack buffer overflow issues were found in Opensc before version 0.22.0 in various places that could potentially crash p...
CVE-2021-42781MEDIUM5.3Heap buffer overflow issues were found in Opensc before version 0.22.0 in pkcs15-oberthur.c that could potentially crash...
CVE-2021-42780MEDIUM5.3A use after return issue was found in Opensc before version 0.22.0 in insert_pin function that could potentially crash p...
CVE-2021-42779MEDIUM5.3A heap use after free issue was found in Opensc before version 0.22.0 in sc_file_valid.
CVE-2021-42778MEDIUM5.3A heap double free issue was found in Opensc before version 0.22.0 in sc_pkcs15_free_tokeninfo.
CVE-2021-3681MEDIUM5.5A flaw was found in Ansible Galaxy Collections. When collections are built manually, any files in the repository directo...
CVE-2021-3652MEDIUM6.5A flaw was found in 389-ds-base. If an asterisk is imported as password hashes, either accidentally or maliciously, then...
CVE-2021-3624HIGH7.8There is an integer overflow vulnerability in dcraw. When the victim runs dcraw with a maliciously crafted X3F input ima...
CVE-2021-3503MEDIUM4.3A flaw was found in Wildfly where insufficient RBAC restrictions may lead to expose metrics data. The highest threat fro...
CVE-2021-23286HIGH8Eaton Intelligent Power Manager Infrastructure (IPM Infrastructure) version 1.5.0plus205 and all prior versions are vuln...
CVE-2021-23285MEDIUM4.8Eaton Intelligent Power Manager Infrastructure (IPM Infrastructure) version 1.5.0plus205 and all prior versions are vuln...
CVE-2021-23284MEDIUM4.8Eaton Intelligent Power Manager Infrastructure (IPM Infrastructure) version 1.5.0plus205 and all prior versions are vuln...
CVE-2021-20324Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2021-46122HIGH7.2Tp-Link TL-WR840N (EU) v6.20 Firmware (0.9.1 4.17 v0001.0 Build 201124 Rel.64328n) is vulnerable to Buffer Overflow via ...
CVE-2021-44510HIGH7.5An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, attackers ...
CVE-2021-44509HIGH7.5An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, attackers ...
CVE-2021-44508HIGH7.5An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). A lack of NULL checks in calls ...
CVE-2021-44507HIGH7.5An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). A lack of parameter validation ...
CVE-2021-44506HIGH7.5An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). A lack of input validation in c...
CVE-2021-44505HIGH7.5An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, an attacke...
CVE-2021-44504HIGH7.5An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, an attacke...
CVE-2021-44503HIGH7.5An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, an attacke...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now