2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-44138HIGH7.5There is a Directory traversal vulnerability in Caucho Resin, as distributed in Resin 4.0.52 - 4.0.56, which allows remo...
CVE-2021-36776HIGH8.8A Improper Access Control vulnerability in SUSE Rancher allows remote attackers impersonate arbitrary users. This issue ...
CVE-2021-36775HIGH8.8a Improper Access Control vulnerability in SUSE Rancher allows users to keep privileges that should have been revoked. T...
CVE-2021-33616MEDIUM5.4RSA Archer 6.x through 6.9 SP1 P4 (6.9.1.4) allows stored XSS.
CVE-2021-30066MEDIUM6.8On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03.23, TCSEFEA23F3F20/21, and Belden Tofino Xenon ...
CVE-2021-30065HIGH7.5On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03.23, TCSEFEA23F3F20/21, and Belden Tofino Xenon ...
CVE-2021-30064CRITICAL9.8On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03.23, TCSEFEA23F3F20/21, and Belden Tofino Xenon ...
CVE-2021-30063HIGH7.5On Schneider Electric ConneXium Tofino OPCLSM TCSEFM0000 before 03.23 and Belden Tofino Xenon Security Appliance, crafte...
CVE-2021-30062HIGH7.5On Schneider Electric ConneXium Tofino OPCLSM TCSEFM0000 before 03.23 and Belden Tofino Xenon Security Appliance, crafte...
CVE-2021-30061MEDIUM6.8On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03.23, TCSEFEA23F3F20/21, and Belden Tofino Xenon ...
CVE-2021-3847HIGH7.8An unauthorized access to the execution of the setuid file with capabilities flaw in the Linux kernel OverlayFS subsyste...
CVE-2021-3461HIGH7.1A flaw was found in keycloak where keycloak may fail to logout user session if the logout request comes from external SA...
CVE-2021-39908HIGH7.5In all versions of GitLab CE/EE starting from 0.8.0 before 14.2.6, all versions starting from 14.3 before 14.3.4, and al...
CVE-2021-33657HIGH8.8There is a heap overflow problem in video/SDL_pixels.c in SDL (Simple DirectMedia Layer) 2.x to 2.0.18 versions. By craf...
CVE-2021-33024HIGH7.5Philips Vue PACS versions 12.2.x.x and prior transmits or stores authentication credentials, but it uses an insecure met...
CVE-2021-33022HIGH7.5Philips Vue PACS versions 12.2.x.x and prior transmits sensitive or security-critical data in cleartext in a communicati...
CVE-2021-33020HIGH7.5Philips Vue PACS versions 12.2.x.x and prior uses a cryptographic key or password past its expiration date, which dimini...
CVE-2021-33018HIGH7.5The use of a broken or risky cryptographic algorithm in Philips Vue PACS versions 12.2.x.x and prior is an unnecessary r...
CVE-2021-32976CRITICAL9.8Five buffer overflows in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 or earlier may a...
CVE-2021-32974CRITICAL9.8Improper input validation in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 or earlier m...
CVE-2021-32970HIGH7.5Data can be copied without validation in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 ...
CVE-2021-32968HIGH7.5Two buffer overflows in the built-in web server in Moxa NPort IAW5000A-I/O Series firmware version 2.2 or earlier may al...
CVE-2021-32961HIGH7.5A getfile function in MDT AutoSave versions prior to v6.02.06 enables a user to supply an optional parameter, resulting ...
CVE-2021-32960HIGH8.8Rockwell Automation FactoryTalk Services Platform v6.11 and earlier, if FactoryTalk Security is enabled and deployed con...
CVE-2021-32957HIGH7.5A function in MDT AutoSave versions prior to v6.02.06 is used to retrieve system information for a specific process, and...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now