2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-3583HIGH7.1A flaw was found in Ansible, where a user's controller is vulnerable to template injection. This issue can occur through...
CVE-2021-38112HIGH8.8In the Amazon AWS WorkSpaces client 3.0.10 through 3.1.8 on Windows, argument injection in the workspaces:// URI handler...
CVE-2021-41382HIGH7.5Plastic SCM before 10.0.16.5622 mishandles the WebAdmin server management interface.
CVE-2021-40847HIGH8.1The update process of the Circle Parental Control Service on various NETGEAR routers allows remote attackers to achieve ...
CVE-2021-29831HIGH8.1IBM Jazz for Service Management 1.1.3.10 and IBM Tivoli Netcool/OMNIbus_GUI is vulnerable to an XML External Entity Inje...
CVE-2021-41531HIGH7.5NLnet Labs Routinator prior to 0.10.0 produces invalid RTR payload if an RPKI CA uses too large values in the max-length...
CVE-2021-37741HIGH8.8ManageEngine ADManager Plus before 7111 has Pre-authentication RCE vulnerabilities.
CVE-2021-37419HIGH7.5Zoho ManageEngine ADSelfService Plus before 6112 is vulnerable to SSRF.
CVE-2021-20037HIGH7.8SonicWall Global VPN Client 4.10.5 installer (32-bit and 64-bit) incorrect default file permission vulnerability leads t...
CVE-2021-41083HIGH8.8Dada Mail is a web-based e-mail list management system. In affected versions a bad actor could give someone a carefully ...
CVE-2021-39229HIGH7.5Apprise is an open source library which allows you to send a notification to almost all of the most popular notification...
CVE-2021-41082HIGH7.5Discourse is a platform for community discussion. In affected versions any private message that includes a group had its...
CVE-2021-32838HIGH7.5Flask-RESTX (pypi package flask-restx) is a community driven fork of Flask-RESTPlus. Flask-RESTX before version 0.5.1 is...
CVE-2021-32839HIGH7.5sqlparse is a non-validating SQL parser module for Python. In sqlparse versions 0.4.0 and 0.4.1 there is a regular Expre...
CVE-2021-25741HIGH8.1A security issue was discovered in Kubernetes where a user may be able to create a container with subpath volume mounts ...
CVE-2021-39595HIGH7.8An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function rfx_alloc() located...
CVE-2021-39582HIGH7.8An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function swf_GetPlaceObject()...
CVE-2021-39579HIGH7.8An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function string_hash() locate...
CVE-2021-39577HIGH7.8An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function main() located in sw...
CVE-2021-39574HIGH7.8An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function pool_read() located ...
CVE-2021-39569HIGH7.8An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function OpAdvance() located ...
CVE-2021-39564HIGH7.8An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function swf_DumpActions() lo...
CVE-2021-39561HIGH7.8An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function Gfx::opSetFillColor...
CVE-2021-39558HIGH7.8An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function VectorGraphicOutput...
CVE-2021-39552HIGH7.8An issue was discovered in sela through 20200412. file::WavFile::readFromFile() in wav_file.c has a heap-based buffer ov...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now