2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-43077HIGH8.8A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiWLM version 8.6....
CVE-2021-43075HIGH8.8A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM versio...
CVE-2021-41193CRITICAL9.8wire-avs is the audio visual signaling (AVS) component of Wire, an open-source messenger. A remote format string vulnera...
CVE-2021-32586CRITICAL9.8An improper input validation vulnerability in the web server CGI facilities of FortiMail before 7.0.1 may allow an unaut...
CVE-2021-36171HIGH8.1The use of a cryptographically weak pseudo-random number generator in the password reset feature of FortiPortal before 6...
CVE-2021-36166CRITICAL9.8An improper authentication vulnerability in FortiMail before 7.0.1 may allow a remote attacker to efficiently guess one ...
CVE-2021-38986MEDIUM5.4IBM MQ Appliance 9.2 CD and 9.2 LTS does not invalidate session after logout which could allow an authenticated user to ...
CVE-2021-38955MEDIUM4.4IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a local user with elevated privileges to cause a denial of service due t...
CVE-2021-46387MEDIUM6.1ZyXEL ZyWALL 2 Plus Internet Security Appliance is affected by Cross Site Scripting (XSS). Insecure URI handling leads t...
CVE-2021-44238HIGH7.2AyaCMS 3.1.2 is vulnerable to Remote Code Execution (RCE) via /aya/module/admin/ust_tab_e.inc.php,
CVE-2021-44747MEDIUM6.5A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Linux Security whereby the Fmlib component used in ce...
CVE-2021-4039CRITICAL9.8A command injection vulnerability in the web interface of the Zyxel NWA-1100-NH firmware could allow an attacker to exec...
CVE-2021-35036MEDIUM6.5A cleartext storage of information vulnerability in the Zyxel VMG3625-T50B firmware version V5.50(ABTL.0)b2k could allow...
CVE-2021-43619HIGH7.8Trusted Firmware M 1.4.x through 1.4.1 has a buffer overflow issue in the Firmware Update partition. In the IPC model, a...
CVE-2021-44962MEDIUM5.5An out-of-bounds read vulnerability exists in the GCode::extrude() functionality of Slic3r libslic3r 1.3.0 and Master Co...
CVE-2021-44961MEDIUM5.5A memory leakage flaw exists in the class PerimeterGenerator of Slic3r libslic3r 1.3.0 and Master Commit b1a5500. Specia...
CVE-2021-42951HIGH8.8A Remote Code Execution (RCE) vulnerability exists in Algorithmia MSOL all versions before October 10 2021 of SaaS. User...
CVE-2021-42767CRITICAL9.1A directory traversal vulnerability in the apoc plugins in Neo4J Graph database before 4.4.0.1 allows attackers to read ...
CVE-2021-36820Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2021-36819Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2021-36818Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2021-36817Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2021-36816Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2021-36815Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2021-36814Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now