2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-24397HIGH7.2The edit functionality in the MicroCopy WordPress plugin through 1.1.0 makes a get request to fetch the related option. ...
CVE-2021-24396HIGH7.2A pageid GET parameter of the GSEOR – WordPress SEO Plugin WordPress plugin through 1.3 is not sanitised, escaped or val...
CVE-2021-38300HIGH7.8arch/mips/net/bpf_jit.c in the Linux kernel before 5.4.10 can generate undesirable machine code when transforming unpriv...
CVE-2021-40690HIGH7.5All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to an issue where the "...
CVE-2021-41073HIGH7.8loop_rw_iter in fs/io_uring.c in the Linux kernel 5.10 through 5.14.6 allows local users to gain privileges by using IOR...
CVE-2021-41390HIGH8In Ericsson ECM before 18.0, it was observed that Security Provider Endpoint in the User Profile Management Section is v...
CVE-2021-41387HIGH8.8seatd-launch in seatd 0.6.x before 0.6.2 allows privilege escalation because it uses execlp and may be installed setuid ...
CVE-2021-41383HIGH7.2setup.cgi on NETGEAR R6020 1.0.0.48 devices allows an admin to execute arbitrary shell commands via shell metacharacters...
CVE-2021-38406HIGH7.8Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specif...
CVE-2021-38404HIGH7.8Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specif...
CVE-2021-38402HIGH7.8Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specif...
CVE-2021-40825HIGH8.6nLight ECLYPSE (nECY) system Controllers running software prior to 1.17.21245.754 contain a default key vulnerability. T...
CVE-2021-38304HIGH7.8Improper input validation in the National Instruments NI-PAL driver in versions 20.0.0 and prior may allow a privileged ...
CVE-2021-41316HIGH8.1The Device42 Main Appliance before 17.05.01 does not sanitize user input in its Nmap Discovery utility. An attacker (wit...
CVE-2021-41315HIGH8.8The Device42 Remote Collector before 17.05.01 does not sanitize user input in its SNMP Connectivity utility. This allows...
CVE-2021-31845HIGH7.3A buffer overflow vulnerability in McAfee Data Loss Prevention (DLP) Discover prior to 11.6.100 allows an attacker in th...
CVE-2021-31844HIGH7.3A buffer overflow vulnerability in McAfee Data Loss Prevention (DLP) Endpoint for Windows prior to 11.6.200 allows a loc...
CVE-2021-31843HIGH7.8Improper privileges management vulnerability in McAfee Endpoint Security (ENS) Windows prior to 10.7.0 September 2021 Up...
CVE-2021-3810HIGH7.5code-server is vulnerable to Inefficient Regular Expression Complexity
CVE-2021-3807HIGH7.5ansi-regex is vulnerable to Inefficient Regular Expression Complexity
CVE-2021-3804HIGH7.5taro is vulnerable to Inefficient Regular Expression Complexity
CVE-2021-3803HIGH7.5nth-check is vulnerable to Inefficient Regular Expression Complexity
CVE-2021-30261HIGH7.8Possible integer and heap overflow due to lack of input command size validation while handling beacon template update co...
CVE-2021-30260HIGH7.8Possible Integer overflow to buffer overflow issue can occur due to improper validation of input parameters when extscan...
CVE-2021-1947HIGH7.8Use-after-free vulnerability in kernel graphics driver because of storing an invalid pointer in Snapdragon Compute, Snap...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now