2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-22426CRITICAL9.8There is a memory address out of bounds in smartphones. Successful exploitation of this vulnerability may cause maliciou...
CVE-2021-22395HIGH7.5There is a code injection vulnerability in smartphones. Successful exploitation of this vulnerability may affect service...
CVE-2021-22394CRITICAL9.1There is a buffer overflow vulnerability in smartphones. Successful exploitation of this vulnerability may cause DoS of ...
CVE-2021-22319HIGH7.5There is an improper verification vulnerability in smartphones. Successful exploitation of this vulnerability may cause ...
CVE-2021-38993MEDIUM5.5IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the smbcd daem...
CVE-2021-45977CRITICAL9.8JetBrains IntelliJ IDEA 2021.3.1 Preview, IntelliJ IDEA 2021.3.1 RC, PyCharm Professional 2021.3.1 RC, GoLand 2021.3.1, ...
CVE-2021-45229MEDIUM6.1It was discovered that the "Trigger DAG with config" screen was susceptible to XSS attacks via the `origin` query argume...
CVE-2021-34361MEDIUM6.1A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Proxy Server. If exploited, t...
CVE-2021-34359MEDIUM5.4A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Proxy Server. If exploited, t...
CVE-2021-43745MEDIUM5.5A Denial of Service vulnerabilty exists in Trilium Notes 0.48.6 in the setupPage function
CVE-2021-39364HIGH7.5Honeywell HDZP252DI 1.00.HW02.4 and HBW2PER1 1.000.HW01.3 devices allow command spoofing (for camera control) after ARP ...
CVE-2021-39363CRITICAL9.8Honeywell HDZP252DI 1.00.HW02.4 and HBW2PER1 1.000.HW01.3 devices allow a video replay attack after ARP cache poisoning ...
CVE-2021-29220HIGH7.2Multiple buffer overflow security vulnerabilities have been identified in HPE iLO Amplifier Pack version(s): Prior to 2....
CVE-2021-29217MEDIUM6.1A remote URL redirection vulnerability was discovered in HPE OneView Global Dashboard version(s): Prior to 2.5. HPE has ...
CVE-2021-29216MEDIUM6.1A remote cross-site scripting vulnerability was discovered in HPE OneView Global Dashboard version(s): Prior to 2.5. HPE...
CVE-2021-44665MEDIUM6.5A Directory Traversal vulnerability exists in the Xerte Project Xerte through 3.10.3 when downloading a project file via...
CVE-2021-44664HIGH8.8An Authenticated Remote Code Exection (RCE) vulnerability exists in Xerte through 3.9 in website_code/php/import/fileupl...
CVE-2021-4021HIGH7.5A vulnerability was found in Radare2 in versions prior to 5.6.2, 5.6.0, 5.5.4 and 5.5.2. Mapping a huge section filled w...
CVE-2021-44663CRITICAL9.8A Remote Code Execution (RCE) vulnerability exists in the Xerte Project Xerte through 3.8.4 via a crafted php file throu...
CVE-2021-44662MEDIUM6.1A Site Scripting (XSS) vulnerability exists in the Xerte Project Xerte through 3.8.4 via the link parameter in print.php...
CVE-2021-44533MEDIUM5.3Node.js < 12.22.9, < 14.18.3, < 16.13.2, and < 17.3.1 did not handle multi-value Relative Distinguished Names correctly....
CVE-2021-44532MEDIUM5.3Node.js < 12.22.9, < 14.18.3, < 16.13.2, and < 17.3.1 converts SANs (Subject Alternative Names) to a string format. It u...
CVE-2021-44531HIGH7.4Accepting arbitrary Subject Alternative Name (SAN) types, unless a PKI is specifically defined to use a particular SAN t...
CVE-2021-3700MEDIUM6.4A use-after-free vulnerability was found in usbredir in versions prior to 0.11.0 in the usbredirparser_serialize() in us...
CVE-2021-3610HIGH7.5A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now