2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-22041MEDIUM6.7VMware ESXi, Workstation, and Fusion contain a double-fetch vulnerability in the UHCI USB controller. A malicious actor ...
CVE-2021-22040MEDIUM6.7VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the XHCI USB controller. A malicious acto...
CVE-2021-21966MEDIUM5.3An information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 S...
CVE-2021-21958HIGH7.8A heap-based buffer overflow vulnerability exists in the Hword HwordApp.dll functionality of Hancom Office 2020 11.0.0.2...
CVE-2021-26726HIGH8.8A remote code execution vulnerability affecting a Valmet DNA service listening on TCP port 1517, allows an attacker to e...
CVE-2021-45391HIGH7.5A Buffer Overflow vulnerability exists in Tenda Router AX12 V22.03.01.21_CN in the sub_422CE4 function in the goform/set...
CVE-2021-46388Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: Reason: The issue is not a vulnerability (fails CNT2) - H...
CVE-2021-46252MEDIUM6.5A Cross-Site Request Forgery (CSRF) in RequirementsBypassPage.php of Scratch Wiki scratch-confirmaccount-v3 allows attac...
CVE-2021-46251MEDIUM6.1A reflected cross-site scripting (XSS) in ScratchOAuth2 before commit 1603f04e44ef67dde6ccffe866d2dca16defb293 allows at...
CVE-2021-46250CRITICAL10An issue in SOA2Login::commented of ScratchOAuth2 before commit a91879bd58fa83b09283c0708a1864cdf067c64a allows attacker...
CVE-2021-46249MEDIUM6.5An authorization bypass exploited by a user-controlled key in SpecificApps REST API in ScratchOAuth2 before commit d856d...
CVE-2021-35380HIGH7.5A Directory Traversal vulnerability exists in Solari di Udine TermTalk Server (TTServer) 3.24.0.2, which lets an unauthe...
CVE-2021-46321CRITICAL9.8Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the wifiBasicCfg modul...
CVE-2021-46265CRITICAL9.8Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the wanBasicCfg module...
CVE-2021-46264CRITICAL9.8Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the onlineList module....
CVE-2021-46263CRITICAL9.8Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the wifiTime module. T...
CVE-2021-46262CRITICAL9.8Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the PPPoE module. This...
CVE-2021-37354CRITICAL9.8Xerox Phaser 4622 v35.013.01.000 was discovered to contain a buffer overflow in the function sub_3226AC via the TIMEZONE...
CVE-2021-33945CRITICAL9.8RICOH Printer series SP products 320DN, SP 325DNw, SP 320SN, SP 320SFN, SP 325SNw, SP 325SFNw, SP 330SN, Aficio SP 3500S...
CVE-2021-42714HIGH7.8Splashtop Remote Client (Business Edition) through 3.4.8.3 creates a Temporary File in a Directory with Insecure Permiss...
CVE-2021-42713HIGH7.8Splashtop Remote Client (Personal Edition) through 3.4.6.1 creates a Temporary File in a Directory with Insecure Permiss...
CVE-2021-43050HIGH7.8The Auth Server component of TIBCO Software Inc.'s TIBCO BusinessConnect Container Edition contains an easily exploitabl...
CVE-2021-43049CRITICAL9.8The Database component of TIBCO Software Inc.'s TIBCO BusinessConnect Container Edition contains an easily exploitable v...
CVE-2021-44960MEDIUM6.5In SVGPP SVG++ library 1.3.0, the XMLDocument::getRoot function in the renderDocument function handled the XMLDocument o...
CVE-2021-43734HIGH7.5kkFileview v4.0.0 has arbitrary file read through a directory traversal vulnerability which may lead to sensitive file l...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now