2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-40265HIGH8.8A heap overflow bug exists FreeImage before 1.18.0 via ofLoad function in PluginJPEG.cpp.
CVE-2021-40263HIGH8.8A heap overflow vulnerability in FreeImage 1.18.0 via the ofLoad function in PluginTIFF.cpp.
CVE-2021-40211HIGH7.5An issue was discovered with ImageMagick 7.1.0-4 via Division by zero in function ReadEnhMetaFile of coders/emf.c.
CVE-2021-35309HIGH7.5An issue discovered in Samsung SyncThru Web Service SPL 5.93 06-09-2014 allows attackers to gain escalated privileges vi...
CVE-2021-34193HIGH7.5Stack overflow vulnerability in OpenSC smart card middleware before 0.23 via crafted responses to APDUs.
CVE-2021-32422HIGH7.5dpic 2021.01.01 has a Global buffer overflow in theyylex() function in main.c and reads out of the bound array.
CVE-2021-32421HIGH7.5dpic 2021.01.01 has a Heap Use-After-Free in thedeletestringbox() function in dpic.y.
CVE-2021-32420HIGH7.5dpic 2021.01.01 has a Heap-based Buffer Overflow in thestorestring function in dpic.y.
CVE-2021-30047HIGH7.5VSFTPD 3.0.3 allows attackers to cause a denial of service due to limited number of connections allowed.
CVE-2021-29390HIGH7.1libjpeg-turbo version 2.0.90 has a heap-based buffer over-read (2 bytes) in decompress_smooth_data in jdcoefct.c.
CVE-2021-29378HIGH8.8SQL Injection in pear-admin-think version 2.1.2, allows attackers to execute arbitrary code and escalate privileges via ...
CVE-2021-28835HIGH7.8Buffer Overflow vulnerability in XNView before 2.50, allows local attackers to execute arbitrary code via crafted GEM bi...
CVE-2021-28427HIGH7.8Buffer Overflow vulnerability in XNView version 2.49.3, allows local attackers to execute arbitrary code via crafted TIF...
CVE-2021-26504HIGH7.5Directory Traversal vulnerability in Foddy node-red-contrib-huemagic version 3.0.0, allows remote attackers to gain sens...
CVE-2021-25857HIGH7.2An issue was discovered in pcmt superMicro-CMS version 3.11, allows authenticated attackers to execute arbitrary code vi...
CVE-2021-41544HIGH7.8A vulnerability has been identified in Siemens Software Center (All versions < V3.0). A DLL Hijacking vulnerability coul...
CVE-2021-24916HIGH7.5The Qubely WordPress plugin before 1.8.6 allows unauthenticated user to send arbitrary e-mails to arbitrary addresses vi...
CVE-2021-31681HIGH7.8Deserialization of Untrusted Data vulnerability in yolo 3 allows attackers to execute arbitrary code via crafted yaml fi...
CVE-2021-31680HIGH7.8Deserialization of Untrusted Data vulnerability in yolo 5 allows attackers to execute arbitrary code via crafted yaml fi...
CVE-2021-4322HIGH8.8Use after free in DevTools in Google Chrome prior to 91.0.4472.77 allowed an attacker who convinced a user to install a ...
CVE-2021-4320HIGH8.8Use after free in Blink in Google Chrome prior to 92.0.4515.107 allowed a remote attacker who had compromised the render...
CVE-2021-4319HIGH8.8Use after free in Blink in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to perform arbitrary read/write...
CVE-2021-4318HIGH8.8Object corruption in Blink in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to potentially exploit objec...
CVE-2021-4317HIGH8.8Use after free in ANGLE in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to perform arbitrary read/write...
CVE-2021-35391HIGH7.2Server Side Request Forgery vulnerability found in Deskpro Support Desk v2021.21.6 allows attackers to execute arbitrary...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now