2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-40265 | HIGH | 8.8 | 0.7% | Aug 22, 2023 | A heap overflow bug exists FreeImage before 1.18.0 via ofLoad function in PluginJPEG.cpp. |
| CVE-2021-40263 | HIGH | 8.8 | 1.0% | Aug 22, 2023 | A heap overflow vulnerability in FreeImage 1.18.0 via the ofLoad function in PluginTIFF.cpp. |
| CVE-2021-40211 | HIGH | 7.5 | 0.8% | Aug 22, 2023 | An issue was discovered with ImageMagick 7.1.0-4 via Division by zero in function ReadEnhMetaFile of coders/emf.c. |
| CVE-2021-35309 | HIGH | 7.5 | 0.4% | Aug 22, 2023 | An issue discovered in Samsung SyncThru Web Service SPL 5.93 06-09-2014 allows attackers to gain escalated privileges vi... |
| CVE-2021-34193 | HIGH | 7.5 | 1.1% | Aug 22, 2023 | Stack overflow vulnerability in OpenSC smart card middleware before 0.23 via crafted responses to APDUs. |
| CVE-2021-32422 | HIGH | 7.5 | 0.7% | Aug 22, 2023 | dpic 2021.01.01 has a Global buffer overflow in theyylex() function in main.c and reads out of the bound array. |
| CVE-2021-32421 | HIGH | 7.5 | 0.6% | Aug 22, 2023 | dpic 2021.01.01 has a Heap Use-After-Free in thedeletestringbox() function in dpic.y. |
| CVE-2021-32420 | HIGH | 7.5 | 0.7% | Aug 22, 2023 | dpic 2021.01.01 has a Heap-based Buffer Overflow in thestorestring function in dpic.y. |
| CVE-2021-30047 | HIGH | 7.5 | 3.1% | Aug 22, 2023 | VSFTPD 3.0.3 allows attackers to cause a denial of service due to limited number of connections allowed. |
| CVE-2021-29390 | HIGH | 7.1 | 0.7% | Aug 22, 2023 | libjpeg-turbo version 2.0.90 has a heap-based buffer over-read (2 bytes) in decompress_smooth_data in jdcoefct.c. |
| CVE-2021-29378 | HIGH | 8.8 | 0.7% | Aug 11, 2023 | SQL Injection in pear-admin-think version 2.1.2, allows attackers to execute arbitrary code and escalate privileges via ... |
| CVE-2021-28835 | HIGH | 7.8 | 0.3% | Aug 11, 2023 | Buffer Overflow vulnerability in XNView before 2.50, allows local attackers to execute arbitrary code via crafted GEM bi... |
| CVE-2021-28427 | HIGH | 7.8 | 0.3% | Aug 11, 2023 | Buffer Overflow vulnerability in XNView version 2.49.3, allows local attackers to execute arbitrary code via crafted TIF... |
| CVE-2021-26504 | HIGH | 7.5 | 1.4% | Aug 11, 2023 | Directory Traversal vulnerability in Foddy node-red-contrib-huemagic version 3.0.0, allows remote attackers to gain sens... |
| CVE-2021-25857 | HIGH | 7.2 | 0.8% | Aug 11, 2023 | An issue was discovered in pcmt superMicro-CMS version 3.11, allows authenticated attackers to execute arbitrary code vi... |
| CVE-2021-41544 | HIGH | 7.8 | 0.2% | Aug 8, 2023 | A vulnerability has been identified in Siemens Software Center (All versions < V3.0). A DLL Hijacking vulnerability coul... |
| CVE-2021-24916 | HIGH | 7.5 | 1.5% | Aug 7, 2023 | The Qubely WordPress plugin before 1.8.6 allows unauthenticated user to send arbitrary e-mails to arbitrary addresses vi... |
| CVE-2021-31681 | HIGH | 7.8 | 0.4% | Jul 31, 2023 | Deserialization of Untrusted Data vulnerability in yolo 3 allows attackers to execute arbitrary code via crafted yaml fi... |
| CVE-2021-31680 | HIGH | 7.8 | 0.4% | Jul 31, 2023 | Deserialization of Untrusted Data vulnerability in yolo 5 allows attackers to execute arbitrary code via crafted yaml fi... |
| CVE-2021-4322 | HIGH | 8.8 | 0.5% | Jul 29, 2023 | Use after free in DevTools in Google Chrome prior to 91.0.4472.77 allowed an attacker who convinced a user to install a ... |
| CVE-2021-4320 | HIGH | 8.8 | 0.5% | Jul 29, 2023 | Use after free in Blink in Google Chrome prior to 92.0.4515.107 allowed a remote attacker who had compromised the render... |
| CVE-2021-4319 | HIGH | 8.8 | 0.6% | Jul 29, 2023 | Use after free in Blink in Google Chrome prior to 93.0.4577.82 allowed a remote attacker to perform arbitrary read/write... |
| CVE-2021-4318 | HIGH | 8.8 | 0.5% | Jul 29, 2023 | Object corruption in Blink in Google Chrome prior to 94.0.4606.54 allowed a remote attacker to potentially exploit objec... |
| CVE-2021-4317 | HIGH | 8.8 | 0.5% | Jul 29, 2023 | Use after free in ANGLE in Google Chrome prior to 96.0.4664.93 allowed a remote attacker to perform arbitrary read/write... |
| CVE-2021-35391 | HIGH | 7.2 | 0.9% | Jul 21, 2023 | Server Side Request Forgery vulnerability found in Deskpro Support Desk v2021.21.6 allows attackers to execute arbitrary... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now