2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-39822HIGH7.8Adobe InDesign versions 16.3 (and earlier), and 16.3.1 (and earlier) are affected by an out-of-bounds write vulnerabilit...
CVE-2021-38933HIGH7.5IBM Sterling Connect:Direct for UNIX 1.5 uses weaker than expected cryptographic algorithms that could allow an attacker...
CVE-2021-4428HIGH7.5A vulnerability has been found in what3words Autosuggest Plugin up to 4.0.0 on WordPress and classified as problematic. ...
CVE-2021-34121HIGH7.8An Out of Bounds flaw was discovered in htmodoc 1.9.12 in function parse_tree() in toc.cxx, this possibly leads to memor...
CVE-2021-34119HIGH7.8A flaw was discovered in htmodoc 1.9.12 in function parse_paragraph in ps-pdf.cxx ,this flaw possibly allows possible co...
CVE-2021-37386HIGH7.5Furukawa Electric LatAm 423-41W/AC before v1.1.4 and LD421-21W before v1.3.3 were discovered to contain an HTML injectio...
CVE-2021-43757HIGH7.8Adobe Media Encoder versions 22.0, 15.4.2 (and earlier) are affected by an out-of-bounds read vulnerability that could l...
CVE-2021-4406HIGH7.2An authenticated attacker is able to create alerts that trigger a stored XSS attack. POC * go to the alert manager...
CVE-2021-42082HIGH7.8Local users are able to execute scripts under root privileges. POC On the local host run the following command: curl ...
CVE-2021-42081HIGH7.2An authenticated administrator is allowed to remotely execute arbitrary shell commands via the API. POC http://<IP_ADDR...
CVE-2021-42080HIGH7.4An attacker is able to launch a Reflected XSS attack using a crafted URL. POC: Visit the following URL https://<IPADDR...
CVE-2021-32494HIGH7.5Radare2 has a division by zero vulnerability in Mach-O parser's rebase_buffer function. This allow attackers to create m...
CVE-2021-33796HIGH7.5In MuJS before version 1.1.2, a use-after-free flaw in the regexp source property access may cause denial of service.
CVE-2021-46896HIGH7.5Buffer Overflow vulnerability in PX4-Autopilot allows attackers to cause a denial of service via handler function handli...
CVE-2021-46892HIGH7.5Encryption bypass vulnerability in Maintenance mode. Successful exploitation of this vulnerability may affect service co...
CVE-2021-46893HIGH7.5Vulnerability of unstrict data verification and parameter check. Successful exploitation of this vulnerability may affec...
CVE-2021-4401HIGH8.8The Style Kits plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.8.0....
CVE-2021-4399HIGH8.8The Edwiser Bridge plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including,2.0...
CVE-2021-4387HIGH8.8The Opal Estate plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.6.1...
CVE-2021-31982HIGH8.8Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability
CVE-2021-31937HIGH8.2Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability
CVE-2021-4337HIGH8.8Sixteen XforWooCommerce Add-On Plugins for WordPress are vulnerable to authorization bypass due to a missing capability ...
CVE-2021-4382HIGH8.8The Recently plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the fet...
CVE-2021-4368HIGH8.8The Frontend File Manager plugin for WordPress is vulnerable to Authenticated Settings Change in versions up to, and inc...
CVE-2021-4361HIGH8.8The JobSearch WP Job Board plugin for WordPress is vulnerable to authorization bypass due to a missing capability check ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now