2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-34834HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0....
CVE-2021-34833HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0....
CVE-2021-34832HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0....
CVE-2021-34831HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.4.37...
CVE-2021-32596HIGH7.5A use of one-way hash with a predictable salt vulnerability in the password storing mechanism of FortiPortal 6.0.0 throu...
CVE-2021-26097HIGH8.8An improper neutralization of special elements used in an OS Command vulnerability in FortiSandbox 3.2.0 through 3.2.2, ...
CVE-2021-24018HIGH8.8A buffer underwrite vulnerability in the firmware verification routine of FortiOS before 7.0.1 may allow an attacker loc...
CVE-2021-36765HIGH7.5In CODESYS EtherNetIP before 4.1.0.0, specific EtherNet/IP requests may cause a null pointer dereference in the download...
CVE-2021-36764HIGH7.5In CODESYS Gateway V3 before 3.5.17.10, there is a NULL Pointer Dereference. Crafted communication requests may cause a ...
CVE-2021-33338HIGH7.5The Layout module in Liferay Portal 7.1.0 through 7.3.2, and Liferay DXP 7.1 before fix pack 19, and 7.2 before fix pack...
CVE-2021-32594HIGH8.1An unrestricted file upload vulnerability in the web interface of FortiPortal 6.0.0 through 6.0.4, 5.3.0 through 5.3.5, ...
CVE-2021-32590HIGH8.8Multiple improper neutralization of special elements used in an SQL command vulnerabilities in FortiPortal 6.0.0 through...
CVE-2021-29765HIGH7.5IBM PowerVM Hypervisor FW940 and FW950 could allow an attacker to obtain sensitive information if they gain service acce...
CVE-2021-26098HIGH7.5An instance of small space of random values in the RPC API of FortiSandbox before 4.0.0 may allow an attacker in possess...
CVE-2021-36483HIGH8.8DevExpress.XtraReports.UI through v21.1 allows attackers to execute arbitrary code via insecure deserialization.
CVE-2021-35397HIGH7.5A path traversal vulnerability in the static router for Drogon from 1.0.0-beta14 to 1.6.0 could allow an unauthenticated...
CVE-2021-32813HIGH8.1Traefik is an HTTP reverse proxy and load balancer. Prior to version 2.4.13, there exists a potential header vulnerabili...
CVE-2021-38084HIGH8.1An issue was discovered in the POP3 component of Courier Mail Server before 1.1.5. Meddler-in-the-middle attackers can p...
CVE-2021-34273HIGH7.5A security flaw in the 'owned' function of a smart contract implementation for BTC2X (B2X), a tradeable Ethereum ERC20 t...
CVE-2021-34272HIGH7.5A security flaw in the 'owned' function of a smart contract implementation for RobotCoin (RBTC), a tradeable Ethereum ER...
CVE-2021-34270HIGH7.5An integer overflow in the mintToken function of a smart contract implementation for Doftcoin Token, an Ethereum ERC20 t...
CVE-2021-33403HIGH7.5An integer overflow in the transfer function of a smart contract implementation for Lancer Token, an Ethereum ERC20 toke...
CVE-2021-33335HIGH7.2Privilege escalation vulnerability in Liferay Portal 7.0.3 through 7.3.4, and Liferay DXP 7.1 before fix pack 20, and 7....
CVE-2021-30588HIGH8.8Type confusion in V8 in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to potentially exploit heap corru...
CVE-2021-30586HIGH8.8Use after free in dialog box handling in Windows in Google Chrome prior to 92.0.4515.107 allowed an attacker who convinc...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now