2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-31515HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Vector 35 Binary Ninja...
CVE-2021-31514HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Deskto...
CVE-2021-31513HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Deskto...
CVE-2021-31512HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Deskto...
CVE-2021-31511HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Deskto...
CVE-2021-31510HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Deskto...
CVE-2021-31509HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Deskto...
CVE-2021-31508HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Deskto...
CVE-2021-31507HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Deskto...
CVE-2021-34824HIGH8.8Istio (1.8.x, 1.9.0-1.9.5 and 1.10.0-1.10.1) contains a remotely exploitable vulnerability where credentials specified i...
CVE-2021-31530HIGH7.5Zoho ManageEngine ServiceDesk Plus MSP before 10522 is vulnerable to Information Disclosure.
CVE-2021-31160HIGH7.5Zoho ManageEngine ServiceDesk Plus MSP before 10521 allows an attacker to access internal data.
CVE-2021-34550HIGH7.5An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-006. The v3 onion service descriptor parsing allows out-of...
CVE-2021-34549HIGH7.5An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-005. Hashing is mishandled for certain retrieval of circui...
CVE-2021-32565HIGH7.5Invalid values in the Content-Length header sent to Apache Traffic Server allows an attacker to smuggle requests. This i...
CVE-2021-28691HIGH7.8Guest triggered use-after-free in Linux xen-netback A malicious or buggy network PV frontend can force Linux netback to ...
CVE-2021-27577HIGH7.5Incorrect handling of url fragment vulnerability of Apache Traffic Server allows an attacker to poison the cache. This i...
CVE-2021-23400HIGH8.8The package nodemailer before 6.6.1 are vulnerable to HTTP Header Injection if unsanitized user input that may contain n...
CVE-2021-22545HIGH7.8An attacker can craft a specific IdaPro *.i64 file that will cause the BinDiff plugin to load an invalid memory offset. ...
CVE-2021-34548HIGH7.5An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-003. An attacker can forge RELAY_END or RELAY_RESOLVED to ...
CVE-2021-33503HIGH7.5An issue was discovered in urllib3 before 1.26.5. When provided with a URL containing many @ characters in the authority...
CVE-2021-1134HIGH7.4A vulnerability in the Cisco Identity Services Engine (ISE) integration feature of the Cisco DNA Center Software could a...
CVE-2021-35299HIGH7.5Incorrect Access Control in Zammad 1.0.x up to 4.0.0 allows attackers to obtain sensitive information via email connecti...
CVE-2021-35523HIGH7.8Securepoint SSL VPN Client v2 before 2.0.32 on Windows has unsafe configuration handling that enables local privilege es...
CVE-2021-20574HIGH8.8IBM Security Identity Manager Adapters 6.0 and 7.0 could allow a remote authenticated attacker to conduct an LDAP inject...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now