2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-25931 | HIGH | 8.8 | 0.7% | May 20, 2021 | In OpenNMS Horizon, versions opennms-1-0-stable through opennms-27.1.0-1; OpenNMS Meridian, versions meridian-foundation... |
| CVE-2021-3438 | HIGH | 7.8 | 2.9% | May 20, 2021 | A potential buffer overflow in the software drivers for certain HP LaserJet products and Samsung product printers could ... |
| CVE-2021-28112 | HIGH | 8.8 | 1.9% | May 20, 2021 | Draeger X-Dock Firmware before 03.00.13 has Active Debug Code on a debug port, leading to remote code execution by an au... |
| CVE-2021-28111 | HIGH | 8.8 | 3.1% | May 20, 2021 | Draeger X-Dock Firmware before 03.00.13 has Hard-Coded Credentials, leading to remote code execution by an authenticated... |
| CVE-2021-27434 | HIGH | 7.5 | 1.7% | May 20, 2021 | Products with Unified Automation .NET based OPC UA Client/Server SDK Bundle: Versions V3.0.7 and prior (.NET 4.5, 4.0, a... |
| CVE-2021-3480 | HIGH | 7.5 | 1.7% | May 20, 2021 | A flaw was found in slapi-nis in versions before 0.56.7. A NULL pointer dereference during the parsing of the Binding DN... |
| CVE-2021-27461 | HIGH | 7.5 | 1.4% | May 20, 2021 | A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected webserver ... |
| CVE-2021-27457 | HIGH | 7.5 | 0.5% | May 20, 2021 | A vulnerability has been found in multiple revisions of Emerson Rosemount X-STREAM Gas Analyzer. The affected products u... |
| CVE-2021-20718 | HIGH | 7.5 | 3.4% | May 20, 2021 | mod_auth_openidc 2.4.0 to 2.4.7 allows a remote attacker to cause a denial-of-service (DoS) condition via unspecified ve... |
| CVE-2021-25644 | HIGH | 7.5 | 0.6% | May 19, 2021 | An issue was discovered in Couchbase Server 5.x and 6.x through 6.6.1 and 7.0.0 Beta. Incorrect commands to the REST API... |
| CVE-2021-3517 | HIGH | 8.6 | 8.3% | May 19, 2021 | There is a flaw in the xml entity encoding functionality of libxml2 in versions before 2.9.11. An attacker who is able t... |
| CVE-2021-3445 | HIGH | 7.5 | 1.1% | May 19, 2021 | A flaw was found in libdnf's signature verification functionality in versions before 0.60.1. This flaw allows an attacke... |
| CVE-2021-21732 | HIGH | 7.5 | 1.0% | May 19, 2021 | A mobile phone of ZTE is impacted by improper access control vulnerability. Due to improper permission settings, third-p... |
| CVE-2021-20589 | HIGH | 7.5 | 1.5% | May 19, 2021 | Buffer access with incorrect length value vulnerability in GOT2000 series GT27 model communication driver versions 01.19... |
| CVE-2021-31321 | HIGH | 7.1 | 1.1% | May 18, 2021 | Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Stack Based Overflow in the... |
| CVE-2021-31320 | HIGH | 7.1 | 1.2% | May 18, 2021 | Telegram Android <7.1.0 (2090), Telegram iOS <7.1, and Telegram macOS <7.1 are affected by a Heap Buffer Overflow in the... |
| CVE-2021-32238 | HIGH | 7.8 | 2.1% | May 18, 2021 | Epic Games / Psyonix Rocket League <=1.95 is affected by Buffer Overflow. Stack-based buffer overflow occurs when Rocket... |
| CVE-2021-30145 | HIGH | 7.8 | 2.4% | May 18, 2021 | A format string vulnerability in mpv through 0.33.0 allows user-assisted remote attackers to achieve code execution via ... |
| CVE-2021-22117 | HIGH | 7.8 | 0.6% | May 18, 2021 | RabbitMQ installers on Windows prior to version 3.8.16 do not harden plugin directory permissions, potentially allowing ... |
| CVE-2021-3518 | HIGH | 8.8 | 3.7% | May 18, 2021 | There's a flaw in libxml2 in versions before 2.9.11. An attacker who is able to submit a crafted file to be processed by... |
| CVE-2021-31827 | HIGH | 8.8 | 1.2% | May 18, 2021 | In Progress MOVEit Transfer before 2021.0 (13.0), a SQL injection vulnerability has been found in the MOVEit Transfer we... |
| CVE-2021-3423 | HIGH | 7.8 | 0.2% | May 18, 2021 | Uncontrolled Search Path Element vulnerability in the openssl component as used in Bitdefender GravityZone Business Secu... |
| CVE-2021-32622 | HIGH | 7.8 | 0.4% | May 17, 2021 | Matrix-React-SDK is a react-based SDK for inserting a Matrix chat/voip client into a web page. Before version 3.21.0, wh... |
| CVE-2021-29024 | HIGH | 7.5 | 1.4% | May 17, 2021 | In InvoicePlane 1.5.11 a misconfigured web server allows unauthenticated directory listing and file download. Allowing a... |
| CVE-2021-32454 | HIGH | 8.8 | 0.4% | May 17, 2021 | SITEL CAP/PRX firmware version 5.2.01 makes use of a hardcoded password. An attacker with access to the device could mod... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now