2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-31450HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37...
CVE-2021-31449HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37...
CVE-2021-31442HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37...
CVE-2021-31441HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37...
CVE-2021-29499HIGH7.5SIF is an open source implementation of the Singularity Container Image Format. The `siftool new` command and func sifto...
CVE-2021-27574HIGH8.1An issue was discovered in Emote Remote Mouse through 4.0.0.0. It uses cleartext HTTP to check, and request, updates. Th...
CVE-2021-27572HIGH8.1An issue was discovered in Emote Remote Mouse through 4.0.0.0. Authentication Bypass can occur via Packet Replay. Remote...
CVE-2021-29495HIGH7.5Nim is a statically typed compiled systems programming language. In Nim standard library before 1.4.2, httpClient SSL/TL...
CVE-2021-22677HIGH7.8An integer overflow exists in the APIs of the host MCU while trying to connect to a WIFI network may lead to issues such...
CVE-2021-22673HIGH8The affected product is vulnerable to stack-based buffer overflow while processing over-the-air firmware updates from th...
CVE-2021-22675HIGH7.2The affected product is vulnerable to integer overflow while parsing malformed over-the-air firmware update files, which...
CVE-2021-1927HIGH7.8Possible use after free due to lack of null check while memory is being freed in FastRPC driver in Snapdragon Auto, Snap...
CVE-2021-1925HIGH7.5Possible denial of service scenario due to improper handling of group management action frame in Snapdragon Auto, Snapdr...
CVE-2021-1915HIGH7.8Buffer overflow can occur due to improper validation of NDP application information length in Snapdragon Auto, Snapdrago...
CVE-2021-1905HIGH7.8Possible use after free due to improper handling of memory mapping of multiple processes simultaneously. in Snapdragon A...
CVE-2021-1895HIGH7.8Possible integer overflow due to improper length check while flashing an image in Snapdragon Consumer IOT, Snapdragon In...
CVE-2021-1891HIGH7.8A possible use-after-free occurrence in audio driver can happen when pointers are not properly handled in Snapdragon Aut...
CVE-2021-32074HIGH7.5HashiCorp vault-action (aka Vault GitHub Action) before 2.2.0 allows attackers to obtain sensitive information from log ...
CVE-2021-32104HIGH8.8A SQL injection vulnerability exists (with user privileges) in interface/forms/eye_mag/save.php in OpenEMR 5.0.2.1.
CVE-2021-32102HIGH8.8A SQL injection vulnerability exists (with user privileges) in library/custom_template/ajax_code.php in OpenEMR 5.0.2.1.
CVE-2021-32101HIGH8.2The Patient Portal of OpenEMR 5.0.2.1 is affected by a incorrect access control system in portal/patient/_machine_config...
CVE-2021-32096HIGH8.8The ConsoleAction component of U.S. National Security Agency (NSA) Emissary 5.9.0 allows a CSRF attack that results in i...
CVE-2021-32095HIGH8.1U.S. National Security Agency (NSA) Emissary 5.9.0 allows an authenticated user to delete arbitrary files.
CVE-2021-32094HIGH8.8U.S. National Security Agency (NSA) Emissary 5.9.0 allows an authenticated user to upload arbitrary files.
CVE-2021-32077HIGH7.5Primary Source Verification in VerityStream MSOW Solutions before 3.1.1 allows an anonymous internet user to discover So...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now