2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-31450 | HIGH | 7.8 | 2.8% | May 7, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37... |
| CVE-2021-31449 | HIGH | 7.8 | 2.8% | May 7, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37... |
| CVE-2021-31442 | HIGH | 7.8 | 2.8% | May 7, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37... |
| CVE-2021-31441 | HIGH | 7.8 | 2.8% | May 7, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37... |
| CVE-2021-29499 | HIGH | 7.5 | 1.0% | May 7, 2021 | SIF is an open source implementation of the Singularity Container Image Format. The `siftool new` command and func sifto... |
| CVE-2021-27574 | HIGH | 8.1 | 1.1% | May 7, 2021 | An issue was discovered in Emote Remote Mouse through 4.0.0.0. It uses cleartext HTTP to check, and request, updates. Th... |
| CVE-2021-27572 | HIGH | 8.1 | 3.2% | May 7, 2021 | An issue was discovered in Emote Remote Mouse through 4.0.0.0. Authentication Bypass can occur via Packet Replay. Remote... |
| CVE-2021-29495 | HIGH | 7.5 | 0.5% | May 7, 2021 | Nim is a statically typed compiled systems programming language. In Nim standard library before 1.4.2, httpClient SSL/TL... |
| CVE-2021-22677 | HIGH | 7.8 | 0.3% | May 7, 2021 | An integer overflow exists in the APIs of the host MCU while trying to connect to a WIFI network may lead to issues such... |
| CVE-2021-22673 | HIGH | 8 | 1.2% | May 7, 2021 | The affected product is vulnerable to stack-based buffer overflow while processing over-the-air firmware updates from th... |
| CVE-2021-22675 | HIGH | 7.2 | 1.4% | May 7, 2021 | The affected product is vulnerable to integer overflow while parsing malformed over-the-air firmware update files, which... |
| CVE-2021-1927 | HIGH | 7.8 | 0.2% | May 7, 2021 | Possible use after free due to lack of null check while memory is being freed in FastRPC driver in Snapdragon Auto, Snap... |
| CVE-2021-1925 | HIGH | 7.5 | 0.6% | May 7, 2021 | Possible denial of service scenario due to improper handling of group management action frame in Snapdragon Auto, Snapdr... |
| CVE-2021-1915 | HIGH | 7.8 | 0.2% | May 7, 2021 | Buffer overflow can occur due to improper validation of NDP application information length in Snapdragon Auto, Snapdrago... |
| CVE-2021-1905 | HIGH | 7.8 | 1.1% | May 7, 2021 | Possible use after free due to improper handling of memory mapping of multiple processes simultaneously. in Snapdragon A... |
| CVE-2021-1895 | HIGH | 7.8 | 0.2% | May 7, 2021 | Possible integer overflow due to improper length check while flashing an image in Snapdragon Consumer IOT, Snapdragon In... |
| CVE-2021-1891 | HIGH | 7.8 | 0.1% | May 7, 2021 | A possible use-after-free occurrence in audio driver can happen when pointers are not properly handled in Snapdragon Aut... |
| CVE-2021-32074 | HIGH | 7.5 | 1.9% | May 7, 2021 | HashiCorp vault-action (aka Vault GitHub Action) before 2.2.0 allows attackers to obtain sensitive information from log ... |
| CVE-2021-32104 | HIGH | 8.8 | 1.2% | May 7, 2021 | A SQL injection vulnerability exists (with user privileges) in interface/forms/eye_mag/save.php in OpenEMR 5.0.2.1. |
| CVE-2021-32102 | HIGH | 8.8 | 1.2% | May 7, 2021 | A SQL injection vulnerability exists (with user privileges) in library/custom_template/ajax_code.php in OpenEMR 5.0.2.1. |
| CVE-2021-32101 | HIGH | 8.2 | 1.2% | May 7, 2021 | The Patient Portal of OpenEMR 5.0.2.1 is affected by a incorrect access control system in portal/patient/_machine_config... |
| CVE-2021-32096 | HIGH | 8.8 | 0.6% | May 7, 2021 | The ConsoleAction component of U.S. National Security Agency (NSA) Emissary 5.9.0 allows a CSRF attack that results in i... |
| CVE-2021-32095 | HIGH | 8.1 | 0.9% | May 7, 2021 | U.S. National Security Agency (NSA) Emissary 5.9.0 allows an authenticated user to delete arbitrary files. |
| CVE-2021-32094 | HIGH | 8.8 | 1.2% | May 7, 2021 | U.S. National Security Agency (NSA) Emissary 5.9.0 allows an authenticated user to upload arbitrary files. |
| CVE-2021-32077 | HIGH | 7.5 | 1.2% | May 6, 2021 | Primary Source Verification in VerityStream MSOW Solutions before 3.1.1 allows an anonymous internet user to discover So... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now