2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-29493HIGH8.8Kennnyshiwa-cogs contains cogs for Red Discordbot. An RCE exploit has been found in the Tickets module of kennnyshiwa-co...
CVE-2021-28665HIGH7.5Stormshield SNS with versions before 3.7.18, 3.11.6 and 4.1.6 has a memory-management defect in the SNMP plugin that can...
CVE-2021-31828HIGH7.1An SSRF issue in Open Distro for Elasticsearch (ODFE) before 1.13.1.0 allows an existing privileged user to enumerate li...
CVE-2021-31918HIGH7.5A flaw was found in tripleo-ansible version as shipped in Red Hat Openstack 16.1. The Ansible log file is readable to al...
CVE-2021-31793HIGH7.5An issue exists on NightOwl WDB-20-V2 WDB-20-V2_20190314 devices that allows an unauthenticated user to gain access to s...
CVE-2021-28151HIGH8.8Hongdian H8922 3.0.5 devices allow OS command injection via shell metacharacters into the ip-address (aka Destination) f...
CVE-2021-28128HIGH8.1In Strapi through 3.6.0, the admin panel allows the changing of one's own password without entering the current password...
CVE-2021-22209HIGH7.5An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.8. GitLab was not properly validati...
CVE-2021-3501HIGH7.1A flaw was found in the Linux kernel in versions before 5.12. The value of internal.ndata, in the KVM API, is mapped to ...
CVE-2021-31616HIGH8.8Insufficient length checks in the ShapeShift KeepKey hardware wallet firmware before 7.1.0 allow a stack buffer overflow...
CVE-2021-31409HIGH7.5Unsafe validation RegEx in EmailValidator component in com.vaadin:vaadin-compatibility-server versions 8.0.0 through 8.1...
CVE-2021-26543HIGH8.8The "gitDiff" function in Wayfair git-parse <=1.0.4 has a command injection vulnerability. Clients of the git-parse libr...
CVE-2021-24254HIGH7.2The College publisher Import WordPress plugin through 0.1 does not check for the uploaded CSV file to import, allowing h...
CVE-2021-24253HIGH8.8The Classyfrieds WordPress plugin through 3.8 does not properly check the uploaded file when an authenticated user adds ...
CVE-2021-24252HIGH7.2The Event Banner WordPress plugin through 1.3 does not verify the uploaded image file, allowing admin accounts to upload...
CVE-2021-24248HIGH7.2The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.1 did not properly c...
CVE-2021-24179HIGH8.8The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11 suffered from a Cros...
CVE-2021-24178HIGH8.8The Business Directory Plugin – Easy Listing Directories for WordPress WordPress plugin before 5.11.1 suffered from Cros...
CVE-2021-1530HIGH7.1A vulnerability in the web-based management interface of Cisco BroadWorks Messaging Server Software could allow an authe...
CVE-2021-1514HIGH7.8A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to inject arbitrary com...
CVE-2021-1513HIGH7.5A vulnerability in the vDaemon process of Cisco SD-WAN Software could allow an unauthenticated, remote attacker to cause...
CVE-2021-1510HIGH7.5Multiple vulnerabilities in Cisco SD-WAN vEdge Software could allow an attacker to execute arbitrary code as the root us...
CVE-2021-1509HIGH7.5Multiple vulnerabilities in Cisco SD-WAN vEdge Software could allow an attacker to execute arbitrary code as the root us...
CVE-2021-1508HIGH8.8Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arb...
CVE-2021-1506HIGH7.2Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arb...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now