2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-43025HIGH7.8Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handli...
CVE-2021-43024HIGH7.8Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handli...
CVE-2021-43023HIGH7.8Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handli...
CVE-2021-43022HIGH7.8Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handli...
CVE-2021-43021HIGH7.8Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handli...
CVE-2021-42809HIGH7.8Improper Access Control of Dynamically-Managed Code Resources (DLL) in Thales Sentinel Protection Installer could allow ...
CVE-2021-42808MEDIUM6.7Improper Access Control in Thales Sentinel Protection Installer could allow a local user to escalate privileges.
CVE-2021-42138MEDIUM6.5A user of a machine protected by SafeNet Agent for Windows Logon may leverage weak entropy to access the encrypted crede...
CVE-2021-40784HIGH7.8Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handli...
CVE-2021-40783HIGH7.8Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handli...
CVE-2021-38421HIGH7.1Fuji Electric V-Server Lite and Tellus Lite V-Simulator prior to v4.0.12.0 is vulnerable to an out-of-bounds read, which...
CVE-2021-38419HIGH7.8Fuji Electric V-Server Lite and Tellus Lite V-Simulator prior to v4.0.12.0 is vulnerable to an out-of-bounds write, whic...
CVE-2021-38415HIGH7.8Fuji Electric V-Server Lite and Tellus Lite V-Simulator prior to v4.0.12.0 is vulnerable a heap-based buffer overflow wh...
CVE-2021-38413HIGH7.8Fuji Electric V-Server Lite and Tellus Lite V-Simulator prior to v4.0.12.0 is vulnerable to a stack-based buffer overflo...
CVE-2021-38409HIGH7.8Fuji Electric V-Server Lite and Tellus Lite V-Simulator prior to v4.0.12.0 is vulnerable to an access of uninitialized p...
CVE-2021-38401HIGH7.8Fuji Electric V-Server Lite and Tellus Lite V-Simulator prior to v4.0.12.0 is vulnerable to an untrusted pointer derefer...
CVE-2021-36889MEDIUM4.8Multiple Stored Authenticated Cross-Site Scripting (XSS) vulnerabilities were discovered in tarteaucitron.js – Cookies l...
CVE-2021-36887HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability leading to Cross-Site Scripting (XSS) discovered in tarteaucitron.js – C...
CVE-2021-35248MEDIUM4.3It has been reported that any Orion user, e.g. guest accounts can query the Orion.UserSettings entity and enumerate user...
CVE-2021-35244HIGH7.2The "Log alert to a file" action within action management enables any Orion Platform user with Orion alert management ri...
CVE-2021-35234HIGH8.8Numerous exposed dangerous functions within Orion Core has allows for read-only SQL injection leading to privileged esca...
CVE-2021-22057HIGH8.8VMware Workspace ONE Access 21.08, 20.10.0.1, and 20.10 contain an authentication bypass vulnerability. A malicious acto...
CVE-2021-22056HIGH7.5VMware Workspace ONE Access 21.08, 20.10.0.1, and 20.10 and Identity Manager 3.3.5, 3.3.4, and 3.3.3 contain an SSRF vul...
CVE-2021-43441MEDIUM5.3An HTML Injection Vulnerability in iOrder 1.0 allows the remote attacker to execute Malicious HTML codes via the signup ...
CVE-2021-43440MEDIUM6.1Multiple Stored XSS Vulnerabilities in the Source Code of iOrder 1.0 allow remote attackers to execute arbitrary code vi...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now