2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-43025 | HIGH | 7.8 | 2.3% | Dec 20, 2021 | Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handli... |
| CVE-2021-43024 | HIGH | 7.8 | 2.3% | Dec 20, 2021 | Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handli... |
| CVE-2021-43023 | HIGH | 7.8 | 2.3% | Dec 20, 2021 | Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handli... |
| CVE-2021-43022 | HIGH | 7.8 | 2.3% | Dec 20, 2021 | Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handli... |
| CVE-2021-43021 | HIGH | 7.8 | 2.3% | Dec 20, 2021 | Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handli... |
| CVE-2021-42809 | HIGH | 7.8 | 0.3% | Dec 20, 2021 | Improper Access Control of Dynamically-Managed Code Resources (DLL) in Thales Sentinel Protection Installer could allow ... |
| CVE-2021-42808 | MEDIUM | 6.7 | 0.2% | Dec 20, 2021 | Improper Access Control in Thales Sentinel Protection Installer could allow a local user to escalate privileges. |
| CVE-2021-42138 | MEDIUM | 6.5 | 0.6% | Dec 20, 2021 | A user of a machine protected by SafeNet Agent for Windows Logon may leverage weak entropy to access the encrypted crede... |
| CVE-2021-40784 | HIGH | 7.8 | 2.0% | Dec 20, 2021 | Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handli... |
| CVE-2021-40783 | HIGH | 7.8 | 2.0% | Dec 20, 2021 | Adobe Premiere Rush version 1.5.16 (and earlier) is affected by a memory corruption vulnerability due to insecure handli... |
| CVE-2021-38421 | HIGH | 7.1 | 0.8% | Dec 20, 2021 | Fuji Electric V-Server Lite and Tellus Lite V-Simulator prior to v4.0.12.0 is vulnerable to an out-of-bounds read, which... |
| CVE-2021-38419 | HIGH | 7.8 | 0.9% | Dec 20, 2021 | Fuji Electric V-Server Lite and Tellus Lite V-Simulator prior to v4.0.12.0 is vulnerable to an out-of-bounds write, whic... |
| CVE-2021-38415 | HIGH | 7.8 | 1.0% | Dec 20, 2021 | Fuji Electric V-Server Lite and Tellus Lite V-Simulator prior to v4.0.12.0 is vulnerable a heap-based buffer overflow wh... |
| CVE-2021-38413 | HIGH | 7.8 | 1.0% | Dec 20, 2021 | Fuji Electric V-Server Lite and Tellus Lite V-Simulator prior to v4.0.12.0 is vulnerable to a stack-based buffer overflo... |
| CVE-2021-38409 | HIGH | 7.8 | 0.7% | Dec 20, 2021 | Fuji Electric V-Server Lite and Tellus Lite V-Simulator prior to v4.0.12.0 is vulnerable to an access of uninitialized p... |
| CVE-2021-38401 | HIGH | 7.8 | 0.9% | Dec 20, 2021 | Fuji Electric V-Server Lite and Tellus Lite V-Simulator prior to v4.0.12.0 is vulnerable to an untrusted pointer derefer... |
| CVE-2021-36889 | MEDIUM | 4.8 | 0.6% | Dec 20, 2021 | Multiple Stored Authenticated Cross-Site Scripting (XSS) vulnerabilities were discovered in tarteaucitron.js – Cookies l... |
| CVE-2021-36887 | HIGH | 8.8 | 0.5% | Dec 20, 2021 | Cross-Site Request Forgery (CSRF) vulnerability leading to Cross-Site Scripting (XSS) discovered in tarteaucitron.js – C... |
| CVE-2021-35248 | MEDIUM | 4.3 | 0.9% | Dec 20, 2021 | It has been reported that any Orion user, e.g. guest accounts can query the Orion.UserSettings entity and enumerate user... |
| CVE-2021-35244 | HIGH | 7.2 | 5.8% | Dec 20, 2021 | The "Log alert to a file" action within action management enables any Orion Platform user with Orion alert management ri... |
| CVE-2021-35234 | HIGH | 8.8 | 2.8% | Dec 20, 2021 | Numerous exposed dangerous functions within Orion Core has allows for read-only SQL injection leading to privileged esca... |
| CVE-2021-22057 | HIGH | 8.8 | 1.1% | Dec 20, 2021 | VMware Workspace ONE Access 21.08, 20.10.0.1, and 20.10 contain an authentication bypass vulnerability. A malicious acto... |
| CVE-2021-22056 | HIGH | 7.5 | 1.6% | Dec 20, 2021 | VMware Workspace ONE Access 21.08, 20.10.0.1, and 20.10 and Identity Manager 3.3.5, 3.3.4, and 3.3.3 contain an SSRF vul... |
| CVE-2021-43441 | MEDIUM | 5.3 | 1.2% | Dec 20, 2021 | An HTML Injection Vulnerability in iOrder 1.0 allows the remote attacker to execute Malicious HTML codes via the signup ... |
| CVE-2021-43440 | MEDIUM | 6.1 | 1.4% | Dec 20, 2021 | Multiple Stored XSS Vulnerabilities in the Source Code of iOrder 1.0 allow remote attackers to execute arbitrary code vi... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now