2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-31425HIGH8.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.2-4...
CVE-2021-31424HIGH8.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.5-4...
CVE-2021-31422HIGH7.5This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.1-4...
CVE-2021-31420HIGH8.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.0-4...
CVE-2021-21415HIGH7.8Prisma VS Code a VSCode extension for Prisma schema files. This is a Remote Code Execution Vulnerability that affects al...
CVE-2021-30229HIGH8.8The api/zrDm/set_zrDm interface in China Mobile An Lianbao WF-1 router 1.0.1 allows remote attackers to execute arbitrar...
CVE-2021-29350HIGH7.2SQL injection in the getip function in conn/function.php in 发货100-设计素材下载系统 1.1 allows remote attackers to inject arbitra...
CVE-2021-25811HIGH7.5MERCUSYS Mercury X18G 1.0.5 devices allow Denial of service via a crafted value to the POST listen_http_lan parameter. U...
CVE-2021-20294HIGH7.8A flaw was found in binutils readelf 2.35 program. An attacker who is able to convince a victim using readelf to read a ...
CVE-2021-20228HIGH7.5A flaw was found in the Ansible Engine 2.9.18, where sensitive info is not masked by default and is not protected by the...
CVE-2021-30224HIGH8.8Cross Site Request Forgery (CSRF) in Rukovoditel v2.8.3 allows attackers to create an admin user with an arbitrary crede...
CVE-2021-28899HIGH7.5Vulnerability in the AC3AudioFileServerMediaSubsession, ADTSAudioFileServerMediaSubsession, and AMRAudioFileServerMediaS...
CVE-2021-20092HIGH7.5The web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 firmware version <= 1.24 do not pr...
CVE-2021-20091HIGH8.8The web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 firmware version <= 1.24 do not pr...
CVE-2021-29140HIGH8.2A remote XML external entity (XXE) vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to 6...
CVE-2021-29147HIGH8.8A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s) prior to ...
CVE-2021-25167HIGH8.8A remote unauthorized access vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.1...
CVE-2021-25166HIGH8.8A remote unauthorized access vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.1...
CVE-2021-25163HIGH8.1A remote XML external entity vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.1...
CVE-2021-31776HIGH7.8Aviatrix VPN Client before 2.14.14 on Windows has an unquoted search path that enables local privilege escalation to the...
CVE-2021-25215HIGH7.5In BIND 9.0.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIN...
CVE-2021-21414HIGH7.2Prisma is an open source ORM for Node.js & TypeScript. As of today, we are not aware of any Prisma users or external con...
CVE-2021-29483HIGH7.5ManageWiki is an extension to the MediaWiki project. The 'wikiconfig' API leaked the value of private configuration vari...
CVE-2021-25165HIGH8.1A remote XML external entity vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.1...
CVE-2021-25152HIGH7.2A remote insecure deserialization vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now