2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-31425 | HIGH | 8.8 | 0.5% | Apr 29, 2021 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.2-4... |
| CVE-2021-31424 | HIGH | 8.8 | 0.4% | Apr 29, 2021 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.5-4... |
| CVE-2021-31422 | HIGH | 7.5 | 0.3% | Apr 29, 2021 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.1-4... |
| CVE-2021-31420 | HIGH | 8.8 | 0.4% | Apr 29, 2021 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.0-4... |
| CVE-2021-21415 | HIGH | 7.8 | 2.1% | Apr 29, 2021 | Prisma VS Code a VSCode extension for Prisma schema files. This is a Remote Code Execution Vulnerability that affects al... |
| CVE-2021-30229 | HIGH | 8.8 | 2.9% | Apr 29, 2021 | The api/zrDm/set_zrDm interface in China Mobile An Lianbao WF-1 router 1.0.1 allows remote attackers to execute arbitrar... |
| CVE-2021-29350 | HIGH | 7.2 | 1.3% | Apr 29, 2021 | SQL injection in the getip function in conn/function.php in 发货100-设计素材下载系统 1.1 allows remote attackers to inject arbitra... |
| CVE-2021-25811 | HIGH | 7.5 | 1.6% | Apr 29, 2021 | MERCUSYS Mercury X18G 1.0.5 devices allow Denial of service via a crafted value to the POST listen_http_lan parameter. U... |
| CVE-2021-20294 | HIGH | 7.8 | 3.4% | Apr 29, 2021 | A flaw was found in binutils readelf 2.35 program. An attacker who is able to convince a victim using readelf to read a ... |
| CVE-2021-20228 | HIGH | 7.5 | 2.0% | Apr 29, 2021 | A flaw was found in the Ansible Engine 2.9.18, where sensitive info is not masked by default and is not protected by the... |
| CVE-2021-30224 | HIGH | 8.8 | 0.7% | Apr 29, 2021 | Cross Site Request Forgery (CSRF) in Rukovoditel v2.8.3 allows attackers to create an admin user with an arbitrary crede... |
| CVE-2021-28899 | HIGH | 7.5 | 1.1% | Apr 29, 2021 | Vulnerability in the AC3AudioFileServerMediaSubsession, ADTSAudioFileServerMediaSubsession, and AMRAudioFileServerMediaS... |
| CVE-2021-20092 | HIGH | 7.5 | 8.2% | Apr 29, 2021 | The web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 firmware version <= 1.24 do not pr... |
| CVE-2021-20091 | HIGH | 8.8 | 8.7% | Apr 29, 2021 | The web interfaces of Buffalo WSR-2533DHPL2 firmware version <= 1.02 and WSR-2533DHP3 firmware version <= 1.24 do not pr... |
| CVE-2021-29140 | HIGH | 8.2 | 1.6% | Apr 29, 2021 | A remote XML external entity (XXE) vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to 6... |
| CVE-2021-29147 | HIGH | 8.8 | 3.2% | Apr 29, 2021 | A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s) prior to ... |
| CVE-2021-25167 | HIGH | 8.8 | 1.5% | Apr 29, 2021 | A remote unauthorized access vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.1... |
| CVE-2021-25166 | HIGH | 8.8 | 1.5% | Apr 29, 2021 | A remote unauthorized access vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.1... |
| CVE-2021-25163 | HIGH | 8.1 | 1.2% | Apr 29, 2021 | A remote XML external entity vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.1... |
| CVE-2021-31776 | HIGH | 7.8 | 0.3% | Apr 29, 2021 | Aviatrix VPN Client before 2.14.14 on Windows has an unquoted search path that enables local privilege escalation to the... |
| CVE-2021-25215 | HIGH | 7.5 | 11.3% | Apr 29, 2021 | In BIND 9.0.0 -> 9.11.29, 9.12.0 -> 9.16.13, and versions BIND 9.9.3-S1 -> 9.11.29-S1 and 9.16.8-S1 -> 9.16.13-S1 of BIN... |
| CVE-2021-21414 | HIGH | 7.2 | 2.1% | Apr 29, 2021 | Prisma is an open source ORM for Node.js & TypeScript. As of today, we are not aware of any Prisma users or external con... |
| CVE-2021-29483 | HIGH | 7.5 | 1.2% | Apr 28, 2021 | ManageWiki is an extension to the MediaWiki project. The 'wikiconfig' API leaked the value of private configuration vari... |
| CVE-2021-25165 | HIGH | 8.1 | 1.2% | Apr 28, 2021 | A remote XML external entity vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to 8.2.1... |
| CVE-2021-25152 | HIGH | 7.2 | 1.2% | Apr 28, 2021 | A remote insecure deserialization vulnerability was discovered in Aruba AirWave Management Platform version(s) prior to ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now