2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2021-45814CRITICAL9.8Nettmp NNT 5.1 is affected by a SQL injection vulnerability. An attacker can bypass authentication and access the panel ...
CVE-2021-37401CRITICAL9.8An attacker may obtain the user credentials from file servers, backup repositories, or ZLD files saved in SD cards. As a...
CVE-2021-37400CRITICAL9.8An attacker may obtain the user credentials from the communication between the PLC and the software. As a result, the PL...
CVE-2021-45890CRITICAL9.8basic/BasicAuthProvider.java in AuthGuard before 0.9.0 allows authentication via an inactive identifier.
CVE-2021-43845CRITICAL9.1PJSIP is a free and open source multimedia communication library. In version 2.11.1 and prior, if incoming RTCP XR messa...
CVE-2021-45232CRITICAL9.8In Apache APISIX Dashboard before 2.10.1, the Manager API uses two frameworks and introduces framework `droplet` on the ...
CVE-2021-45709CRITICAL9.8An issue was discovered in the crypto2 crate through 2021-10-08 for Rust. During Chacha20 encryption and decryption, an ...
CVE-2021-45707CRITICAL9.8An issue was discovered in the nix crate 0.16.0 and later before 0.20.2, 0.21.x before 0.21.2, and 0.22.x before 0.22.2 ...
CVE-2021-45706CRITICAL9.8An issue was discovered in the zeroize_derive crate before 1.1.1 for Rust. Dropped memory is not zeroed out for an enum.
CVE-2021-45705CRITICAL9.8An issue was discovered in the nanorand crate before 0.6.1 for Rust. There can be multiple mutable references to the sam...
CVE-2021-45703CRITICAL9.8An issue was discovered in the tectonic_xdv crate before 0.1.12 for Rust. XdvParser::<T>::process may read from uninitia...
CVE-2021-45701CRITICAL9.8An issue was discovered in the tremor-script crate before 0.11.6 for Rust. A patch operation may result in a use-after-f...
CVE-2021-45698CRITICAL9.8An issue was discovered in the ckb crate before 0.40.0 for Rust. A get_block_template RPC call may fail in situations wh...
CVE-2021-45697CRITICAL9.8An issue was discovered in the molecule crate before 0.7.2 for Rust. A FixVec partial read has an incorrect result.
CVE-2021-45696CRITICAL9.8An issue was discovered in the sha2 crate 0.9.7 before 0.9.8 for Rust. Hashes of long messages may be incorrect when the...
CVE-2021-45695CRITICAL9.8An issue was discovered in the mopa crate through 2021-06-01 for Rust. It incorrectly relies on Trait memory layout, pos...
CVE-2021-45693CRITICAL9.8An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_string_primitive may read f...
CVE-2021-45692CRITICAL9.8An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_extension_others may read f...
CVE-2021-45691CRITICAL9.8An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_string may read from uninit...
CVE-2021-45690CRITICAL9.8An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_binary may read from uninit...
CVE-2021-45689CRITICAL9.8An issue was discovered in the gfx-auxil crate through 2021-01-07 for Rust. gfx_auxil::read_spirv may read from uninitia...
CVE-2021-45688CRITICAL9.8An issue was discovered in the ash crate before 0.33.1 for Rust. util::read_spv may read from uninitialized memory locat...
CVE-2021-45687CRITICAL9.8An issue was discovered in the raw-cpuid crate before 9.1.1 for Rust. If the serialize feature is used (which is not the...
CVE-2021-45686CRITICAL9.8An issue was discovered in the csv-sniffer crate through 2021-01-05 for Rust. preamble_skipcount may read from uninitial...
CVE-2021-45685CRITICAL9.8An issue was discovered in the columnar crate through 2021-01-07 for Rust. ColumnarReadExt::read_typed_vec may read from...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now