2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-21035 | HIGH | 8.8 | 4.0% | Feb 11, 2021 | Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and e... |
| CVE-2021-21033 | HIGH | 8.8 | 4.0% | Feb 11, 2021 | Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and e... |
| CVE-2021-21030 | HIGH | 8.1 | 5.6% | Feb 11, 2021 | Magento versions 2.4.1 (and earlier), 2.4.0-p1 (and earlier) and 2.3.6 (and earlier) are vulnerable to a stored cross-si... |
| CVE-2021-21028 | HIGH | 8.8 | 4.0% | Feb 11, 2021 | Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and e... |
| CVE-2021-21021 | HIGH | 8.8 | 4.0% | Feb 11, 2021 | Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and e... |
| CVE-2021-21017 | HIGH | 8.8 | 86.2% | Feb 11, 2021 | Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and e... |
| CVE-2021-21015 | HIGH | 8 | 2.9% | Feb 11, 2021 | Magento versions 2.4.1 (and earlier), 2.4.0-p1 (and earlier) and 2.3.6 (and earlier) are vulnerable to an OS command inj... |
| CVE-2021-27191 | HIGH | 7.5 | 2.0% | Feb 11, 2021 | The get-ip-range package before 4.0.0 for Node.js is vulnerable to denial of service (DoS) if the range is untrusted inp... |
| CVE-2021-27184 | HIGH | 7.5 | 1.6% | Feb 11, 2021 | Pelco Digital Sentry Server 7.18.72.11464 has an XML External Entity vulnerability (exploitable via the DTD parameter en... |
| CVE-2021-25690 | HIGH | 7.5 | 1.0% | Feb 11, 2021 | A null pointer dereference in Teradici PCoIP Soft Client versions prior to 20.07.3 could allow an attacker to crash the ... |
| CVE-2021-22880 | HIGH | 7.5 | 4.4% | Feb 11, 2021 | The PostgreSQL adapter in Active Record before 6.1.2.1, 6.0.3.5, 5.2.4.5 suffers from a regular expression denial of ser... |
| CVE-2021-22656 | HIGH | 7.5 | 3.1% | Feb 11, 2021 | Advantech iView versions prior to v5.7.03.6112 are vulnerable to directory traversal, which may allow an attacker to rea... |
| CVE-2021-22654 | HIGH | 7.5 | 11.8% | Feb 11, 2021 | Advantech iView versions prior to v5.7.03.6112 are vulnerable to a SQL injection, which may allow an unauthorized attack... |
| CVE-2021-21299 | HIGH | 8.1 | 4.7% | Feb 11, 2021 | hyper is an open-source HTTP library for Rust (crates.io). In hyper from version 0.12.0 and before versions 0.13.10 and ... |
| CVE-2021-20188 | HIGH | 7 | 0.3% | Feb 11, 2021 | A flaw was found in podman before 1.7.0. File permissions for non-root users running in a privileged container are not c... |
| CVE-2021-20405 | HIGH | 7.5 | 0.8% | Feb 11, 2021 | IBM Security Verify Information Queue 1.0.6 and 1.0.7 could allow a user to perform unauthorized activities due to impro... |
| CVE-2021-20403 | HIGH | 8.8 | 0.4% | Feb 11, 2021 | IBM Security Verify Information Queue 1.0.6 and 1.0.7 is vulnerable to cross-site request forgery which could allow an a... |
| CVE-2021-23335 | HIGH | 7.5 | 1.4% | Feb 11, 2021 | All versions of package is-user-valid are vulnerable to LDAP Injection which can lead to either authentication bypass or... |
| CVE-2021-27186 | HIGH | 7.5 | 2.0% | Feb 10, 2021 | Fluent Bit 1.6.10 has a NULL pointer dereference when an flb_malloc return value is not validated by flb_avro.c or http_... |
| CVE-2021-25251 | HIGH | 7.2 | 2.5% | Feb 10, 2021 | The Trend Micro Security 2020 and 2021 families of consumer products are vulnerable to a code injection vulnerability wh... |
| CVE-2021-27179 | HIGH | 7.5 | 13.9% | Feb 10, 2021 | An issue was discovered on FiberHome HG6245D devices through RP2613. It is possible to crash the telnet daemon by sendin... |
| CVE-2021-27178 | HIGH | 7.5 | 18.2% | Feb 10, 2021 | An issue was discovered on FiberHome HG6245D devices through RP2613. Some passwords are stored in cleartext in nvram. |
| CVE-2021-27176 | HIGH | 7.5 | 18.7% | Feb 10, 2021 | An issue was discovered on FiberHome HG6245D devices through RP2613. wifictl_5g.cfg has cleartext passwords and 0644 per... |
| CVE-2021-27175 | HIGH | 7.5 | 18.2% | Feb 10, 2021 | An issue was discovered on FiberHome HG6245D devices through RP2613. wifictl_2g.cfg has cleartext passwords and 0644 per... |
| CVE-2021-27174 | HIGH | 7.5 | 18.7% | Feb 10, 2021 | An issue was discovered on FiberHome HG6245D devices through RP2613. wifi_custom.cfg has cleartext passwords and 0644 pe... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now