2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-43016 | MEDIUM | 5.5 | 2.0% | Nov 22, 2021 | Adobe InCopy version 16.4 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a specially... |
| CVE-2021-43015 | HIGH | 7.8 | 1.6% | Nov 22, 2021 | Adobe InCopy version 16.4 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a m... |
| CVE-2021-42738 | HIGH | 7.8 | 1.9% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ... |
| CVE-2021-42737 | HIGH | 7.8 | 1.7% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ... |
| CVE-2021-42733 | MEDIUM | 5.5 | 1.4% | Nov 22, 2021 | Adobe Bridge version 11.1.1 (and earlier) is affected by a Null pointer dereference vulnerability when parsing a special... |
| CVE-2021-42727 | HIGH | 7.8 | 40.9% | Nov 22, 2021 | Adobe Bridge 11.1.1 (and earlier) is affected by a stack overflow vulnerability due to insecure handling of a crafted fi... |
| CVE-2021-40775 | HIGH | 7.8 | 1.7% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ... |
| CVE-2021-40774 | MEDIUM | 5.5 | 1.2% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a null pointer dereference vulnerability when parsing a speciall... |
| CVE-2021-40773 | MEDIUM | 5.5 | 1.2% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a null pointer dereference vulnerability when parsing a speciall... |
| CVE-2021-40772 | HIGH | 7.8 | 1.7% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ... |
| CVE-2021-40771 | HIGH | 7.8 | 1.7% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ... |
| CVE-2021-40770 | HIGH | 7.8 | 1.7% | Nov 22, 2021 | Adobe Prelude version 10.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a ... |
| CVE-2021-3943 | CRITICAL | 9.8 | 2.4% | Nov 22, 2021 | A flaw was found in Moodle in versions 3.11 to 3.11.3, 3.10 to 3.10.7, 3.9 to 3.9.10 and earlier unsupported versions. A... |
| CVE-2021-3935 | HIGH | 8.1 | 1.0% | Nov 22, 2021 | When PgBouncer is configured to use "cert" authentication, a man-in-the-middle attacker can inject arbitrary SQL queries... |
| CVE-2021-26614 | CRITICAL | 9.8 | 2.5% | Nov 22, 2021 | ius_get.cgi in IpTime C200 camera allows remote code execution. A remote attacker may send a crafted parameters to the e... |
| CVE-2021-43582 | HIGH | 7.8 | 1.3% | Nov 22, 2021 | A Use-After-Free Remote Vulnerability exists when reading a DWG file using Open Design Alliance Drawings SDK before 2022... |
| CVE-2021-43581 | HIGH | 8.8 | 1.2% | Nov 22, 2021 | An Out-of-Bounds Read vulnerability exists when reading a U3D file using Open Design Alliance PRC SDK before 2022.11. Th... |
| CVE-2021-43557 | HIGH | 7.5 | 14.6% | Nov 22, 2021 | The uri-block plugin in Apache APISIX before 2.10.2 uses $request_uri without verification. The $request_uri is the full... |
| CVE-2021-38378 | MEDIUM | 4.3 | 1.2% | Nov 22, 2021 | OX App Suite 7.10.5 allows Information Exposure because a caching mechanism can caused a Modified By response to show a ... |
| CVE-2021-38377 | MEDIUM | 6.1 | 1.1% | Nov 22, 2021 | OX App Suite through 7.10.5 allows XSS via JavaScript code in an anchor HTML comment within truncated e-mail, because th... |
| CVE-2021-38376 | MEDIUM | 5.3 | 1.4% | Nov 22, 2021 | OX App Suite through 7.10.5 has Incorrect Access Control for retrieval of session information via the rampup action of t... |
| CVE-2021-38375 | MEDIUM | 6.1 | 1.3% | Nov 22, 2021 | OX App Suite through 7.10.5 allows XSS via the alt attribute of an IMG element in a truncated e-mail message. |
| CVE-2021-38374 | MEDIUM | 5.4 | 1.2% | Nov 22, 2021 | OX App Suite through through 7.10.5 allows XSS via a crafted snippet that has an app loader reference within an app load... |
| CVE-2021-38146 | HIGH | 7.5 | 11.7% | Nov 22, 2021 | The File Download API in Wipro Holmes Orchestrator 20.4.1 (20.4.1_02_11_2020) allows remote attackers to read arbitrary ... |
| CVE-2021-33495 | MEDIUM | 6.1 | 1.1% | Nov 22, 2021 | OX App Suite 7.10.5 allows XSS via an OX Chat system message. |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now