2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22498 | HIGH | 8.1 | 1.0% | Jan 19, 2021 | XML External Entity Injection vulnerability in Micro Focus Application Lifecycle Management (Previously known as Quality... |
| CVE-2021-3183 | HIGH | 7.5 | 1.2% | Jan 19, 2021 | Files.com Fat Client 3.3.6 allows authentication bypass because the client continues to have access after a logout and a... |
| CVE-2021-3182 | HIGH | 8 | 0.9% | Jan 19, 2021 | D-Link DCS-5220 devices have a buffer overflow. NOTE: This vulnerability only affects products that are no longer suppor... |
| CVE-2021-22852 | HIGH | 8.8 | 1.0% | Jan 19, 2021 | HGiga EIP product contains SQL Injection vulnerability. Attackers can inject SQL commands into specific URL parameter (o... |
| CVE-2021-25178 | HIGH | 7.8 | 3.2% | Jan 18, 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A stack-based buffer overflow vulnerability... |
| CVE-2021-25177 | HIGH | 7.8 | 2.3% | Jan 18, 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A Type Confusion issue exists when renderin... |
| CVE-2021-25176 | HIGH | 7.8 | 2.3% | Jan 18, 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A NULL pointer dereference exists when rend... |
| CVE-2021-25175 | HIGH | 7.8 | 2.6% | Jan 18, 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A Type Conversion issue exists when renderi... |
| CVE-2021-25174 | HIGH | 7.8 | 2.2% | Jan 18, 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.12. A memory corruption vulnerability exists wh... |
| CVE-2021-25173 | HIGH | 7.8 | 2.3% | Jan 18, 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.12. A memory allocation with excessive size vul... |
| CVE-2021-3166 | HIGH | 7.5 | 2.9% | Jan 18, 2021 | An issue was discovered on ASUS DSL-N14U-B1 1.1.2.3_805 devices. An attacker can upload arbitrary file content as a firm... |
| CVE-2021-3113 | HIGH | 7.5 | 3.2% | Jan 17, 2021 | Netsia SEBA+ through 0.16.1 build 70-e669dcd7 allows remote attackers to discover session cookies via a direct /session/... |
| CVE-2021-3162 | HIGH | 7.8 | 0.2% | Jan 15, 2021 | Docker Desktop Community before 2.5.0.0 on macOS mishandles certificate checking, leading to local privilege escalation. |
| CVE-2021-21251 | HIGH | 8.8 | 12.2% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3 there is a critical "zip slip" vulnerability. Th... |
| CVE-2021-21249 | HIGH | 8.8 | 2.9% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, there is an issue involving YAML parsing which ... |
| CVE-2021-21248 | HIGH | 8.8 | 1.5% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, there is a critical vulnerability involving the... |
| CVE-2021-21247 | HIGH | 8.8 | 1.5% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, the application's BasePage registers an AJAX ev... |
| CVE-2021-21246 | HIGH | 7.5 | 49.1% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, the REST UserResource endpoint performs a secur... |
| CVE-2021-21237 | HIGH | 7.8 | 0.4% | Jan 15, 2021 | Git LFS is a command line extension for managing large files with Git. On Windows, if Git LFS operates on a malicious re... |
| CVE-2021-0223 | HIGH | 7.8 | 0.4% | Jan 15, 2021 | A local privilege escalation vulnerability in telnetd.real of Juniper Networks Junos OS may allow a locally authenticate... |
| CVE-2021-0222 | HIGH | 7.4 | 0.6% | Jan 15, 2021 | A vulnerability in Juniper Networks Junos OS allows an attacker to cause a Denial of Service (DoS) to the device by send... |
| CVE-2021-0218 | HIGH | 7.8 | 0.8% | Jan 15, 2021 | A command injection vulnerability in the license-check daemon of Juniper Networks Junos OS that may allow a locally auth... |
| CVE-2021-0217 | HIGH | 7.4 | 0.7% | Jan 15, 2021 | A vulnerability in processing of certain DHCP packets from adjacent clients on EX Series and QFX Series switches running... |
| CVE-2021-0208 | HIGH | 8.8 | 0.7% | Jan 15, 2021 | An improper input validation vulnerability in the Routing Protocol Daemon (RPD) service of Juniper Networks Junos OS all... |
| CVE-2021-0207 | HIGH | 7.5 | 1.3% | Jan 15, 2021 | An improper interpretation conflict of certain data between certain software components within the Juniper Networks Juno... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now