2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-34586HIGH7.5In the CODESYS V2 web server prior to V1.1.9.22 crafted web server requests may cause a Null pointer dereference in the ...
CVE-2021-34585HIGH7.5In the CODESYS V2 web server prior to V1.1.9.22 crafted web server requests can trigger a parser error. Since the parser...
CVE-2021-34584CRITICAL9.1Crafted web server requests can be utilised to read partial stack or heap memory or may trigger a denial-of- service con...
CVE-2021-34583HIGH7.5Crafted web server requests may cause a heap-based buffer overflow and could therefore trigger a denial-of- service cond...
CVE-2021-20837CRITICAL9.8Movable Type 7 r.5002 and earlier (Movable Type 7 Series), Movable Type 6.8.2 and earlier (Movable Type 6 Series), Movab...
CVE-2021-41308MEDIUM6.5Affected versions of Atlassian Jira Server and Data Center allow authenticated yet non-administrator remote attackers to...
CVE-2021-41307HIGH7.5Affected versions of Atlassian Jira Server and Data Center allow unauthenticated remote attackers to view the names of p...
CVE-2021-41306HIGH7.5Affected versions of Atlassian Jira Server and Data Center allow anonymous remote attackers to view private project and ...
CVE-2021-41305HIGH7.5Affected versions of Atlassian Jira Server and Data Center allow anonymous remote attackers to view the names of private...
CVE-2021-41304MEDIUM6.1Affected versions of Atlassian Jira Server and Data Center allow anonymous remote attackers to inject arbitrary HTML or ...
CVE-2021-41179MEDIUM6.5Nextcloud is an open-source, self-hosted productivity platform. Prior to Nextcloud Server versions 20.0.13, 21.0.5, and ...
CVE-2021-41178MEDIUM6.5Nextcloud is an open-source, self-hosted productivity platform. Prior to versions 20.0.13, 21.0.5, and 22.2.0, a file tr...
CVE-2021-41177HIGH8.1Nextcloud is an open-source, self-hosted productivity platform. Prior to versions 20.0.13, 21.0.5, and 22.2.0, Nextcloud...
CVE-2021-41145HIGH7.5FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to ...
CVE-2021-41105HIGH7.5FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to ...
CVE-2021-39225HIGH8.1Nextcloud is an open-source, self-hosted productivity platform. A missing permission check in Nextcloud Deck before 1.2....
CVE-2021-39224MEDIUM5.3Nextcloud is an open-source, self-hosted productivity platform. The Nextcloud OfficeOnline application prior to version ...
CVE-2021-39223MEDIUM5.3Nextcloud is an open-source, self-hosted productivity platform. The Nextcloud Richdocuments application prior to version...
CVE-2021-38260HIGH7.8NXP MCUXpresso SDK v2.7.0 was discovered to contain a buffer overflow in the function USB_HostParseDeviceConfigurationDe...
CVE-2021-38258HIGH7.8NXP MCUXpresso SDK v2.7.0 was discovered to contain a buffer overflow in the function USB_HostProcessCallback().
CVE-2021-39221MEDIUM5.4Nextcloud is an open-source, self-hosted productivity platform. The Nextcloud Contacts application prior to version 4.0....
CVE-2021-39220LOW3.5Nextcloud is an open-source, self-hosted productivity platform The Nextcloud Mail application prior to versions 1.10.4 a...
CVE-2021-41176MEDIUM4.3Pterodactyl is an open-source game server management panel built with PHP 7, React, and Go. In affected versions of Pter...
CVE-2021-34864HIGH8.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3 (...
CVE-2021-34863HIGH8.8This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-2...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now