2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2021-37064CRITICAL9.1There is a Improper Limitation of a Pathname to a Restricted Directory vulnerability in Huawei Smartphone.Successful exp...
CVE-2021-37063CRITICAL9.8There is a Cryptographic Issues vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lea...
CVE-2021-37062CRITICAL9.1There is a Improper Validation of Array Index vulnerability in Huawei Smartphone.Successful exploitation of this vulnera...
CVE-2021-37059CRITICAL9.8There is a Weaknesses Introduced During Design
CVE-2021-37021CRITICAL9.1There is a Stack-based Buffer Overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability ...
CVE-2021-37020CRITICAL9.1There is a Stack-based Buffer Overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability ...
CVE-2021-37011CRITICAL9.1There is a Stack-based Buffer Overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability ...
CVE-2021-37042CRITICAL9.1There is an Improper verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may c...
CVE-2021-37041CRITICAL9.1There is an Improper verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may c...
CVE-2021-42128CRITICAL9.8An exposed dangerous function vulnerability exists in Ivanti Avalanche before 6.3.3 using inforail Service allows Privil...
CVE-2021-42127CRITICAL9.8A deserialization of untrusted data vulnerability exists in Ivanti Avalanche before 6.3.3 using Inforail Service allows ...
CVE-2021-29114CRITICAL9.8A SQL injection vulnerability in feature services provided by Esri ArcGIS Server 10.9 and below allows a remote, unauthe...
CVE-2021-44685CRITICAL9.8Git-it through 4.4.0 allows OS command injection at the Branches Aren't Just For Birds challenge step. During the verifi...
CVE-2021-44684CRITICAL9.8naholyr github-todos 3.1.0 is vulnerable to command injection. The range argument for the _hook subcommand is concatenat...
CVE-2021-44682CRITICAL9.8An issue (6 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati...
CVE-2021-44681CRITICAL9.8An issue (5 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati...
CVE-2021-44680CRITICAL9.8An issue (4 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati...
CVE-2021-44679CRITICAL9.8An issue (3 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati...
CVE-2021-44678CRITICAL9.8An issue (2 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati...
CVE-2021-44677CRITICAL9.8An issue (1 of 6) was discovered in Veritas Enterprise Vault through 14.1.2. On start-up, the Enterprise Vault applicati...
CVE-2021-31632CRITICAL9.8b2evolution CMS v7.2.3 was discovered to contain a SQL injection vulnerability via the parameter cfqueryparam in the Use...
CVE-2021-40091CRITICAL9.8An SSRF issue was discovered in SquaredUp for SCOM 5.2.1.6654.
CVE-2021-36567CRITICAL9.8ThinkPHP v6.0.8 was discovered to contain a deserialization vulnerability via the component League\Flysystem\Cached\Stor...
CVE-2021-36564CRITICAL9.8ThinkPHP v6.0.8 was discovered to contain a deserialization vulnerability via the component vendor\league\flysystem-cach...
CVE-2021-43936CRITICAL9.8The software allows the attacker to upload or transfer files of dangerous types to the WebHMI portal, that may be automa...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now