2021 CVE Vulnerabilities

23,461 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-41824HIGH8.8Craft CMS before 3.7.14 allows CSV injection.
CVE-2021-41821MEDIUM6.5Wazuh Manager in Wazuh through 4.1.5 is affected by a remote Integer Underflow vulnerability that might lead to denial o...
CVE-2021-41034HIGH8.1The build of some language stacks of Eclipse Che version 6 includes pulling some binaries from an unsecured HTTP endpoin...
CVE-2021-41795MEDIUM6.5The Safari app extension bundled with 1Password for Mac 7.7.0 through 7.8.x before 7.8.7 is vulnerable to authorization ...
CVE-2021-41764HIGH8.8A cross-site request forgery (CSRF) vulnerability exists in Streama up to and including v1.10.3. The application does no...
CVE-2021-3653HIGH8.8A flaw was found in the KVM's AMD code for supporting SVM nested virtualization. The flaw occurs when processing the VMC...
CVE-2021-39342HIGH7.5The Credova_Financial WordPress plugin discloses a site's associated Credova API account username and password in plaint...
CVE-2021-35945HIGH7.5Couchbase Server 6.5.x, 6.6.0 through 6.6.2, and 7.0.0, has a Buffer Overflow. A specially crafted network packet sent f...
CVE-2021-35944HIGH7.5Couchbase Server 6.5.x, 6.6.x through 6.6.2, and 7.0.0 has a Buffer Overflow. A specially crafted network packet sent fr...
CVE-2021-35943CRITICAL9.8Couchbase Server 6.5.x and 6.6.x through 6.6.2 has Incorrect Access Control. Externally managed users are not prevented ...
CVE-2021-22947MEDIUM5.9When curl >= 7.20.0 and <= 7.78.0 connects to an IMAP or POP3 server to retrieve data using STARTTLS to upgrade to TLS s...
CVE-2021-22946HIGH7.5A user can tell curl >= 7.20.0 and <= 7.78.0 to require a successful upgrade to TLS when speaking to an IMAP, POP3 or FT...
CVE-2021-41732HIGH7.5An issue was discovered in zeek version 4.1.0. There is a HTTP request splitting vulnerability that will invalidate any ...
CVE-2021-41573MEDIUM6.5Hitachi Content Platform Anywhere (HCP-AW) 4.4.5 and later allows information disclosure. If authenticated user creates ...
CVE-2021-23446HIGH7.5The package handsontable before 10.0.0; the package handsontable from 0 and before 10.0.0 are vulnerable to Regular Expr...
CVE-2021-40716MEDIUM5.5XMP Toolkit SDK versions 2021.07 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to di...
CVE-2021-40715HIGH7.8Adobe Premiere Pro version 15.4 (and earlier) is affected by a memory corruption vulnerability due to insecure handling ...
CVE-2021-40710HIGH7.8Adobe Premiere Pro version 15.4 (and earlier) is affected by a memory corruption vulnerability due to insecure handling ...
CVE-2021-40708HIGH7.3Adobe Genuine Service versions 7.3 (and earlier) are affected by a privilege escalation vulnerability in the AGSService ...
CVE-2021-40697LOW3.3Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by an out-of-...
CVE-2021-39865LOW3.3Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by an out-of-...
CVE-2021-39863HIGH7.8Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) a...
CVE-2021-39862LOW3.3Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by an out-of-...
CVE-2021-39861MEDIUM5.5Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) a...
CVE-2021-39860MEDIUM5.5Acrobat Pro DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) are ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now