2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-39831 | HIGH | 7.8 | 2.1% | Sep 29, 2021 | Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by an out-of-... |
| CVE-2021-39830 | HIGH | 7.8 | 1.9% | Sep 29, 2021 | Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by a memory c... |
| CVE-2021-39829 | HIGH | 7.8 | 2.2% | Sep 29, 2021 | Adobe Framemaker versions 2019 Update 8 (and earlier) and 2020 Release Update 2 (and earlier) are affected by an out-of-... |
| CVE-2021-39821 | HIGH | 7.8 | 3.8% | Sep 29, 2021 | Adobe InDesign versions 16.3 (and earlier), and 16.3.1 (and earlier) are affected by an out-of-bounds read vulnerability... |
| CVE-2021-35982 | HIGH | 7.3 | 1.7% | Sep 29, 2021 | Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) a... |
| CVE-2021-29834 | MEDIUM | 5.4 | 0.5% | Sep 29, 2021 | IBM Business Automation Workflow 18.0.0.0, 18.0.0.1, 18.0.0.2, 19.0.0.1, 19.0.0.2, 19.0.0.3,20.0.0.1, 20.0.0.2, and 21.0... |
| CVE-2021-28547 | HIGH | 7.8 | 0.5% | Sep 29, 2021 | Adobe Creative Cloud Desktop Application for macOS version 5.3 (and earlier) is affected by a privilege escalation vulne... |
| CVE-2021-25962 | HIGH | 8.8 | 1.1% | Sep 29, 2021 | “Shuup” application in versions 0.4.2 to 2.10.8 is affected by the “Formula Injection” vulnerability. A customer can inj... |
| CVE-2021-25961 | HIGH | 8 | 0.9% | Sep 29, 2021 | In “SuiteCRM” application, v7.1.7 through v7.10.31 and v7.11-beta through v7.11.20 fail to properly invalidate password ... |
| CVE-2021-25960 | HIGH | 8 | 1.2% | Sep 29, 2021 | In “SuiteCRM” application, v7.11.18 through v7.11.19 and v7.10.29 through v7.10.31 are affected by “CSV Injection” vulne... |
| CVE-2021-25959 | MEDIUM | 6.1 | 0.8% | Sep 29, 2021 | In OpenCRX, versions v4.0.0 through v5.1.0 are vulnerable to reflected Cross-site Scripting (XSS), due to unsanitized pa... |
| CVE-2021-40651 | MEDIUM | 6.5 | 18.4% | Sep 29, 2021 | OS4Ed OpenSIS Community 8.0 is vulnerable to a local file inclusion vulnerability in Modules.php (modname parameter), wh... |
| CVE-2021-36745 | CRITICAL | 9.8 | 9.0% | Sep 29, 2021 | A vulnerability in Trend Micro ServerProtect for Storage 6.0, ServerProtect for EMC Celerra 5.8, ServerProtect for Netwo... |
| CVE-2021-35028 | HIGH | 7.8 | 0.3% | Sep 29, 2021 | A command injection vulnerability in the CGI program of the Zyxel VPN2S firmware version 1.12 could allow an authenticat... |
| CVE-2021-35027 | HIGH | 7.5 | 2.0% | Sep 29, 2021 | A directory traversal vulnerability in the web server of the Zyxel VPN2S firmware version 1.12 could allow a remote atta... |
| CVE-2021-32466 | HIGH | 7 | 0.5% | Sep 29, 2021 | An uncontrolled search path element privilege escalation vulnerability in Trend Micro HouseCall for Home Networks versio... |
| CVE-2021-33924 | CRITICAL | 9.8 | 1.6% | Sep 29, 2021 | Confluent Ansible (cp-ansible) version 5.5.0, 5.5.1, 5.5.2 and 6.0.0 is vulnerable to Incorrect Access Control via its a... |
| CVE-2021-33923 | MEDIUM | 5.5 | 0.3% | Sep 29, 2021 | Insecure permissions in Confluent Ansible (cp-ansible) 5.5.0, 5.5.1, 5.5.2 and 6.0.0 allows local attackers to access so... |
| CVE-2021-41106 | LOW | 3.3 | 0.2% | Sep 28, 2021 | JWT is a library to work with JSON Web Token and JSON Web Signature. Prior to versions 3.4.6, 4.0.4, and 4.1.5, users of... |
| CVE-2021-36297 | HIGH | 7.8 | 0.5% | Sep 28, 2021 | SupportAssist Client version 3.8 and 3.9 contains an Untrusted search path vulnerability that allows attackers to load a... |
| CVE-2021-36286 | HIGH | 7.1 | 0.3% | Sep 28, 2021 | Dell SupportAssist Client Consumer versions 3.9.13.0 and any versions prior to 3.9.13.0 contain an arbitrary file deleti... |
| CVE-2021-36285 | MEDIUM | 4.4 | 0.2% | Sep 28, 2021 | Dell BIOS contains an Improper Restriction of Excessive Authentication Attempts vulnerability. A local authenticated mal... |
| CVE-2021-36284 | MEDIUM | 4.4 | 0.2% | Sep 28, 2021 | Dell BIOS contains an Improper Restriction of Excessive Authentication Attempts vulnerability. A local authenticated mal... |
| CVE-2021-36283 | MEDIUM | 6.7 | 0.2% | Sep 28, 2021 | Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially expl... |
| CVE-2021-21570 | MEDIUM | 4.9 | 0.8% | Sep 28, 2021 | Dell NetWorker, versions 18.x and 19.x contain an Information disclosure vulnerability. A NetWorker server user with rem... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now