2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-26428 | MEDIUM | 4.4 | 0.7% | Aug 12, 2021 | Azure Sphere Information Disclosure Vulnerability |
| CVE-2021-26426 | HIGH | 7 | 0.6% | Aug 12, 2021 | Windows User Account Profile Picture Elevation of Privilege Vulnerability |
| CVE-2021-26425 | HIGH | 7.8 | 0.8% | Aug 12, 2021 | Windows Event Tracing Elevation of Privilege Vulnerability |
| CVE-2021-26424 | CRITICAL | 9.9 | 58.9% | Aug 12, 2021 | Windows TCP/IP Remote Code Execution Vulnerability |
| CVE-2021-26423 | HIGH | 7.5 | 3.9% | Aug 12, 2021 | .NET Core and Visual Studio Denial of Service Vulnerability |
| CVE-2021-32809 | MEDIUM | 5.4 | 1.2% | Aug 12, 2021 | ckeditor is an open source WYSIWYG HTML editor with rich content support. A potential vulnerability has been discovered ... |
| CVE-2021-32808 | MEDIUM | 5.4 | 1.2% | Aug 12, 2021 | ckeditor is an open source WYSIWYG HTML editor with rich content support. A vulnerability has been discovered in the cli... |
| CVE-2021-38606 | CRITICAL | 9.8 | 1.2% | Aug 12, 2021 | reNgine through 0.5 relies on a predictable directory name. |
| CVE-2021-38604 | HIGH | 7.5 | 3.0% | Aug 12, 2021 | In librt in the GNU C Library (aka glibc) through 2.34, sysdeps/unix/sysv/linux/mq_notify.c mishandles certain NOTIFY_RE... |
| CVE-2021-38599 | HIGH | 7.5 | 0.8% | Aug 12, 2021 | WAL-G before 1.1, when a non-libsodium build (e.g., one of the official binary releases published as GitHub Releases) is... |
| CVE-2021-38291 | HIGH | 7.5 | 2.7% | Aug 12, 2021 | FFmpeg version (git commit de8e6e67e7523e48bb27ac224a0b446df05e1640) suffers from a an assertion failure at src/libavuti... |
| CVE-2021-20509 | CRITICAL | 9.8 | 1.7% | Aug 12, 2021 | IBM Maximo Asset Management 7.6.0 and 7.6.1 is potentially vulnerable to CSV Injection. A remote attacker could execute ... |
| CVE-2021-38597 | MEDIUM | 5.9 | 0.5% | Aug 12, 2021 | wolfSSL before 4.8.1 incorrectly skips OCSP verification in certain situations of irrelevant response data that contains... |
| CVE-2021-35955 | MEDIUM | 4.8 | 0.6% | Aug 12, 2021 | Contao >=4.0.0 allows backend XSS via HTML attributes to an HTML field. Fixed in 4.4.56, 4.9.18, 4.11.7. |
| CVE-2021-27794 | HIGH | 7.8 | 0.2% | Aug 12, 2021 | A vulnerability in the authentication mechanism of Brocade Fabric OS versions before Brocade Fabric OS v.9.0.1a, v8.2.3a... |
| CVE-2021-27793 | MEDIUM | 5.3 | 0.9% | Aug 12, 2021 | ntermittent authorization failure in aaa tacacs+ with Brocade Fabric OS versions before Brocade Fabric OS v9.0.1b and af... |
| CVE-2021-27792 | HIGH | 7.8 | 0.3% | Aug 12, 2021 | The request handling functions in web management interface of Brocade Fabric OS versions before v9.0.1a, v8.2.3a, and v7... |
| CVE-2021-27791 | MEDIUM | 5.4 | 0.6% | Aug 12, 2021 | The function that is used to parse the Authentication header in Brocade Fabric OS Web application service before Brocade... |
| CVE-2021-27790 | HIGH | 7.8 | 0.5% | Aug 12, 2021 | The command ipfilter in Brocade Fabric OS before Brocade Fabric OS v.9.0.1a, v8.2.3, and v8.2.0_CBN4, and v7.4.2h uses u... |
| CVE-2021-20314 | CRITICAL | 9.8 | 2.8% | Aug 12, 2021 | Stack buffer overflow in libspf2 versions below 1.2.11 when processing certain SPF macros can lead to Denial of service ... |
| CVE-2021-38088 | HIGH | 7.8 | 0.2% | Aug 12, 2021 | Acronis Cyber Protect 15 for Windows prior to build 27009 allowed local privilege escalation via binary hijacking. |
| CVE-2021-38087 | MEDIUM | 6.1 | 0.6% | Aug 12, 2021 | Reflected cross-site scripting (XSS) was possible on the login page in Acronis Cyber Protect 15 prior to build 27009. |
| CVE-2021-38086 | HIGH | 7.8 | 0.3% | Aug 12, 2021 | Acronis Cyber Protect 15 for Windows prior to build 27009 and Acronis Agent for Windows prior to build 26226 allowed loc... |
| CVE-2021-37841 | HIGH | 7.8 | 0.7% | Aug 12, 2021 | Docker Desktop before 3.6.0 suffers from incorrect access control. If a low-privileged account is able to access the ser... |
| CVE-2021-37222 | CRITICAL | 9.8 | 2.5% | Aug 12, 2021 | Parsers in the open source project RCDCAP before 1.0.5 allow remote attackers to execute arbitrary code or cause a denia... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now