2021 CVE Vulnerabilities

23,461 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-26428MEDIUM4.4Azure Sphere Information Disclosure Vulnerability
CVE-2021-26426HIGH7Windows User Account Profile Picture Elevation of Privilege Vulnerability
CVE-2021-26425HIGH7.8Windows Event Tracing Elevation of Privilege Vulnerability
CVE-2021-26424CRITICAL9.9Windows TCP/IP Remote Code Execution Vulnerability
CVE-2021-26423HIGH7.5.NET Core and Visual Studio Denial of Service Vulnerability
CVE-2021-32809MEDIUM5.4ckeditor is an open source WYSIWYG HTML editor with rich content support. A potential vulnerability has been discovered ...
CVE-2021-32808MEDIUM5.4ckeditor is an open source WYSIWYG HTML editor with rich content support. A vulnerability has been discovered in the cli...
CVE-2021-38606CRITICAL9.8reNgine through 0.5 relies on a predictable directory name.
CVE-2021-38604HIGH7.5In librt in the GNU C Library (aka glibc) through 2.34, sysdeps/unix/sysv/linux/mq_notify.c mishandles certain NOTIFY_RE...
CVE-2021-38599HIGH7.5WAL-G before 1.1, when a non-libsodium build (e.g., one of the official binary releases published as GitHub Releases) is...
CVE-2021-38291HIGH7.5FFmpeg version (git commit de8e6e67e7523e48bb27ac224a0b446df05e1640) suffers from a an assertion failure at src/libavuti...
CVE-2021-20509CRITICAL9.8IBM Maximo Asset Management 7.6.0 and 7.6.1 is potentially vulnerable to CSV Injection. A remote attacker could execute ...
CVE-2021-38597MEDIUM5.9wolfSSL before 4.8.1 incorrectly skips OCSP verification in certain situations of irrelevant response data that contains...
CVE-2021-35955MEDIUM4.8Contao >=4.0.0 allows backend XSS via HTML attributes to an HTML field. Fixed in 4.4.56, 4.9.18, 4.11.7.
CVE-2021-27794HIGH7.8A vulnerability in the authentication mechanism of Brocade Fabric OS versions before Brocade Fabric OS v.9.0.1a, v8.2.3a...
CVE-2021-27793MEDIUM5.3ntermittent authorization failure in aaa tacacs+ with Brocade Fabric OS versions before Brocade Fabric OS v9.0.1b and af...
CVE-2021-27792HIGH7.8The request handling functions in web management interface of Brocade Fabric OS versions before v9.0.1a, v8.2.3a, and v7...
CVE-2021-27791MEDIUM5.4The function that is used to parse the Authentication header in Brocade Fabric OS Web application service before Brocade...
CVE-2021-27790HIGH7.8The command ipfilter in Brocade Fabric OS before Brocade Fabric OS v.9.0.1a, v8.2.3, and v8.2.0_CBN4, and v7.4.2h uses u...
CVE-2021-20314CRITICAL9.8Stack buffer overflow in libspf2 versions below 1.2.11 when processing certain SPF macros can lead to Denial of service ...
CVE-2021-38088HIGH7.8Acronis Cyber Protect 15 for Windows prior to build 27009 allowed local privilege escalation via binary hijacking.
CVE-2021-38087MEDIUM6.1Reflected cross-site scripting (XSS) was possible on the login page in Acronis Cyber Protect 15 prior to build 27009.
CVE-2021-38086HIGH7.8Acronis Cyber Protect 15 for Windows prior to build 27009 and Acronis Agent for Windows prior to build 26226 allowed loc...
CVE-2021-37841HIGH7.8Docker Desktop before 3.6.0 suffers from incorrect access control. If a low-privileged account is able to access the ser...
CVE-2021-37222CRITICAL9.8Parsers in the open source project RCDCAP before 1.0.5 allow remote attackers to execute arbitrary code or cause a denia...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now