2021 CVE Vulnerabilities

23,461 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-38593HIGH7.5Qt 5.x before 5.15.6 and 6.x through 6.1.2 has an out-of-bounds write in QOutlineMapper::convertPath (called from QRaste...
CVE-2021-38592HIGH7.5Wasm3 0.5.0 has a heap-based buffer overflow in op_Const64 (called from EvaluateExpression and m3_LoadModule).
CVE-2021-38591LOW3.3An issue was discovered on LG mobile devices with Android OS P and Q software for mt6762/mt6765/mt6883. Attackers can ch...
CVE-2021-37699MEDIUM6.1Next.js is an open source website development framework to be used with the React library. In affected versions speciall...
CVE-2021-38590MEDIUM5.5In cPanel before 96.0.8, weak permissions on web stats can lead to information disclosure (SEC-584).
CVE-2021-38589HIGH8.1In cPanel before 96.0.13, scripts/fix-cpanel-perl does not properly restrict the overwriting of files (SEC-588).
CVE-2021-38588HIGH8.1In cPanel before 96.0.13, fix_cpanel_perl lacks verification of the integrity of downloads (SEC-587).
CVE-2021-38587HIGH7.5In cPanel before 96.0.13, scripts/fix-cpanel-perl mishandles the creation of temporary files (SEC-586).
CVE-2021-38586MEDIUM4.4In cPanel before 98.0.1, /scripts/cpan_config performs unsafe operations on files (SEC-589).
CVE-2021-38585HIGH7.2The WHM Locale Upload feature in cPanel before 98.0.1 allows unserialization attacks (SEC-585).
CVE-2021-38584HIGH7.2The WHM Locale Upload feature in cPanel before 98.0.1 allows XXE attacks (SEC-585).
CVE-2021-37697MEDIUM6.5tmerc-cogs are a collection of open source plugins for the Red Discord bot. A vulnerability has been found in the code t...
CVE-2021-37696MEDIUM6.5tmerc-cogs are a collection of open source plugins for the Red Discord bot. A vulnerability has been found in the code t...
CVE-2021-37627HIGH7.2Contao is an open source CMS that allows creation of websites and scalable web applications. In affected versions it is ...
CVE-2021-37626HIGH7.2Contao is an open source CMS that allows you to create websites and scalable web applications. In affected versions it i...
CVE-2021-36770HIGH7.8Encode.pm, as distributed in Perl through 5.34.0, allows local users to gain privileges via a Trojan horse Encode::Confi...
CVE-2021-38574CRITICAL9.8An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows SQL Injection via crafted data at the en...
CVE-2021-38573CRITICAL9.8An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows writing to arbitrary files because a Com...
CVE-2021-38572CRITICAL9.8An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows writing to arbitrary files because the e...
CVE-2021-38571HIGH7.8An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows DLL hijacking, aka CNVD-C-2021-68000 and...
CVE-2021-38570CRITICAL9.1An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows attackers to delete arbitrary files (dur...
CVE-2021-38569HIGH7.5An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows stack consumption via recursive function...
CVE-2021-38568CRITICAL9.8An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows memory corruption during conversion of a...
CVE-2021-38567HIGH7.5An issue was discovered in Foxit PDF Editor before 11.0.1 and PDF Reader before 11.0.1 on macOS. It mishandles missing d...
CVE-2021-38566HIGH7.5An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1. It allows stack consumption duri...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now