2021 CVE Vulnerabilities

23,461 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-3047LOW3.1A cryptographically weak pseudo-random number generator (PRNG) is used during authentication to the Palo Alto Networks P...
CVE-2021-3046MEDIUM6.5An improper authentication vulnerability exists in Palo Alto Networks PAN-OS software that enables a SAML authenticated ...
CVE-2021-3045MEDIUM4.9An OS command argument injection vulnerability in the Palo Alto Networks PAN-OS web interface enables an authenticated a...
CVE-2021-38549MEDIUM5.9MIRACASE MHUB500 USB splitters through 2021-08-09, in certain specific use cases in which the device supplies power to a...
CVE-2021-38548MEDIUM5.9JBL Go 2 devices through 2021-08-09 allow remote attackers to recover speech signals from an LED on the device, via a te...
CVE-2021-38547MEDIUM5.9Logitech Z120 and S120 speakers through 2021-08-09 allow remote attackers to recover speech signals from an LED on the d...
CVE-2021-38546MEDIUM5.9CREATIVE Pebble devices through 2021-08-09 allow remote attackers to recover speech signals from an LED on the device, v...
CVE-2021-38545MEDIUM5.9Raspberry Pi 3 B+ and 4 B devices through 2021-08-09, in certain specific use cases in which the device supplies power t...
CVE-2021-38544MEDIUM5.9Sony SRS-XB33 and SRS-XB43 devices through 2021-08-09 allow remote attackers to recover speech signals from an LED on th...
CVE-2021-38543MEDIUM5.9TP-Link UE330 USB splitter devices through 2021-08-09, in certain specific use cases in which the device supplies power ...
CVE-2021-20427HIGH7.5IBM Security Guardium 11.2 uses an inadequate account lockout setting that could allow a remote attacker to brute force ...
CVE-2021-20420MEDIUM4.3IBM Security Guardium 11.2 could disclose sensitive information due to reliance on untrusted inputs that could aid in fu...
CVE-2021-20418CRITICAL9.8IBM Security Guardium 11.2 does not require that users should have strong passwords by default, which makes it easier fo...
CVE-2021-34640MEDIUM6.1The Securimage-WP-Fixed WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to the use of $_SERVER['PHP...
CVE-2021-32947HIGH7.8FATEK Automation FvDesigner, Versions 1.5.88 and prior is vulnerable to a stack-based buffer overflow, which may allow a...
CVE-2021-32939HIGH7.8FATEK Automation FvDesigner, Versions 1.5.88 and prior is vulnerable to an out-of-bounds write while processing project ...
CVE-2021-32931HIGH7.8An uninitialized pointer in FATEK Automation FvDesigner, Versions 1.5.88 and prior may be exploited while the applicatio...
CVE-2021-23420CRITICAL9.8This affects the package codeception/codeception from 4.0.0 and before 4.1.22, before 3.1.3. The RunProcess class can be...
CVE-2021-0196HIGH7.8Improper access control in kernel mode driver for some Intel(R) NUC 9 Extreme Laptop Kits before version 2.2.0.20 may al...
CVE-2021-0160HIGH7.8Uncontrolled search path in some Intel(R) NUC Pro Chassis Element AverMedia Capture Card drivers before version 3.0.64.1...
CVE-2021-0084HIGH7.8Improper input validation in the Intel(R) Ethernet Controllers X722 and 800 series Linux RMDA driver before version 1.3....
CVE-2021-0083MEDIUM4.4Improper input validation in some Intel(R) Optane(TM) PMem versions before versions 1.2.0.5446 or 2.2.0.1547 may allow a...
CVE-2021-0062HIGH7.8Improper input validation in some Intel(R) Graphics Drivers before version 27.20.100.8935 may allow an authenticated use...
CVE-2021-0061HIGH7.8Improper initialization in some Intel(R) Graphics Driver before version 27.20.100.9030 may allow an authenticated user t...
CVE-2021-0012MEDIUM5.5Use after free in some Intel(R) Graphics Driver before version 27.20.100.8336, 15.45.33.5164, and 15.40.47.5166 may allo...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now