2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-40846HIGH7.5An issue was discovered in Rhinode Trading Paints through 2.0.36. TP Updater.exe uses cleartext HTTP to check, and reque...
CVE-2021-32008HIGH8.7This issue affects: Secomea GateManager Version 9.6.621421014 and all prior versions. Improper Limitation of a Pathname ...
CVE-2021-27756HIGH7.5"TLS-RSA cipher suites are not disabled in BigFix Compliance up to v2.0.5. If TLS 2.0 and secure ciphers are not enabled...
CVE-2021-3737HIGH7.5A flaw was found in python. An improperly handled HTTP response in the HTTP client code of python may allow a remote att...
CVE-2021-3656HIGH8.8A flaw was found in the KVM's AMD code for supporting SVM nested virtualization. The flaw occurs when processing the VMC...
CVE-2021-27757HIGH7.5" Insecure password storage issue.The application stores sensitive information in cleartext within a resource that might...
CVE-2021-3575HIGH7.8A heap-based buffer overflow was found in openjpeg in color.c:379:42 in sycc420_to_rgb when decompressing a crafted .j2k...
CVE-2021-20319HIGH7.8An improper signature verification vulnerability was found in coreos-installer. A specially crafted gzip installation im...
CVE-2021-46381HIGH7.5Local File Inclusion due to path traversal in D-Link DAP-1620 leads to unauthorized internal files reading [/etc/passwd]...
CVE-2021-3743HIGH7.1An out-of-bounds (OOB) memory read flaw was found in the Qualcomm IPC router protocol in the Linux kernel. A missing san...
CVE-2021-23214HIGH8.1When the server is configured to use trust authentication with a clientcert requirement or to use cert authentication, a...
CVE-2021-46378HIGH7.5DLink DIR850 ET850-1.08TRb03 is affected by an incorrect access control vulnerability through an unauthenticated remote ...
CVE-2021-3640HIGH7A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls i...
CVE-2021-26948HIGH7.8Null pointer dereference in the htmldoc v1.9.11 and before may allow attackers to execute arbitrary code and cause a den...
CVE-2021-26259HIGH7.8A flaw was found in htmldoc in v1.9.12. Heap buffer overflow in render_table_row(),in ps-pdf.cxx may lead to arbitrary c...
CVE-2021-3609HIGH7.A flaw was found in the CAN BCM networking protocol in the Linux kernel, where a local attacker can abuse a flaw in the...
CVE-2021-45819HIGH7.8Wordline HIDCCEMonitorSVC before v5.2.4.3 contains an unquoted service path which allows attackers to escalate privilege...
CVE-2021-40636HIGH7.5OS4ED openSIS 8.0 is affected by SQL Injection in CheckDuplicateName.php, which can extract information from the databas...
CVE-2021-40635HIGH7.5OS4ED openSIS 8.0 is affected by SQL injection in ChooseCpSearch.php, ChooseRequestSearch.php. An attacker can inject a ...
CVE-2021-42950HIGH8.8Remote Code Execution (RCE) vulnerability exists in Zepl Notebooks all previous versions before October 25 2021. Users c...
CVE-2021-44343HIGH7.8David Brackeen ok-file-formats 203defd is vulnerable to Buffer Overflow. When the function of the ok-file-formats projec...
CVE-2021-44335HIGH7.8David Brackeen ok-file-formats 203defd is vulnerable to Buffer Overflow. When the function of the ok-file-formats projec...
CVE-2021-4076HIGH7.5A flaw exists in tang, a network-based cryptographic binding server, which could result in leak of private keys.
CVE-2021-3738HIGH8.8In DCE/RPC it is possible to share the handles (cookies for resource state) between multiple connections via a mechanism...
CVE-2021-3715HIGH7.8A flaw was found in the "Routing decision" classifier in the Linux kernel's Traffic Control networking subsystem in the ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now