2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-24704HIGH8.8In the Orange Form WordPress plugin through 1.0, the process_bulk_action() function in "admin/orange-form-email.php" per...
CVE-2021-3967HIGH8.8Improper Access Control in GitHub repository zulip/zulip prior to 4.10.
CVE-2021-44132HIGH7.8A command injection vulnerability in the function formImportOMCIShell of C-DATA ONU4FERW V2.1.13_X139 allows attackers t...
CVE-2021-40043HIGH7.8The laser command injection vulnerability exists on AIS-BW80H-00 versions earlier than AIS-BW80H-00 9.0.3.4(H100SP13C00)...
CVE-2021-37027HIGH7.5There is a DoS vulnerability in smartphones. Successful exploitation of this vulnerability may affect service integrity.
CVE-2021-22489HIGH7.5There is a DoS vulnerability in smartphones. Successful exploitation of this vulnerability may affect service availabili...
CVE-2021-22437HIGH7There is a software integer overflow leading to a TOCTOU condition in smartphones. Successful exploitation of this vulne...
CVE-2021-22395HIGH7.5There is a code injection vulnerability in smartphones. Successful exploitation of this vulnerability may affect service...
CVE-2021-22319HIGH7.5There is an improper verification vulnerability in smartphones. Successful exploitation of this vulnerability may cause ...
CVE-2021-39364HIGH7.5Honeywell HDZP252DI 1.00.HW02.4 and HBW2PER1 1.000.HW01.3 devices allow command spoofing (for camera control) after ARP ...
CVE-2021-29220HIGH7.2Multiple buffer overflow security vulnerabilities have been identified in HPE iLO Amplifier Pack version(s): Prior to 2....
CVE-2021-44664HIGH8.8An Authenticated Remote Code Exection (RCE) vulnerability exists in Xerte through 3.9 in website_code/php/import/fileupl...
CVE-2021-4021HIGH7.5A vulnerability was found in Radare2 in versions prior to 5.6.2, 5.6.0, 5.5.4 and 5.5.2. Mapping a huge section filled w...
CVE-2021-44531HIGH7.4Accepting arbitrary Subject Alternative Name (SAN) types, unless a PKI is specifically defined to use a particular SAN t...
CVE-2021-3610HIGH7.5A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in...
CVE-2021-26252HIGH7.8A flaw was found in htmldoc in v1.9.12. Heap buffer overflow in pspdf_prepare_page(),in ps-pdf.cxx may lead to execute a...
CVE-2021-4030HIGH8.8A cross-site request forgery vulnerability in the HTTP daemon of the Zyxel ARMOR Z1/Z2 firmware could allow an attacker ...
CVE-2021-4029HIGH8.8A command injection vulnerability in the CGI program of the Zyxel ARMOR Z1/Z2 firmware could allow an attacker to execut...
CVE-2021-45746HIGH7.5A Directory Traversal vulnerability exists in WeBankPartners wecube-platform 3.2.1 via the file variable in PluginPackag...
CVE-2021-44967HIGH8.8A Remote Code Execution (RCE) vulnerabilty exists in LimeSurvey 5.2.4 via the upload and install plugins function, which...
CVE-2021-25636HIGH7.5LibreOffice supports digital signatures of ODF documents and macros within documents, presenting visual aids that no alt...
CVE-2021-43826HIGH7.5Envoy is an open source edge and service proxy, designed for cloud-native applications. In affected versions of Envoy a ...
CVE-2021-43825HIGH7.5Envoy is an open source edge and service proxy, designed for cloud-native applications. Sending a locally generated resp...
CVE-2021-43824HIGH7.5Envoy is an open source edge and service proxy, designed for cloud-native applications. In affected versions a crafted r...
CVE-2021-46699HIGH7.8A vulnerability has been identified in Simcenter Femap (All versions < V2022.1.1). Affected application contains a stack...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now