2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-27490HIGH7.8Datakit Software libraries CatiaV5_3dRead, CatiaV6_3dRead, Step3dRead, Ug3dReadPsr, Jt3dReadPsr modules in KeyShot Versi...
CVE-2021-27496HIGH7.8Datakit Software libraries CatiaV5_3dRead, CatiaV6_3dRead, Step3dRead, Ug3dReadPsr, Jt3dReadPsr modules in KeyShot Versi...
CVE-2021-27494HIGH7.8Datakit Software libraries CatiaV5_3dRead, CatiaV6_3dRead, Step3dRead, Ug3dReadPsr, Jt3dReadPsr modules in KeyShot Versi...
CVE-2021-27492MEDIUM5.5When opening a specially crafted 3DXML file, the application containing Datakit Software libraries CatiaV5_3dRead, Catia...
CVE-2021-27488HIGH7.8Datakit Software libraries CatiaV5_3dRead, CatiaV6_3dRead, Step3dRead, Ug3dReadPsr, Jt3dReadPsr modules in KeyShot Versi...
CVE-2021-22118HIGH7.8In Spring Framework, versions 5.2.x prior to 5.2.15 and versions 5.3.x prior to 5.3.7, a WebFlux application is vulnerab...
CVE-2021-31808MEDIUM6.5An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to an input-validation bug, it is vulnerable to a...
CVE-2021-33200HIGH7.8kernel/bpf/verifier.c in the Linux kernel through 5.12.7 enforces incorrect limits for pointer arithmetic operations, ak...
CVE-2021-31806MEDIUM6.5An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to a memory-management bug, it is vulnerable to a...
CVE-2021-31535CRITICAL9.8LookupCol.c in X.Org X through X11R7.7 and libX11 before 1.7.1 might allow remote attackers to execute arbitrary code. T...
CVE-2021-31525MEDIUM5.9net/http in Go before 1.15.12 and 1.16.x before 1.16.4 allows remote attackers to cause a denial of service (panic) via ...
CVE-2021-31155HIGH7.8Failure to normalize the umask in please before 0.4 allows a local attacker to gain full root privileges if they are all...
CVE-2021-31154HIGH7.8pleaseedit in please before 0.4 uses predictable temporary filenames in /tmp and the target directory. This allows a loc...
CVE-2021-31153LOW3.3please before 0.4 allows a local unprivileged attacker to gain knowledge about the existence of files or directories in ...
CVE-2021-30465HIGH8.5runc before 1.0.0-rc95 allows a Container Filesystem Breakout via Directory Traversal. To exploit the vulnerability, an ...
CVE-2021-22411MEDIUM6.5There is an out-of-bounds write vulnerability in some Huawei products. The code of a module have a bad judgment logic. A...
CVE-2021-22364MEDIUM5.5There is a denial of service vulnerability in the versions 10.1.0.126(C00E125R5P3) of HUAWEI Mate 30 and 10.1.0.152(C00E...
CVE-2021-22362MEDIUM5.3There is an out of bounds write vulnerability in some Huawei products. An attacker can exploit this vulnerability by sen...
CVE-2021-22360MEDIUM4.9There is a resource management error vulnerability in the verisions V500R001C60SPC500, V500R005C00SPC100, V500R005C00SPC...
CVE-2021-22359HIGH7.5There is a denial of service vulnerability in the verisions V200R005C00SPC500 of S5700 and V200R005C00SPC500 of S6700. A...
CVE-2021-22358MEDIUM4.3There is an insufficient input validation vulnerability in FusionCompute 8.0.0. Due to the input validation is insuffici...
CVE-2021-28662MEDIUM6.5An issue was discovered in Squid 4.x before 4.15 and 5.x before 5.0.6. If a remote server sends a certain response heade...
CVE-2021-28652MEDIUM4.9An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to incorrect parser validation, it allows a Denia...
CVE-2021-28651HIGH7.5An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to a buffer-management bug, it allows a denial of...
CVE-2021-22911CRITICAL9.8A improper input sanitization vulnerability exists in Rocket.Chat server 3.11, 3.12 & 3.13 that could lead to unauthenti...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now