2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2021-37599CRITICAL9.8The exporter/Login.aspx login form in the Exporter in Nuance Winscribe Dictation 4.1.0.99 is vulnerable to SQL injection...
CVE-2021-33199CRITICAL9.8In Expression Engine before 6.0.3, addonIcon in Addons/file/mod.file.php relies on the untrusted input value of input->g...
CVE-2021-26432CRITICAL9.8Windows Services for NFS ONCRPC XDR Driver Remote Code Execution Vulnerability
CVE-2021-26424CRITICAL9.9Windows TCP/IP Remote Code Execution Vulnerability
CVE-2021-38606CRITICAL9.8reNgine through 0.5 relies on a predictable directory name.
CVE-2021-20509CRITICAL9.8IBM Maximo Asset Management 7.6.0 and 7.6.1 is potentially vulnerable to CSV Injection. A remote attacker could execute ...
CVE-2021-20314CRITICAL9.8Stack buffer overflow in libspf2 versions below 1.2.11 when processing certain SPF macros can lead to Denial of service ...
CVE-2021-37222CRITICAL9.8Parsers in the open source project RCDCAP before 1.0.5 allow remote attackers to execute arbitrary code or cause a denia...
CVE-2021-38574CRITICAL9.8An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows SQL Injection via crafted data at the en...
CVE-2021-38573CRITICAL9.8An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows writing to arbitrary files because a Com...
CVE-2021-38572CRITICAL9.8An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows writing to arbitrary files because the e...
CVE-2021-38570CRITICAL9.1An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows attackers to delete arbitrary files (dur...
CVE-2021-38568CRITICAL9.8An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows memory corruption during conversion of a...
CVE-2021-38564CRITICAL9.1An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1. It allows an out-of-bounds read ...
CVE-2021-38563CRITICAL9.8An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1. It mishandles situations in whic...
CVE-2021-33794CRITICAL9.1Foxit Reader before 10.1.4 and PhantomPDF before 10.1.4 allow information disclosure or an application crash after misha...
CVE-2021-33793CRITICAL9.8Foxit Reader before 10.1.4 and PhantomPDF before 10.1.4 have an out-of-bounds write because the Cross-Reference table is...
CVE-2021-23421CRITICAL9.8All versions of package merge-change are vulnerable to Prototype Pollution via the utils.set function.
CVE-2021-20418CRITICAL9.8IBM Security Guardium 11.2 does not require that users should have strong passwords by default, which makes it easier fo...
CVE-2021-23420CRITICAL9.8This affects the package codeception/codeception from 4.0.0 and before 4.1.22, before 3.1.3. The RunProcess class can be...
CVE-2021-38530CRITICAL9.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK40 before 2.5....
CVE-2021-38529CRITICAL9.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D7800 before 1.0....
CVE-2021-38528CRITICAL9.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D8500 before 1.0....
CVE-2021-38527CRITICAL9.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects CBR40 before 2.5....
CVE-2021-38516CRITICAL9.8Certain NETGEAR devices are affected by lack of access control at the function level. This affects D6220 before 1.0.0.48...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now