2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-3923LOW2.3A flaw was found in the Linux kernel's implementation of RDMA over infiniband. An attacker with a privileged local accou...
CVE-2021-43317HIGH7.5A heap-based buffer overflows was discovered in upx, during the generic pointer 'p' points to an inaccessible address in...
CVE-2021-43316HIGH7.5A heap-based buffer overflow was discovered in upx, during the generic pointer 'p' points to an inaccessible address in ...
CVE-2021-43315HIGH7.5A heap-based buffer overflows was discovered in upx, during the generic pointer 'p' points to an inaccessible address in...
CVE-2021-43314HIGH7.5A heap-based buffer overflows was discovered in upx, during the generic pointer 'p' points to an inaccessible address in...
CVE-2021-43313HIGH7.5A heap-based buffer overflow was discovered in upx, during the variable 'bucket' points to an inaccessible address. The ...
CVE-2021-43312HIGH7.5A heap-based buffer overflow was discovered in upx, during the variable 'bucket' points to an inaccessible address. The ...
CVE-2021-43311HIGH7.5A heap-based buffer overflow was discovered in upx, during the generic pointer 'p' points to an inaccessible address in ...
CVE-2021-3684MEDIUM5.5A vulnerability was found in OpenShift Assisted Installer. During generation of the Discovery ISO, image pull secrets we...
CVE-2021-3674HIGH7.8A flaw was found in rizin. The create_section_from_phdr function allocates space for ELF section data by processing the ...
CVE-2021-3844MEDIUM5.4Rapid7 InsightVM suffers from insufficient session expiration when an administrator performs a security relevant edit on...
CVE-2021-3099Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:...
CVE-2021-3091Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:...
CVE-2021-46877HIGH7.5jackson-databind 2.10.x through 2.12.x before 2.12.6 and 2.13.x before 2.13.1 allows attackers to cause a denial of serv...
CVE-2021-21548HIGH7.4 Dell EMC Unisphere for PowerMax versions before 9.1.0.27, Dell EMC Unisphere for PowerMax Virtual Appliance versions be...
CVE-2021-36821MEDIUM6.1Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPMU DEV Fo...
CVE-2021-31637HIGH7.8An issue found in UwAmp v.1.1, 1.2, 1.3, 2.0, 2.1, 2.2, 2.2.1, 3.0.0, 3.0.1, 3.0.2 allows a remote attacker to execute a...
CVE-2021-4195MEDIUM6.1Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Firmanet Software ...
CVE-2021-45423CRITICAL9.8A Buffer Overflow vulnerabilityexists in Pev 0.81 via the pe_exports function from exports.c.. The array offsets_to_Name...
CVE-2021-46876MEDIUM5.3An issue was discovered in eZ Publish Ibexa Kernel before 7.5.15.1. The /user/sessions endpoint can be abused to determi...
CVE-2021-46875MEDIUM6.1An issue was discovered in eZ Platform Ibexa Kernel before 1.3.1.1. An XSS attack can occur because JavaScript code can ...
CVE-2021-27788MEDIUM6.1HCL Verse is susceptible to a Cross Site Scripting (XSS) vulnerability.  By tricking a user into clicking a crafted URL,...
CVE-2021-33360CRITICAL9.8An issue found in Stoqey gnuplot v.0.0.3 and earlier allows attackers to execute arbitrary code via the src/index.ts, pl...
CVE-2021-34125HIGH7.5An issue discovered in Yuneec Mantis Q and PX4-Autopilot v 1.11.3 and below allow attacker to gain access to sensitive i...
CVE-2021-33639HIGH7.5REMAP cmd of SVM driver can be used to remap read only memory as read-write, then cause read only memory/file modified.

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now