2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-46117HIGH7.2jpress 4.2.0 is vulnerable to remote code execution via io.jpress.module.page.PageNotifyKit#doSendEmail. The admin panel...
CVE-2021-45975HIGH7.8In ListCheck.exe in Acer Care Center 4.x before 4.00.3038, a vulnerability in the loading mechanism of Windows DLLs coul...
CVE-2021-22600HIGH7A double free bug in packet_set_ring() in net/packet/af_packet.c can be exploited by a local user through crafted syscal...
CVE-2021-44123HIGH8.8SPIP 4.0.0 is affected by a remote command execution vulnerability. To exploit the vulnerability, an attacker must craft...
CVE-2021-44122HIGH8.8SPIP 4.0.0 is affected by a Cross Site Request Forgery (CSRF) vulnerability in ecrire/public/aiguiller.php, ecrire/publi...
CVE-2021-41766HIGH8.1Apache Karaf allows monitoring of applications and the Java runtime by using the Java Management Extensions (JMX). JMX i...
CVE-2021-46559HIGH7.5The firmware on Moxa TN-5900 devices through 3.1 has a weak algorithm that allows an attacker to defeat an inspection me...
CVE-2021-36348HIGH8.1iDRAC9 versions prior to 5.00.20.00 contain an input injection vulnerability. A remote authenticated malicious user with...
CVE-2021-36347HIGH7.2iDRAC9 versions prior to 5.00.20.00 and iDRAC8 versions prior to 2.82.82.82 contain a stack-based buffer overflow vulner...
CVE-2021-36296HIGH7.2Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A r...
CVE-2021-36295HIGH7.2Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain an authenticated remote code execution vulnerability. A r...
CVE-2021-36289HIGH7.8Dell VNX2 OE for File versions 8.1.21.266 and earlier, contain a sensitive information disclosure vulnerability. A local...
CVE-2021-4133HIGH8.8A flaw was found in Keycloak in versions from 12.0.0 and before 15.1.1 which allows an attacker with any existing user a...
CVE-2021-41598HIGH8.8A UI misrepresentation vulnerability was identified in GitHub Enterprise Server that allowed more permissions to be gran...
CVE-2021-40167HIGH7.8A malicious crafted dwf or .pct file when consumed through DesignReview.exe application could lead to memory corruption ...
CVE-2021-40159HIGH7.8An Information Disclosure vulnerability for JT files in Autodesk Inventor 2022, 2021, 2020, 2019 in conjunction with oth...
CVE-2021-40158HIGH7.8A maliciously crafted JT file in Autodesk Inventor 2022, 2021, 2020, 2019 and AutoCAD 2022 may be forced to read beyond ...
CVE-2021-39031HIGH8.8IBM WebSphere Application Server - Liberty 17.0.0.3 through 22.0.0.1 could allow a remote authenticated attacker to cond...
CVE-2021-46086HIGH7.5xzs-mysql >= t3.4.0 is vulnerable to Insecure Permissions. The front end of this open source system is an online examina...
CVE-2021-43863HIGH7.5The Nextcloud Android app is the Android client for Nextcloud, a self-hosted productivity platform. The Nextcloud Androi...
CVE-2021-34869HIGH8.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3-4...
CVE-2021-34868HIGH8.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3-4...
CVE-2021-34867HIGH8.2This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 16.1.3-4...
CVE-2021-34866HIGH7.8This vulnerability allows local attackers to escalate privileges on affected installations of Linux Kernel 5.14-rc3. An ...
CVE-2021-34865HIGH8.8This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of multiple NETG...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now