2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-23874HIGH7.8Arbitrary Process Execution vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a local user to gain ...
CVE-2021-23873MEDIUM6.1Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a local user to gain elevate...
CVE-2021-23883MEDIUM4.4A Null Pointer Dereference vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Upd...
CVE-2021-23882MEDIUM4.4Improper Access Control vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update...
CVE-2021-23880MEDIUM4.4Improper Access Control in attribute in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update ...
CVE-2021-23878MEDIUM5Clear text storage of sensitive Information in memory vulnerability in McAfee Endpoint Security (ENS) for Windows prior ...
CVE-2021-20654MEDIUM5.4Wekan, open source kanban board system, between version 3.12 and 4.11, is vulnerable to multiple stored cross-site scrip...
CVE-2021-26959Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-21299. Reason: This candidate is a duplicate of ...
CVE-2021-26958HIGH8.8An issue was discovered in the xcb crate through 2021-02-04 for Rust. It has a soundness violation because transmutation...
CVE-2021-26957CRITICAL9.8An issue was discovered in the xcb crate through 2021-02-04 for Rust. It has a soundness violation because there is an o...
CVE-2021-26956CRITICAL9.8An issue was discovered in the xcb crate through 2021-02-04 for Rust. It has a soundness violation because bytes from an...
CVE-2021-26955CRITICAL9.8An issue was discovered in the xcb crate through 2021-02-04 for Rust. It has a soundness violation because xcb::xproto::...
CVE-2021-26954MEDIUM5.3An issue was discovered in the qwutils crate before 0.3.1 for Rust. When a Clone panic occurs, insert_slice_clone can pe...
CVE-2021-26953HIGH7.5An issue was discovered in the postscript crate before 0.14.0 for Rust. It might allow attackers to obtain sensitive inf...
CVE-2021-26952HIGH7.5An issue was discovered in the ms3d crate before 0.1.3 for Rust. It might allow attackers to obtain sensitive informatio...
CVE-2021-26951CRITICAL9.8An issue was discovered in the calamine crate before 0.17.0 for Rust. It allows attackers to overwrite heap-memory locat...
CVE-2021-21502CRITICAL9.8Dell PowerScale OneFS versions 8.1.0 – 9.1.0 contain a "use of SSH key past account expiration" vulnerability. A user on...
CVE-2021-21479CRITICAL9.1In SCIMono before 0.0.19, it is possible for an attacker to inject and execute java expression compromising the availabi...
CVE-2021-21478MEDIUM6.1SAP Web Dynpro ABAP allow an attacker to redirect users to a malicious site due to Reverse Tabnabbing vulnerabilities.
CVE-2021-21477CRITICAL9.9SAP Commerce Cloud, versions - 1808,1811,1905,2005,2011, enables certain users with required privileges to edit drools r...
CVE-2021-21476MEDIUM6.1SAP UI5 versions before 1.38.49, 1.52.49, 1.60.34, 1.71.31, 1.78.18, 1.84.5, 1.85.4, 1.86.1 allows an unauthenticated at...
CVE-2021-21475HIGH7.5Under specific circumstances SAP Master Data Management, versions - 710, 710.750, allows an unauthorized attacker to exp...
CVE-2021-21474MEDIUM6.5SAP HANA Database, versions - 1.0, 2.0, accepts SAML tokens with MD5 digest, an attacker who manages to obtain an MD5-di...
CVE-2021-21472HIGH8.8SAP Software Provisioning Manager 1.0 (SAP NetWeaver Master Data Management Server 7.1) does not have an option to set p...
CVE-2021-21444MEDIUM6.1SAP Business Objects BI Platform, versions - 410, 420, 430, allows multiple X-Frame-Options headers entries in the respo...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now