2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22850 | CRITICAL | 9.8 | 1.0% | Jan 19, 2021 | HGiga EIP product lacks ineffective access control in certain pages that allow attackers to access database or perform p... |
| CVE-2021-3178 | MEDIUM | 6.5 | 2.4% | Jan 19, 2021 | fs/nfsd/nfs3xdr.c in the Linux kernel through 5.10.8, when there is an NFS export of a subdirectory of a filesystem, all... |
| CVE-2021-3177 | CRITICAL | 9.8 | 23.3% | Jan 19, 2021 | Python 3.x through 3.9.1 has a buffer overflow in PyCArg_repr in _ctypes/callproc.c, which may lead to remote code execu... |
| CVE-2021-20619 | MEDIUM | 6.1 | 1.0% | Jan 19, 2021 | Cross-site scripting vulnerability in GROWI (v4.2 Series) versions prior to v4.2.3 allows remote attackers to inject an ... |
| CVE-2021-25178 | HIGH | 7.8 | 3.2% | Jan 18, 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A stack-based buffer overflow vulnerability... |
| CVE-2021-25177 | HIGH | 7.8 | 2.3% | Jan 18, 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A Type Confusion issue exists when renderin... |
| CVE-2021-25176 | HIGH | 7.8 | 2.3% | Jan 18, 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A NULL pointer dereference exists when rend... |
| CVE-2021-25175 | HIGH | 7.8 | 2.6% | Jan 18, 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A Type Conversion issue exists when renderi... |
| CVE-2021-25174 | HIGH | 7.8 | 2.2% | Jan 18, 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.12. A memory corruption vulnerability exists wh... |
| CVE-2021-25173 | HIGH | 7.8 | 2.3% | Jan 18, 2021 | An issue was discovered in Open Design Alliance Drawings SDK before 2021.12. A memory allocation with excessive size vul... |
| CVE-2021-25295 | MEDIUM | 6.1 | 1.5% | Jan 18, 2021 | OpenCATS through 0.9.5-3 has multiple Cross-site Scripting (XSS) issues. |
| CVE-2021-25294 | CRITICAL | 9.8 | 10.7% | Jan 18, 2021 | OpenCATS through 0.9.5-3 unsafely deserializes index.php?m=activity requests, leading to remote code execution. This occ... |
| CVE-2021-3166 | HIGH | 7.5 | 2.9% | Jan 18, 2021 | An issue was discovered on ASUS DSL-N14U-B1 1.1.2.3_805 devices. An attacker can upload arbitrary file content as a firm... |
| CVE-2021-3113 | HIGH | 7.5 | 3.2% | Jan 17, 2021 | Netsia SEBA+ through 0.16.1 build 70-e669dcd7 allows remote attackers to discover session cookies via a direct /session/... |
| CVE-2021-3162 | HIGH | 7.8 | 0.2% | Jan 15, 2021 | Docker Desktop Community before 2.5.0.0 on macOS mishandles certificate checking, leading to local privilege escalation. |
| CVE-2021-21251 | HIGH | 8.8 | 12.2% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3 there is a critical "zip slip" vulnerability. Th... |
| CVE-2021-21250 | MEDIUM | 6.5 | 0.9% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, there is a critical vulnerability which may lea... |
| CVE-2021-21249 | HIGH | 8.8 | 2.9% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, there is an issue involving YAML parsing which ... |
| CVE-2021-21248 | HIGH | 8.8 | 1.5% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, there is a critical vulnerability involving the... |
| CVE-2021-21247 | HIGH | 8.8 | 1.5% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, the application's BasePage registers an AJAX ev... |
| CVE-2021-21246 | HIGH | 7.5 | 49.1% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, the REST UserResource endpoint performs a secur... |
| CVE-2021-21245 | CRITICAL | 9.8 | 1.2% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, AttachmentUploadServlet also saves user control... |
| CVE-2021-21242 | CRITICAL | 9.8 | 74.2% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, there is a critical vulnerability which can lea... |
| CVE-2021-21244 | CRITICAL | 9.8 | 1.5% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, There is a vulnerability that enabled pre-auth ... |
| CVE-2021-21243 | CRITICAL | 9.8 | 54.5% | Jan 15, 2021 | OneDev is an all-in-one devops platform. In OneDev before version 4.0.3, a Kubernetes REST endpoint exposes two methods ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now