2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-27384 | CRITICAL | 9.8 | 2.5% | May 12, 2021 | A vulnerability has been identified in SIMATIC HMI Comfort Outdoor Panels V15 7\" & 15\" (incl. SIPLUS variants) (All ve... |
| CVE-2021-32605 | CRITICAL | 9.8 | 3.8% | May 11, 2021 | zzzcms zzzphp before 2.0.4 allows remote attackers to execute arbitrary OS commands by placing them in the keys paramete... |
| CVE-2021-32089 | CRITICAL | 9.8 | 1.6% | May 11, 2021 | An issue was discovered on Zebra (formerly Motorola Solutions) Fixed RFID Reader FX9500 devices. An unauthenticated atta... |
| CVE-2021-31166 | CRITICAL | 9.8 | 99.7% | May 11, 2021 | HTTP Protocol Stack Remote Code Execution Vulnerability |
| CVE-2021-28476 | CRITICAL | 9.9 | 38.4% | May 11, 2021 | Windows Hyper-V Remote Code Execution Vulnerability |
| CVE-2021-29508 | CRITICAL | 9.1 | 1.6% | May 11, 2021 | Due to how Wire handles type information in its serialization format, malicious payloads can be passed to a deserializer... |
| CVE-2021-31915 | CRITICAL | 9.8 | 3.2% | May 11, 2021 | In JetBrains TeamCity before 2020.2.4, OS command injection leading to remote code execution was possible. |
| CVE-2021-31914 | CRITICAL | 9.8 | 2.3% | May 11, 2021 | In JetBrains TeamCity before 2020.2.4 on Windows, arbitrary code execution on TeamCity Server was possible. |
| CVE-2021-31897 | CRITICAL | 9.8 | 1.5% | May 11, 2021 | In JetBrains WebStorm before 2021.1, code execution without user confirmation was possible for untrusted projects. |
| CVE-2021-31909 | CRITICAL | 9.8 | 3.2% | May 11, 2021 | In JetBrains TeamCity before 2020.2.3, argument injection leading to remote code execution was possible. |
| CVE-2021-32563 | CRITICAL | 9.8 | 3.1% | May 11, 2021 | An issue was discovered in Thunar before 4.16.7 and 4.17.x before 4.17.2. When called with a regular file as a command-l... |
| CVE-2021-20538 | CRITICAL | 9.1 | 0.7% | May 10, 2021 | IBM Cloud Pak for Security (CP4S) 1.5.0.0 and 1.5.0.1 could allow a user to obtain sensitive information or perform acti... |
| CVE-2021-23008 | CRITICAL | 9.8 | 1.3% | May 10, 2021 | On version 15.1.x before 15.1.3, 14.1.x before 14.1.4, 13.1.x before 13.1.4, 12.1.x before 12.1.6, and all versions of 1... |
| CVE-2021-26583 | CRITICAL | 9.8 | 4.4% | May 10, 2021 | A potential security vulnerability was identified in HPE iLO Amplifier Pack. The vulnerabilities could be remotely explo... |
| CVE-2021-25848 | CRITICAL | 9.1 | 1.2% | May 10, 2021 | Improper validation of the length field of LLDP-MED TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, ver... |
| CVE-2021-25847 | CRITICAL | 9.1 | 1.2% | May 10, 2021 | Improper validation of the length field of LLDP-MED TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, ver... |
| CVE-2021-31758 | CRITICAL | 9.8 | 6.6% | May 7, 2021 | An issue was discovered on Tenda AC11 devices with firmware through 02.03.01.104_CN. A stack buffer overflow vulnerabili... |
| CVE-2021-31757 | CRITICAL | 9.8 | 3.3% | May 7, 2021 | An issue was discovered on Tenda AC11 devices with firmware through 02.03.01.104_CN. A stack buffer overflow vulnerabili... |
| CVE-2021-31756 | CRITICAL | 9.8 | 2.9% | May 7, 2021 | An issue was discovered on Tenda AC11 devices with firmware through 02.03.01.104_CN. A stack buffer overflow vulnerabili... |
| CVE-2021-31755 | CRITICAL | 9.8 | 85.8% | May 7, 2021 | An issue was discovered on Tenda AC11 devices with firmware through 02.03.01.104_CN. A stack buffer overflow vulnerabili... |
| CVE-2021-27573 | CRITICAL | 9.8 | 14.2% | May 7, 2021 | An issue was discovered in Emote Remote Mouse through 4.0.0.0. Remote unauthenticated users can execute arbitrary code v... |
| CVE-2021-27437 | CRITICAL | 9.1 | 1.2% | May 7, 2021 | The affected product allows attackers to obtain sensitive information from the WISE-PaaS dashboard. The system contains ... |
| CVE-2021-22671 | CRITICAL | 9.8 | 1.8% | May 7, 2021 | Multiple integer overflow issues exist while processing long domain names, which may allow an attacker to remotely execu... |
| CVE-2021-22679 | CRITICAL | 9.8 | 1.8% | May 7, 2021 | The affected product is vulnerable to an integer overflow while processing HTTP headers, which may allow an attacker to ... |
| CVE-2021-21984 | CRITICAL | 9.8 | 2.0% | May 7, 2021 | VMware vRealize Business for Cloud 7.x prior to 7.6.0 contains a remote code execution vulnerability due to an unauthori... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now