2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-32088 | CRITICAL | 9.8 | 0.3% | Jul 27, 2026 | An issue was discovered in Quest KACE Systems Deployment Appliance (SMA) 11.0.273. Certain API endpoints contain a rate-... |
| CVE-2021-32086 | CRITICAL | 9.8 | 0.2% | Jul 27, 2026 | An issue was discovered in Quest KACE Systems Deployment Appliance (SMA) 11.0.273. It uses a hardcoded symmetric encrypt... |
| CVE-2021-32084 | CRITICAL | 9.8 | 0.3% | Jul 27, 2026 | An issue was discovered in Quest KACE Systems Deployment Appliance (SMA) 11.0.273. If a customer restricts access to the... |
| CVE-2021-47952 | CRITICAL | 9.8 | 0.7% | May 16, 2026 | python jsonpickle 2.0.0 contains a remote code execution vulnerability that allows attackers to execute arbitrary Python... |
| CVE-2021-47965 | CRITICAL | 9.8 | 0.6% | May 15, 2026 | WordPress Plugin WP Super Edit 2.5.4 and earlier contains an unrestricted file upload vulnerability in the FCKeditor com... |
| CVE-2021-47940 | CRITICAL | 9.8 | 0.4% | May 10, 2026 | WordPress Plugin Download From Files version 1.48 and earlier contains an arbitrary file upload vulnerability that allow... |
| CVE-2021-47936 | CRITICAL | 9.8 | 0.7% | May 10, 2026 | OpenCATS 0.9.4 contains a remote code execution vulnerability that allows unauthenticated attackers to execute arbitrary... |
| CVE-2021-47933 | CRITICAL | 9.8 | 0.6% | May 10, 2026 | WordPress MStore API 2.0.6 contains an arbitrary file upload vulnerability that allows unauthenticated attackers to uplo... |
| CVE-2021-47932 | CRITICAL | 9.8 | 0.4% | May 10, 2026 | WordPress TheCartPress 1.5.3.6 contains an unauthenticated privilege escalation vulnerability that allows attackers to c... |
| CVE-2021-47923 | CRITICAL | 9.8 | 0.4% | May 10, 2026 | OpenCart 3.0.3.8 contains a session fixation vulnerability that allows attackers to hijack user sessions by injecting ar... |
| CVE-2021-4473 | CRITICAL | 9.8 | 6.2% | Apr 7, 2026 | Tianxin Internet Behavior Management System contains a command injection vulnerability in the Reporter component endpoin... |
| CVE-2021-4477 | CRITICAL | 9.3 | 0.3% | Apr 3, 2026 | Hirschmann HiLCOS OpenBAT and BAT450 products contain a firewall bypass vulnerability in IPv6 IPsec deployments that all... |
| CVE-2021-35402 | CRITICAL | 10 | 1.0% | Feb 20, 2026 | PROLiNK PRC2402M 20190909 before 2021-06-13 allows live_api.cgi?page=satellite_list OS command injection via shell metac... |
| CVE-2021-47901 | CRITICAL | 9.8 | 0.4% | Jan 27, 2026 | Dirsearch 0.4.1 contains a CSV injection vulnerability when using the --csv-report flag that allows attackers to inject ... |
| CVE-2021-47900 | CRITICAL | 9.8 | 0.6% | Jan 27, 2026 | Gila CMS versions prior to 2.0.0 contain a remote code execution vulnerability that allows unauthenticated attackers to ... |
| CVE-2021-47891 | CRITICAL | 9.8 | 0.8% | Jan 23, 2026 | Unified Remote 3.9.0.2463 contains a remote code execution vulnerability that allows attackers to send crafted network p... |
| CVE-2021-47875 | CRITICAL | 9.8 | 0.3% | Jan 21, 2026 | GeoGebra CAS Calculator 6.0.631.0 contains a denial of service vulnerability that allows attackers to crash the applicat... |
| CVE-2021-47854 | CRITICAL | 9.8 | 1.0% | Jan 21, 2026 | DD-WRT version 45723 contains a buffer overflow vulnerability in the UPNP network discovery service that allows remote a... |
| CVE-2021-47851 | CRITICAL | 9.8 | 1.0% | Jan 21, 2026 | Mini Mouse 9.2.0 contains a remote code execution vulnerability that allows attackers to execute arbitrary commands thro... |
| CVE-2021-47748 | CRITICAL | 9.8 | 1.0% | Jan 21, 2026 | Hasura GraphQL 1.3.3 contains a remote code execution vulnerability that allows attackers to execute arbitrary shell com... |
| CVE-2021-47812 | CRITICAL | 9.8 | 2.0% | Jan 16, 2026 | GravCMS 1.10.7 contains an unauthenticated vulnerability that allows remote attackers to write arbitrary YAML configurat... |
| CVE-2021-47811 | CRITICAL | 9.1 | 0.5% | Jan 16, 2026 | Grocery Crud 1.6.4 contains a SQL injection vulnerability in the order_by parameter that allows remote attackers to mani... |
| CVE-2021-47798 | CRITICAL | 9.8 | 0.4% | Jan 16, 2026 | NoteBurner 2.35 contains a buffer overflow vulnerability in the license code input field that allows attackers to crash ... |
| CVE-2021-47796 | CRITICAL | 9.8 | 0.5% | Jan 16, 2026 | Denver SHC-150 Smart Wifi Camera contains a hardcoded telnet credential vulnerability that allows unauthenticated attack... |
| CVE-2021-47785 | CRITICAL | 9.8 | 0.8% | Jan 16, 2026 | Ether MP3 CD Burner 1.3.8 contains a buffer overflow vulnerability in the registration name field that allows remote cod... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now