2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-46053 | MEDIUM | 5.5 | 0.7% | Jan 10, 2022 | A Denial of Service vulnerability exists in Binaryen 103. The program terminates with signal SIGKILL. |
| CVE-2021-46052 | MEDIUM | 5.5 | 0.7% | Jan 10, 2022 | A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::Tuple::validate. |
| CVE-2021-46051 | MEDIUM | 5.5 | 0.6% | Jan 10, 2022 | A Pointer Dereference Vulnerability exists in GPAC 1.0.1 via the Media_IsSelfContained function, which could cause a Den... |
| CVE-2021-46050 | MEDIUM | 5.5 | 0.7% | Jan 10, 2022 | A Stack Overflow vulnerability exists in Binaryen 103 via the printf_common function. |
| CVE-2021-46049 | MEDIUM | 5.5 | 0.6% | Jan 10, 2022 | A Pointer Dereference Vulnerability exists in GPAC 1.0.1 via the gf_fileio_check function, which could cause a Denial of... |
| CVE-2021-46048 | MEDIUM | 5.5 | 0.7% | Jan 10, 2022 | A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::readFunct... |
| CVE-2021-46047 | MEDIUM | 5.5 | 0.6% | Jan 10, 2022 | A Pointer Dereference Vulnerability exists in GPAC 1.0.1 via the gf_hinter_finalize function. |
| CVE-2021-46046 | MEDIUM | 5.5 | 0.6% | Jan 10, 2022 | A Pointer Derefernce Vulnerbility exists GPAC 1.0.1 the gf_isom_box_size function, which could cause a Denial of Service... |
| CVE-2021-46045 | MEDIUM | 5.5 | 0.6% | Jan 10, 2022 | GPAC 1.0.1 is affected by: Abort failed. The impact is: cause a denial of service (context-dependent). |
| CVE-2021-44528 | MEDIUM | 6.1 | 4.2% | Jan 10, 2022 | A open redirect vulnerability exists in Action Pack >= 6.0.0 that could allow an attacker to craft a "X-Forwarded-Host" ... |
| CVE-2021-42749 | MEDIUM | 5.3 | 1.1% | Jan 10, 2022 | In Beaver Themer, attackers can bypass conditional logic controls (for hiding content) when viewing the post archives. E... |
| CVE-2021-42748 | MEDIUM | 5.3 | 1.0% | Jan 10, 2022 | In Beaver Builder through 2.5.0.3, attackers can bypass the visibility controls protection mechanism via the REST API. |
| CVE-2021-40041 | MEDIUM | 4.2 | 0.2% | Jan 10, 2022 | There is a Cross-Site Scripting(XSS) vulnerability in HUAWEI WS318n product when processing network settings. Due to ins... |
| CVE-2021-40037 | MEDIUM | 5.5 | 0.2% | Jan 10, 2022 | There is a Vulnerability of accessing resources using an incompatible type (type confusion) in the MPTCP subsystem in sm... |
| CVE-2021-40009 | MEDIUM | 5.3 | 0.7% | Jan 10, 2022 | There is an Out-of-bounds write vulnerability in the AOD module in smartphones. Successful exploitation of this vulnerab... |
| CVE-2021-40006 | MEDIUM | 4.6 | 0.1% | Jan 10, 2022 | Vulnerability of design defects in the security algorithm component. Successful exploitation of this vulnerability may a... |
| CVE-2021-40003 | MEDIUM | 5.3 | 0.6% | Jan 10, 2022 | HwPCAssistant has a path traversal vulnerability. Successful exploitation of this vulnerability may affect data confiden... |
| CVE-2021-40001 | MEDIUM | 5.3 | 0.8% | Jan 10, 2022 | The CaasKit module has a path traversal vulnerability. Successful exploitation of this vulnerability may cause the MeeTi... |
| CVE-2021-38956 | MEDIUM | 5.3 | 0.9% | Jan 10, 2022 | IBM Security Verify 10.0.0, 10.0.1.0, and 10.0.2.0 could disclose sensitive version information in HTTP response headers... |
| CVE-2021-38895 | MEDIUM | 5.4 | 0.4% | Jan 10, 2022 | IBM Security Verify 10.0.0, 10.0.1.0, and 10.0.2.0 is vulnerable to cross-site scripting. This vulnerability allows user... |
| CVE-2021-35247 | MEDIUM | 5.3 | 3.4% | Jan 10, 2022 | Serv-U web login screen to LDAP authentication was allowing characters that were not sufficiently sanitized. SolarWinds ... |
| CVE-2021-23173 | MEDIUM | 4.3 | 0.5% | Jan 10, 2022 | The affected product is vulnerable to an improper access control, which may allow an authenticated user to gain unauthor... |
| CVE-2021-22569 | MEDIUM | 5.5 | 1.7% | Jan 10, 2022 | An issue in protobuf-java allowed the interleaving of com.google.protobuf.UnknownFieldSet fields in such a way that woul... |
| CVE-2021-22060 | MEDIUM | 4.3 | 0.9% | Jan 10, 2022 | In Spring Framework versions 5.3.0 - 5.3.13, 5.2.0 - 5.2.18, and older unsupported versions, it is possible for a user t... |
| CVE-2021-38674 | MEDIUM | 6.1 | 0.6% | Jan 7, 2022 | A cross-site scripting (XSS) vulnerability has been reported to affect QTS, QuTS hero and QuTScloud. If exploited, this ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now