2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-44096CRITICAL9.8EGavilan Media User-Registration-and-Login-System-With-Admin-Panel 1.0 is vulnerable to SQL Injection via profile_action...
CVE-2021-44095CRITICAL9.8A SQL injection vulnerability exists in ProjectWorlds Hospital Management System in php 1.0 on login page that allows a ...
CVE-2021-44080HIGH7.2A Command Injection vulnerability in httpd web server (setup.cgi) in SerComm h500s, FW: lowi-h500s-v3.4.22 allows logged...
CVE-2021-43512MEDIUM5.5An issue was discovered in FlightRadar24 v8.9.0, v8.10.0, v8.10.2, v8.10.3, v8.10.4 for Android, allows attackers to cau...
CVE-2021-43308HIGH7.5An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the markdown-link-extractor npm package,...
CVE-2021-43307HIGH7.5An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the semver-regex npm package, when an at...
CVE-2021-43306HIGH7.5An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the jquery-validation npm package, when ...
CVE-2021-42872CRITICAL9.8TOTOLINK EX1200T V4.1.2cu.5215 is affected by a command injection vulnerability that can remotely execute arbitrary code...
CVE-2021-42204HIGH7.8An issue was discovered in swftools through 20201222. A heap-buffer-overflow exists in the function swf_GetBits() locate...
CVE-2021-42203HIGH7.8An issue was discovered in swftools through 20201222. A heap-use-after-free exists in the function swf_FontExtract_Defin...
CVE-2021-42202MEDIUM5.5An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function swf_DeleteFilter...
CVE-2021-42201HIGH7.8An issue was discovered in swftools through 20201222. A heap-buffer-overflow exists in the function swf_GetD64() located...
CVE-2021-42200MEDIUM5.5An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function main() located i...
CVE-2021-42199HIGH7.8An issue was discovered in swftools through 20201222. A heap buffer overflow exists in the function swf_FontExtract_Defi...
CVE-2021-42198MEDIUM5.5An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function swf_GetBits() lo...
CVE-2021-42197HIGH7.8An issue was discovered in swftools through 20201222 through a memory leak in the swftools when swfdump is used. It allo...
CVE-2021-42196MEDIUM5.5An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function traits_parse() l...
CVE-2021-42195HIGH7.8An issue was discovered in swftools through 20201222. A heap-buffer-overflow exists in the function handleEditText() loc...
CVE-2021-40186HIGH7.5The AppCheck research team identified a Server-Side Request Forgery (SSRF) vulnerability within the DNN CMS platform, fo...
CVE-2021-3676Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2021-36890MEDIUM4.3Cross-Site Request Forgery (CSRF) vulnerability in Social Share Buttons by Supsystic plugin <= 2.2.2 at WordPress.
CVE-2021-36866MEDIUM4.8Authenticated (author or higher role) Stored Cross-Site Scripting (XSS) vulnerability in Fatcat Apps Easy Pricing Tables...
CVE-2021-34084CRITICAL9.8OS command injection vulnerability in Turistforeningen node-s3-uploader through 2.0.3 for Node.js allows attackers to ex...
CVE-2021-34083HIGH8.1Google-it is a Node.js package which allows its users to send search queries to Google and receive the results in a JSON...
CVE-2021-34082CRITICAL9.8OS Command Injection vulnerability in allenhwkim proctree through 0.1.1 and commit 0ac10ae575459457838f14e21d5996f2fa5c7...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now