2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-24397 | HIGH | 7.2 | 1.5% | Sep 20, 2021 | The edit functionality in the MicroCopy WordPress plugin through 1.1.0 makes a get request to fetch the related option. ... |
| CVE-2021-24396 | HIGH | 7.2 | 1.5% | Sep 20, 2021 | A pageid GET parameter of the GSEOR – WordPress SEO Plugin WordPress plugin through 1.3 is not sanitised, escaped or val... |
| CVE-2021-38300 | HIGH | 7.8 | 0.6% | Sep 20, 2021 | arch/mips/net/bpf_jit.c in the Linux kernel before 5.4.10 can generate undesirable machine code when transforming unpriv... |
| CVE-2021-40690 | HIGH | 7.5 | 10.4% | Sep 19, 2021 | All versions of Apache Santuario - XML Security for Java prior to 2.2.3 and 2.1.7 are vulnerable to an issue where the "... |
| CVE-2021-41073 | HIGH | 7.8 | 1.7% | Sep 19, 2021 | loop_rw_iter in fs/io_uring.c in the Linux kernel 5.10 through 5.14.6 allows local users to gain privileges by using IOR... |
| CVE-2021-41390 | HIGH | 8 | 1.1% | Sep 17, 2021 | In Ericsson ECM before 18.0, it was observed that Security Provider Endpoint in the User Profile Management Section is v... |
| CVE-2021-41387 | HIGH | 8.8 | 1.0% | Sep 17, 2021 | seatd-launch in seatd 0.6.x before 0.6.2 allows privilege escalation because it uses execlp and may be installed setuid ... |
| CVE-2021-41383 | HIGH | 7.2 | 1.6% | Sep 17, 2021 | setup.cgi on NETGEAR R6020 1.0.0.48 devices allows an admin to execute arbitrary shell commands via shell metacharacters... |
| CVE-2021-38406 | HIGH | 7.8 | 77.9% | Sep 17, 2021 | Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specif... |
| CVE-2021-38404 | HIGH | 7.8 | 1.0% | Sep 17, 2021 | Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specif... |
| CVE-2021-38402 | HIGH | 7.8 | 7.7% | Sep 17, 2021 | Delta Electronic DOPSoft 2 (Version 2.00.07 and prior) lacks proper validation of user-supplied data when parsing specif... |
| CVE-2021-40825 | HIGH | 8.6 | 1.1% | Sep 17, 2021 | nLight ECLYPSE (nECY) system Controllers running software prior to 1.17.21245.754 contain a default key vulnerability. T... |
| CVE-2021-38304 | HIGH | 7.8 | 0.4% | Sep 17, 2021 | Improper input validation in the National Instruments NI-PAL driver in versions 20.0.0 and prior may allow a privileged ... |
| CVE-2021-41316 | HIGH | 8.1 | 1.4% | Sep 17, 2021 | The Device42 Main Appliance before 17.05.01 does not sanitize user input in its Nmap Discovery utility. An attacker (wit... |
| CVE-2021-41315 | HIGH | 8.8 | 1.2% | Sep 17, 2021 | The Device42 Remote Collector before 17.05.01 does not sanitize user input in its SNMP Connectivity utility. This allows... |
| CVE-2021-31845 | HIGH | 7.3 | 1.1% | Sep 17, 2021 | A buffer overflow vulnerability in McAfee Data Loss Prevention (DLP) Discover prior to 11.6.100 allows an attacker in th... |
| CVE-2021-31844 | HIGH | 7.3 | 0.4% | Sep 17, 2021 | A buffer overflow vulnerability in McAfee Data Loss Prevention (DLP) Endpoint for Windows prior to 11.6.200 allows a loc... |
| CVE-2021-31843 | HIGH | 7.8 | 0.3% | Sep 17, 2021 | Improper privileges management vulnerability in McAfee Endpoint Security (ENS) Windows prior to 10.7.0 September 2021 Up... |
| CVE-2021-3810 | HIGH | 7.5 | 1.2% | Sep 17, 2021 | code-server is vulnerable to Inefficient Regular Expression Complexity |
| CVE-2021-3807 | HIGH | 7.5 | 3.3% | Sep 17, 2021 | ansi-regex is vulnerable to Inefficient Regular Expression Complexity |
| CVE-2021-3804 | HIGH | 7.5 | 1.2% | Sep 17, 2021 | taro is vulnerable to Inefficient Regular Expression Complexity |
| CVE-2021-3803 | HIGH | 7.5 | 2.0% | Sep 17, 2021 | nth-check is vulnerable to Inefficient Regular Expression Complexity |
| CVE-2021-30261 | HIGH | 7.8 | 0.2% | Sep 17, 2021 | Possible integer and heap overflow due to lack of input command size validation while handling beacon template update co... |
| CVE-2021-30260 | HIGH | 7.8 | 0.1% | Sep 17, 2021 | Possible Integer overflow to buffer overflow issue can occur due to improper validation of input parameters when extscan... |
| CVE-2021-1947 | HIGH | 7.8 | 0.2% | Sep 17, 2021 | Use-after-free vulnerability in kernel graphics driver because of storing an invalid pointer in Snapdragon Compute, Snap... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now