2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-3608 | MEDIUM | 6 | 0.4% | Feb 24, 2022 | A flaw was found in the QEMU implementation of VMWare's paravirtual RDMA device in versions prior to 6.1.0. The issue oc... |
| CVE-2021-3607 | MEDIUM | 6 | 0.3% | Feb 24, 2022 | An integer overflow was found in the QEMU implementation of VMWare's paravirtual RDMA device in versions prior to 6.1.0.... |
| CVE-2021-3596 | MEDIUM | 6.5 | 1.9% | Feb 24, 2022 | A NULL pointer dereference flaw was found in ImageMagick in versions prior to 7.0.10-31 in ReadSVGImage() in coders/svg.... |
| CVE-2021-26252 | HIGH | 7.8 | 0.9% | Feb 24, 2022 | A flaw was found in htmldoc in v1.9.12. Heap buffer overflow in pspdf_prepare_page(),in ps-pdf.cxx may lead to execute a... |
| CVE-2021-39038 | MEDIUM | 5.4 | 0.7% | Feb 24, 2022 | IBM WebSphere Application Server 9.0 and IBM WebSphere Application Server Liberty 17.0.0.3 through 22.0.0.2 could allow ... |
| CVE-2021-38995 | MEDIUM | 5.5 | 0.2% | Feb 24, 2022 | IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel... |
| CVE-2021-38994 | MEDIUM | 5.5 | 0.2% | Feb 24, 2022 | IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel... |
| CVE-2021-4030 | HIGH | 8.8 | 0.4% | Feb 24, 2022 | A cross-site request forgery vulnerability in the HTTP daemon of the Zyxel ARMOR Z1/Z2 firmware could allow an attacker ... |
| CVE-2021-4029 | HIGH | 8.8 | 0.8% | Feb 24, 2022 | A command injection vulnerability in the CGI program of the Zyxel ARMOR Z1/Z2 firmware could allow an attacker to execut... |
| CVE-2021-45746 | HIGH | 7.5 | 1.5% | Feb 24, 2022 | A Directory Traversal vulnerability exists in WeBankPartners wecube-platform 3.2.1 via the file variable in PluginPackag... |
| CVE-2021-44967 | HIGH | 8.8 | 12.7% | Feb 24, 2022 | A Remote Code Execution (RCE) vulnerabilty exists in LimeSurvey 5.2.4 via the upload and install plugins function, which... |
| CVE-2021-44610 | CRITICAL | 9.8 | 1.4% | Feb 24, 2022 | Multiple SQL Injection vulnerabilities exist in bloofoxCMS 0.5.2.1 - 0.5.1 via the (1) URLs, (2) lang_id, (3) tmpl_id, (... |
| CVE-2021-44608 | MEDIUM | 5.4 | 0.5% | Feb 24, 2022 | Multiple Cross Site Scripting (XSS) vulnerabilities exists in bloofoxCMS 0.5.2.1 - 0.5.1 via the (1) file parameter and ... |
| CVE-2021-44607 | MEDIUM | 5.4 | 0.5% | Feb 24, 2022 | A Cross Site Scripting (XSS) vulnerability exists in FUEL-CMS 1.5.1 in the Assets page via an SVG file. |
| CVE-2021-44567 | CRITICAL | 9.8 | 23.7% | Feb 24, 2022 | An unauthenticated SQL Injection vulnerability exists in RosarioSIS before 7.6.1 via the votes parameter in ProgramFunct... |
| CVE-2021-44566 | MEDIUM | 5.4 | 0.7% | Feb 24, 2022 | A Cross Site Scripting (XSS) vulnerability exists in RosarioSIS before 4.3 via the SanitizeMarkDown function in ProgramF... |
| CVE-2021-44565 | MEDIUM | 5.4 | 0.7% | Feb 24, 2022 | A Cross Site Scripting (XSS) vulnerability exists in RosarioSIS before 7.6.1 via the xss_clean function in classes/Secur... |
| CVE-2021-44550 | CRITICAL | 9.8 | 1.2% | Feb 24, 2022 | An Incorrect Access Control vulnerability exists in CoreNLP 4.3.2 via the classifier in NERServlet.java (lines 158 and 1... |
| CVE-2021-43724 | MEDIUM | 4.8 | 0.5% | Feb 24, 2022 | A Cross Site Scripting (XSS) vulnerability exits in Subrion CMS through 4.2.1 in the Create Page functionality of the ad... |
| CVE-2021-3940 | — | — | — | Feb 24, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2021-3937 | — | — | — | Feb 24, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2021-3893 | — | — | — | Feb 24, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2021-3887 | — | — | — | Feb 24, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2021-3886 | — | — | — | Feb 24, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2021-3884 | — | — | — | Feb 24, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now