2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-46954HIGH7.1In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_frag: fix stack OOB read while fragm...
CVE-2021-46952HIGH7.1In the Linux kernel, the following vulnerability has been resolved: NFS: fs_context: validate UDP retrans to prevent sh...
CVE-2021-46950HIGH7.8In the Linux kernel, the following vulnerability has been resolved: md/raid1: properly indicate failure when ending a f...
CVE-2021-46943HIGH7.8In the Linux kernel, the following vulnerability has been resolved: media: staging/intel-ipu3: Fix set_fmt error handli...
CVE-2021-46938HIGH7.8In the Linux kernel, the following vulnerability has been resolved: dm rq: fix double free of blk_mq_tag_set in dev rem...
CVE-2021-46936HIGH7.8In the Linux kernel, the following vulnerability has been resolved: net: fix use-after-free in tw_timer_handler A real...
CVE-2021-33162HIGH8.4Improper access control in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware ...
CVE-2021-33161HIGH7.2Improper input validation in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmwar...
CVE-2021-33158HIGH7.2Improper neutralization in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware ...
CVE-2021-33157HIGH7.2Insufficient control flow management in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageabil...
CVE-2021-33145HIGH7.2Uncaught exception in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware may a...
CVE-2021-33141HIGH8.6Improper input validation in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmwar...
CVE-2021-29050HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability in the terms of use page in Liferay Portal before 7.3.6, and Liferay DXP...
CVE-2021-46757HIGH7.8Insufficient checking of memory buffer in ASP Secure OS may allow an attacker with a malicious TA to read/write to the A...
CVE-2021-46902HIGH7.2An issue was discovered in LTOS-Web-Interface in Meinberg LANTIME-Firmware before 6.24.029 MBGID-9343 and 7 before 7.04....
CVE-2021-4435HIGH7.8An untrusted search path vulnerability was found in Yarn. When a victim runs certain Yarn commands in a directory with a...
CVE-2021-22281HIGH7.5: Relative Path Traversal vulnerability in B&R Industrial Automation Automation Studio allows Relative Path Traversal.Th...
CVE-2021-22282HIGH7.8Improper Control of Generation of Code ('Code Injection') vulnerability in B&R Industrial Automation Automation Studio a...
CVE-2021-42146HIGH7.5An issue was discovered in Contiki-NG tinyDTLS through master branch 53a0d97. DTLS servers allow remote attackers to reu...
CVE-2021-42145HIGH7.5An assertion failure discovered in in check_certificate_request() in Contiki-NG tinyDTLS through master branch 53a0d97 a...
CVE-2021-33631HIGH7.8Integer Overflow or Wraparound vulnerability in openEuler kernel on Linux (filesystem modules) allows Forced Integer Ove...
CVE-2021-4433HIGH7.5A vulnerability was found in Karjasoft Sami HTTP Server 2.0. It has been classified as problematic. Affected is an unkno...
CVE-2021-24869HIGH8.8The WP Fastest Cache WordPress plugin before 0.9.5 does not escape user input in the set_urls_with_terms method before u...
CVE-2021-24566HIGH8.8The WooCommerce Currency Switcher FOX WordPress plugin before 1.3.7 was vulnerable to LFI attacks via the "woocs" shortc...
CVE-2021-24151HIGH7.2The WP Editor WordPress plugin before 1.2.7 did not sanitise or validate its setting fields leading to an authenticated ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now