2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-46954 | HIGH | 7.1 | 0.2% | Feb 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_frag: fix stack OOB read while fragm... |
| CVE-2021-46952 | HIGH | 7.1 | 0.3% | Feb 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: NFS: fs_context: validate UDP retrans to prevent sh... |
| CVE-2021-46950 | HIGH | 7.8 | 0.2% | Feb 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: md/raid1: properly indicate failure when ending a f... |
| CVE-2021-46943 | HIGH | 7.8 | 0.2% | Feb 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: media: staging/intel-ipu3: Fix set_fmt error handli... |
| CVE-2021-46938 | HIGH | 7.8 | 0.2% | Feb 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: dm rq: fix double free of blk_mq_tag_set in dev rem... |
| CVE-2021-46936 | HIGH | 7.8 | 0.2% | Feb 27, 2024 | In the Linux kernel, the following vulnerability has been resolved: net: fix use-after-free in tw_timer_handler A real... |
| CVE-2021-33162 | HIGH | 8.4 | 0.2% | Feb 23, 2024 | Improper access control in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware ... |
| CVE-2021-33161 | HIGH | 7.2 | 0.2% | Feb 23, 2024 | Improper input validation in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmwar... |
| CVE-2021-33158 | HIGH | 7.2 | 0.2% | Feb 23, 2024 | Improper neutralization in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware ... |
| CVE-2021-33157 | HIGH | 7.2 | 0.2% | Feb 23, 2024 | Insufficient control flow management in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageabil... |
| CVE-2021-33145 | HIGH | 7.2 | 0.2% | Feb 23, 2024 | Uncaught exception in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmware may a... |
| CVE-2021-33141 | HIGH | 8.6 | 0.8% | Feb 23, 2024 | Improper input validation in some Intel(R) Ethernet Adapters and Intel(R) Ethernet Controller I225 Manageability firmwar... |
| CVE-2021-29050 | HIGH | 8.8 | 0.3% | Feb 20, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in the terms of use page in Liferay Portal before 7.3.6, and Liferay DXP... |
| CVE-2021-46757 | HIGH | 7.8 | 0.2% | Feb 13, 2024 | Insufficient checking of memory buffer in ASP Secure OS may allow an attacker with a malicious TA to read/write to the A... |
| CVE-2021-46902 | HIGH | 7.2 | 0.7% | Feb 4, 2024 | An issue was discovered in LTOS-Web-Interface in Meinberg LANTIME-Firmware before 6.24.029 MBGID-9343 and 7 before 7.04.... |
| CVE-2021-4435 | HIGH | 7.8 | 0.3% | Feb 4, 2024 | An untrusted search path vulnerability was found in Yarn. When a victim runs certain Yarn commands in a directory with a... |
| CVE-2021-22281 | HIGH | 7.5 | 0.4% | Feb 2, 2024 | : Relative Path Traversal vulnerability in B&R Industrial Automation Automation Studio allows Relative Path Traversal.Th... |
| CVE-2021-22282 | HIGH | 7.8 | 0.4% | Feb 2, 2024 | Improper Control of Generation of Code ('Code Injection') vulnerability in B&R Industrial Automation Automation Studio a... |
| CVE-2021-42146 | HIGH | 7.5 | 0.7% | Jan 24, 2024 | An issue was discovered in Contiki-NG tinyDTLS through master branch 53a0d97. DTLS servers allow remote attackers to reu... |
| CVE-2021-42145 | HIGH | 7.5 | 0.4% | Jan 24, 2024 | An assertion failure discovered in in check_certificate_request() in Contiki-NG tinyDTLS through master branch 53a0d97 a... |
| CVE-2021-33631 | HIGH | 7.8 | 0.4% | Jan 18, 2024 | Integer Overflow or Wraparound vulnerability in openEuler kernel on Linux (filesystem modules) allows Forced Integer Ove... |
| CVE-2021-4433 | HIGH | 7.5 | 1.3% | Jan 18, 2024 | A vulnerability was found in Karjasoft Sami HTTP Server 2.0. It has been classified as problematic. Affected is an unkno... |
| CVE-2021-24869 | HIGH | 8.8 | 1.2% | Jan 16, 2024 | The WP Fastest Cache WordPress plugin before 0.9.5 does not escape user input in the set_urls_with_terms method before u... |
| CVE-2021-24566 | HIGH | 8.8 | 1.3% | Jan 16, 2024 | The WooCommerce Currency Switcher FOX WordPress plugin before 1.3.7 was vulnerable to LFI attacks via the "woocs" shortc... |
| CVE-2021-24151 | HIGH | 7.2 | 0.8% | Jan 16, 2024 | The WP Editor WordPress plugin before 1.2.7 did not sanitise or validate its setting fields leading to an authenticated ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now