2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22807 | HIGH | 7.8 | 0.8% | Jan 28, 2022 | A CWE-787: Out-of-bounds Write vulnerability exists that could cause arbitrary code execution when a malicious *.gd1 con... |
| CVE-2021-22799 | LOW | 3.8 | 0.2% | Jan 28, 2022 | A CWE-331: Insufficient Entropy vulnerability exists that could cause unintended connection from an internal network to ... |
| CVE-2021-22725 | HIGH | 8.8 | 0.5% | Jan 28, 2022 | A CVE-352 Cross-Site Request Forgery (CSRF) vulnerability exists that could allow an attacker to impersonate the user or... |
| CVE-2021-22724 | HIGH | 8.8 | 0.5% | Jan 28, 2022 | A CVE-352 Cross-Site Request Forgery (CSRF) vulnerability exists that could allow an attacker to impersonate the user or... |
| CVE-2021-44971 | CRITICAL | 9.8 | 2.6% | Jan 28, 2022 | Multiple Tenda devices are affected by authentication bypass, such as AC15V1.0 Firmware V15.03.05.20_multi?AC5V1.0 Firmw... |
| CVE-2021-41609 | CRITICAL | 9.8 | 2.1% | Jan 28, 2022 | SQL injection in the ID parameter of the UploadedImageDisplay.aspx endpoint of SelectSurvey.NET before 5.052.000 allows ... |
| CVE-2021-41608 | HIGH | 7.5 | 2.0% | Jan 28, 2022 | A file disclosure vulnerability in the UploadedImageDisplay.aspx endpoint of SelectSurvey.NET before 5.052.000 allows a ... |
| CVE-2021-40395 | — | — | — | Jan 28, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2021-45899 | CRITICAL | 9.8 | 2.2% | Jan 28, 2022 | SuiteCRM before 7.12.3 and 8.x before 8.0.2 allows PHAR deserialization that can lead to remote code execution. |
| CVE-2021-45898 | CRITICAL | 9.8 | 1.1% | Jan 28, 2022 | SuiteCRM before 7.12.3 and 8.x before 8.0.2 allows local file inclusion. |
| CVE-2021-45897 | HIGH | 8.8 | 4.6% | Jan 28, 2022 | SuiteCRM before 7.12.3 and 8.x before 8.0.2 allows remote code execution. |
| CVE-2021-34073 | MEDIUM | 5.4 | 0.6% | Jan 28, 2022 | A Cross Site Scripting (XSS) vulnerabilty exists in Sourcecodester Gadget Works Online Ordering System in PHP/MySQLi 1.0... |
| CVE-2021-45435 | CRITICAL | 9.8 | 1.1% | Jan 28, 2022 | An SQL Injection vulnerability exists in Sourcecodester Simple Cold Storage Management System using PHP/OOP 1.0 via the ... |
| CVE-2021-44249 | CRITICAL | 9.8 | 1.8% | Jan 28, 2022 | Online Motorcycle (Bike) Rental System 1.0 is vulnerable to a Blind Time-Based SQL Injection attack within the login por... |
| CVE-2021-42791 | HIGH | 7.3 | 0.6% | Jan 28, 2022 | An issue was discovered in VeridiumID VeridiumAD 2.5.3.0. The HTTP request to trigger push notifications for VeridiumAD ... |
| CVE-2021-46556 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via mjs_bcode_insert_offset at src/mjs_bcode.c. This ... |
| CVE-2021-46554 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via mjs_json_stringify at src/mjs_json.c. This vulner... |
| CVE-2021-46553 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via mjs_set_internal at src/mjs_object.c. This vulner... |
| CVE-2021-46550 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via free_json_frame at src/mjs_json.c. This vulnerabi... |
| CVE-2021-46549 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via parse_cval_type at src/mjs_ffi.c. This vulnerabil... |
| CVE-2021-46548 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via add_lineno_map_item at src/mjs_bcode.c. This vuln... |
| CVE-2021-46547 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via /usr/local/bin/mjs+0x2c17e. This vulnerability ca... |
| CVE-2021-46546 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via mjs_next at src/mjs_object.c. This vulnerability ... |
| CVE-2021-46545 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via /lib/x86_64-linux-gnu/libc.so.6+0x4b44b. This vul... |
| CVE-2021-46544 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a SEGV vulnerability via /usr/lib/x86_64-linux-gnu/libasan.so.4+0x59e19. T... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now