2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-43086 | CRITICAL | 9.8 | 1.2% | Feb 28, 2022 | ARM astcenc 3.2.0 is vulnerable to Buffer Overflow. When the compression function of the astc-encoder project with -cl o... |
| CVE-2021-25010 | CRITICAL | 9.6 | 0.6% | Feb 28, 2022 | The Post Snippets WordPress plugin before 3.1.4 does not have CSRF check when importing files, allowing attacker to make... |
| CVE-2021-21708 | CRITICAL | 9.8 | 3.0% | Feb 27, 2022 | In PHP versions 7.4.x below 7.4.28, 8.0.x below 8.0.16, and 8.1.x below 8.1.3, when using filter functions with FILTER_V... |
| CVE-2021-42952 | CRITICAL | 9.9 | 1.7% | Feb 25, 2022 | Zepl Notebooks before 2021-10-25 are affected by a sandbox escape vulnerability. Upon launching Remote Code Execution fr... |
| CVE-2021-40046 | CRITICAL | 9.8 | 0.7% | Feb 25, 2022 | PCManager versions 11.1.1.95 has a privilege escalation vulnerability. Successful exploit could allow the attacker to ac... |
| CVE-2021-26617 | CRITICAL | 9.8 | 1.2% | Feb 25, 2022 | This issues due to insufficient verification of the various input values from user’s input. The vulnerability allows rem... |
| CVE-2021-22480 | CRITICAL | 9.8 | 0.7% | Feb 25, 2022 | The interface of a certain HarmonyOS module has an integer overflow vulnerability. Successful exploitation of this vulne... |
| CVE-2021-22448 | CRITICAL | 9.1 | 0.7% | Feb 25, 2022 | There is an improper verification vulnerability in smartphones. Successful exploitation of this vulnerability may cause ... |
| CVE-2021-22434 | CRITICAL | 9.8 | 0.9% | Feb 25, 2022 | There is a memory address out of bounds vulnerability in smartphones. Successful exploitation of this vulnerability may ... |
| CVE-2021-22433 | CRITICAL | 9.8 | 0.8% | Feb 25, 2022 | There is a memory address out of bounds in smartphones. Successful exploitation of this vulnerability may cause maliciou... |
| CVE-2021-22432 | CRITICAL | 9.8 | 0.9% | Feb 25, 2022 | There is a vulnerability when configuring permission isolation in smartphones. Successful exploitation of this vulnerabi... |
| CVE-2021-22431 | CRITICAL | 9.8 | 0.7% | Feb 25, 2022 | There is a vulnerability when configuring permission isolation in smartphones. Successful exploitation of this vulnerabi... |
| CVE-2021-22430 | CRITICAL | 9.8 | 0.8% | Feb 25, 2022 | There is a logic bypass vulnerability in smartphones. Successful exploitation of this vulnerability may cause code injec... |
| CVE-2021-22429 | CRITICAL | 9.8 | 0.9% | Feb 25, 2022 | There is a memory address out of bounds in smartphones. Successful exploitation of this vulnerability may cause maliciou... |
| CVE-2021-22426 | CRITICAL | 9.8 | 0.8% | Feb 25, 2022 | There is a memory address out of bounds in smartphones. Successful exploitation of this vulnerability may cause maliciou... |
| CVE-2021-22394 | CRITICAL | 9.1 | 0.8% | Feb 25, 2022 | There is a buffer overflow vulnerability in smartphones. Successful exploitation of this vulnerability may cause DoS of ... |
| CVE-2021-45977 | CRITICAL | 9.8 | 1.0% | Feb 25, 2022 | JetBrains IntelliJ IDEA 2021.3.1 Preview, IntelliJ IDEA 2021.3.1 RC, PyCharm Professional 2021.3.1 RC, GoLand 2021.3.1, ... |
| CVE-2021-39363 | CRITICAL | 9.8 | 1.4% | Feb 24, 2022 | Honeywell HDZP252DI 1.00.HW02.4 and HBW2PER1 1.000.HW01.3 devices allow a video replay attack after ARP cache poisoning ... |
| CVE-2021-44663 | CRITICAL | 9.8 | 3.7% | Feb 24, 2022 | A Remote Code Execution (RCE) vulnerability exists in the Xerte Project Xerte through 3.8.4 via a crafted php file throu... |
| CVE-2021-44610 | CRITICAL | 9.8 | 1.4% | Feb 24, 2022 | Multiple SQL Injection vulnerabilities exist in bloofoxCMS 0.5.2.1 - 0.5.1 via the (1) URLs, (2) lang_id, (3) tmpl_id, (... |
| CVE-2021-44567 | CRITICAL | 9.8 | 23.7% | Feb 24, 2022 | An unauthenticated SQL Injection vulnerability exists in RosarioSIS before 7.6.1 via the votes parameter in ProgramFunct... |
| CVE-2021-44550 | CRITICAL | 9.8 | 1.2% | Feb 24, 2022 | An Incorrect Access Control vulnerability exists in CoreNLP 4.3.2 via the classifier in NERServlet.java (lines 158 and 1... |
| CVE-2021-35689 | CRITICAL | 9.8 | 2.0% | Feb 24, 2022 | A potential vulnerability in the Oracle Talent Acquisition Cloud - Taleo Enterprise Edition. This high severity potentia... |
| CVE-2021-4070 | CRITICAL | 9.1 | 0.9% | Feb 23, 2022 | Off-by-one Error in GitHub repository v2fly/v2ray-core prior to 4.44.0. |
| CVE-2021-27797 | CRITICAL | 9.8 | 1.3% | Feb 21, 2022 | Brocade Fabric OS before Brocade Fabric OS v8.2.1c, v8.1.2h, and all versions of Brocade Fabric OS v8.0.x and v7.x conta... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now