2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-46478MEDIUM5.5Jsish v3.5.0 was discovered to contain a heap buffer overflow via jsiClearStack in src/jsiEval.c. This vulnerability can...
CVE-2021-46477MEDIUM5.5Jsish v3.5.0 was discovered to contain a heap buffer overflow via RegExp_constructor in src/jsiRegexp.c. This vulnerabil...
CVE-2021-46475MEDIUM5.5Jsish v3.5.0 was discovered to contain a heap buffer overflow via jsi_ArraySliceCmd in src/jsiArray.c. This vulnerabilit...
CVE-2021-46474MEDIUM5.5Jsish v3.5.0 was discovered to contain a heap buffer overflow via jsiEvalCodeSub in src/jsiEval.c. This vulnerability ca...
CVE-2021-44994MEDIUM5.5There is an Assertion ''JERRY_CONTEXT (jmem_heap_allocated_size) == 0'' failed at /jerry-core/jmem/jmem-heap.c in Jerrys...
CVE-2021-44993MEDIUM5.5There is an Assertion ''ecma_is_value_boolean (base_value)'' failed at /jerry-core/ecma/operations/ecma-get-put-value.c ...
CVE-2021-44992MEDIUM5.5There is an Assertion ''ecma_object_is_typedarray (obj_p)'' failed at /jerry-core/ecma/operations/ecma-typedarray-object...
CVE-2021-44988HIGH7.8Jerryscript v3.0.0 and below was discovered to contain a stack overflow via ecma_find_named_property in ecma-helpers.c.
CVE-2021-43394CRITICAL9.8Unisys OS 2200 Messaging Integration Services (NTSI) 7R3B IC3 and IC4, 7R3C, and 7R3D has an Incorrect Implementation of...
CVE-2021-46451CRITICAL9.8An SQL Injection vulnerabilty exists in Sourcecodester Online Project Time Management System 1.0 via the pid parameter i...
CVE-2021-45226MEDIUM6.5An issue was discovered in COINS Construction Cloud 11.12. Due to improper validation of user-controlled HTTP headers, a...
CVE-2021-45225MEDIUM6.1An issue was discovered in COINS Construction Cloud 11.12. Due to improper input neutralization, it is vulnerable to ref...
CVE-2021-45224MEDIUM6.1An issue was discovered in COINS Construction Cloud 11.12. In several locations throughout the application, JavaScript c...
CVE-2021-45223MEDIUM6.5An issue was discovered in COINS Construction Cloud 11.12. Due to insufficient input neutralization, it is vulnerable to...
CVE-2021-45222HIGH8.8An issue was discovered in COINS Construction Cloud 11.12. Due to logical flaws in the human ressources interface, it is...
CVE-2021-43589MEDIUM6.7Dell EMC Unity, Dell EMC UnityVSA and Dell EMC Unity XT versions prior to 5.1.2.0.5.007 contain an operating system (OS)...
CVE-2021-43588HIGH7.5Dell EMC Data Protection Central version 19.5 contains an Improper Input Validation Vulnerability. A remote unauthentica...
CVE-2021-36349MEDIUM4.3Dell EMC Data Protection Central versions 19.5 and prior contain a Server Side Request Forgery vulnerability in the DPC ...
CVE-2021-36343MEDIUM6.4Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially expl...
CVE-2021-36342MEDIUM6.4Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially expl...
CVE-2021-43420CRITICAL9.8SQL injection vulnerability in Login.php in Sourcecodester Online Payment Hub v1 by oretnom23, allows attackers to execu...
CVE-2021-42168MEDIUM6.1Cross Site Scripting (XSS) in Sourcecodester Try My Recipe (Recipe Sharing Website - CMS) by oretnom23, allows attackers...
CVE-2021-41930MEDIUM6.1Cross site scripting (XSS) vulnerability in Sourcecodester Online Covid Vaccination Scheduler System v1 by oretnom23, al...
CVE-2021-41928CRITICAL9.8SQL injection in Sourcecodester Try My Recipe (Recipe Sharing Website - CMS) 1.0 by oretnom23, allows attackers to execu...
CVE-2021-41929MEDIUM6.1Cross Site Scripting (XSS) in Sourcecodester The Electric Billing Management System 1.0 by oretnom23, allows attackers t...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now