2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-22396HIGH7.8There is a privilege escalation vulnerability in some Huawei products. Due to improper privilege management, a local att...
CVE-2021-22392HIGH7.5There is an Incorrect Calculation of Buffer Size in Huawei Smartphone.Successful exploitation of this vulnerability may ...
CVE-2021-22391HIGH7.5There is an Incorrect Calculation of Buffer Size in Huawei Smartphone.Successful exploitation of this vulnerability may ...
CVE-2021-22384HIGH8.1There is an Information Disclosure Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may ...
CVE-2021-22381HIGH7.5There is an Input Verification Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may caus...
CVE-2021-22379HIGH7.5There is an Integer Underflow (Wrap or Wraparound) Vulnerability in Huawei Smartphone.Successful exploitation of this vu...
CVE-2021-29757HIGH8.8IBM QRadar User Behavior Analytics 4.1.1 is vulnerable to cross-site request forgery which could allow an attacker to ex...
CVE-2021-29741HIGH7.8IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a local user to exploit a vulnerability in Korn Shell (ksh) to gain root priv...
CVE-2021-37840HIGH8.8aaPanel through 6.8.12 allows Cross-Site WebSocket Hijacking (CSWH) involving OS commands within WebSocket messages at a...
CVE-2021-37166HIGH7.5A buffer overflow issue leading to denial of service was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus P...
CVE-2021-34575HIGH7.5In MB connect line mymbCONNECT24, mbCONNECT24 in versions <= 2.8.0 an unauthenticated user can enumerate valid users by ...
CVE-2021-33526HIGH7.8In MB connect line mbDIALUP versions <= 3.9R0.0 a low privileged local attacker can send a command to the service runnin...
CVE-2021-24492HIGH8.8The hndtst_action_instance_callback AJAX call of the Handsome Testimonials & Reviews WordPress plugin before 2.1.1, avai...
CVE-2021-24484HIGH7.2The get_reports() function in the Secure Copy Content Protection and Content Locking WordPress plugin before 2.6.7 did n...
CVE-2021-24483HIGH7.2The get_poll_categories(), get_polls() and get_reports() functions in the Poll Maker WordPress plugin before 3.2.1 did n...
CVE-2021-24463HIGH8.8The get_sliders() function in the Image Slider by Ays- Responsive Slider and Carousel WordPress plugin before 2.5.0 did ...
CVE-2021-24462HIGH8.8The get_gallery_categories() and get_galleries() functions in the Photo Gallery by Ays – Responsive Image Gallery WordPr...
CVE-2021-24461HIGH8.8The get_faqs() function in the FAQ Builder AYS WordPress plugin before 1.3.6 did not use whitelist or validate the order...
CVE-2021-24460HIGH8.8The get_fb_likeboxes() function in the Popup Like box – Page Plugin WordPress plugin before 3.5.3 did not use whitelist ...
CVE-2021-24459HIGH8.8The get_results() and get_items() functions in the Survey Maker WordPress plugin before 1.5.6 did not use whitelist or v...
CVE-2021-24458HIGH8.8The get_ays_popupboxes() and get_popup_categories() functions of the Popup box WordPress plugin before 2.3.4 did not use...
CVE-2021-24457HIGH8.8The get_portfolios() and get_portfolio_attributes() functions in the class-portfolio-responsive-gallery-list-table.php a...
CVE-2021-24456HIGH7.2The Quiz Maker WordPress plugin before 6.2.0.9 did not properly sanitise and escape the order and orderby parameters bef...
CVE-2021-24430HIGH7.2The Speed Booster Pack ⚡ PageSpeed Optimization Suite WordPress plugin before 4.2.0 did not validate its caching_exclude...
CVE-2021-32066HIGH7.4An issue was discovered in Ruby through 2.6.7, 2.7.x through 2.7.3, and 3.x through 3.0.1. Net::IMAP does not raise an e...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now