2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22396 | HIGH | 7.8 | 0.1% | Aug 2, 2021 | There is a privilege escalation vulnerability in some Huawei products. Due to improper privilege management, a local att... |
| CVE-2021-22392 | HIGH | 7.5 | 0.6% | Aug 2, 2021 | There is an Incorrect Calculation of Buffer Size in Huawei Smartphone.Successful exploitation of this vulnerability may ... |
| CVE-2021-22391 | HIGH | 7.5 | 0.7% | Aug 2, 2021 | There is an Incorrect Calculation of Buffer Size in Huawei Smartphone.Successful exploitation of this vulnerability may ... |
| CVE-2021-22384 | HIGH | 8.1 | 0.6% | Aug 2, 2021 | There is an Information Disclosure Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may ... |
| CVE-2021-22381 | HIGH | 7.5 | 0.7% | Aug 2, 2021 | There is an Input Verification Vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may caus... |
| CVE-2021-22379 | HIGH | 7.5 | 0.7% | Aug 2, 2021 | There is an Integer Underflow (Wrap or Wraparound) Vulnerability in Huawei Smartphone.Successful exploitation of this vu... |
| CVE-2021-29757 | HIGH | 8.8 | 0.4% | Aug 2, 2021 | IBM QRadar User Behavior Analytics 4.1.1 is vulnerable to cross-site request forgery which could allow an attacker to ex... |
| CVE-2021-29741 | HIGH | 7.8 | 0.3% | Aug 2, 2021 | IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a local user to exploit a vulnerability in Korn Shell (ksh) to gain root priv... |
| CVE-2021-37840 | HIGH | 8.8 | 1.7% | Aug 2, 2021 | aaPanel through 6.8.12 allows Cross-Site WebSocket Hijacking (CSWH) involving OS commands within WebSocket messages at a... |
| CVE-2021-37166 | HIGH | 7.5 | 1.8% | Aug 2, 2021 | A buffer overflow issue leading to denial of service was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus P... |
| CVE-2021-34575 | HIGH | 7.5 | 1.0% | Aug 2, 2021 | In MB connect line mymbCONNECT24, mbCONNECT24 in versions <= 2.8.0 an unauthenticated user can enumerate valid users by ... |
| CVE-2021-33526 | HIGH | 7.8 | 0.3% | Aug 2, 2021 | In MB connect line mbDIALUP versions <= 3.9R0.0 a low privileged local attacker can send a command to the service runnin... |
| CVE-2021-24492 | HIGH | 8.8 | 1.6% | Aug 2, 2021 | The hndtst_action_instance_callback AJAX call of the Handsome Testimonials & Reviews WordPress plugin before 2.1.1, avai... |
| CVE-2021-24484 | HIGH | 7.2 | 1.3% | Aug 2, 2021 | The get_reports() function in the Secure Copy Content Protection and Content Locking WordPress plugin before 2.6.7 did n... |
| CVE-2021-24483 | HIGH | 7.2 | 1.4% | Aug 2, 2021 | The get_poll_categories(), get_polls() and get_reports() functions in the Poll Maker WordPress plugin before 3.2.1 did n... |
| CVE-2021-24463 | HIGH | 8.8 | 1.4% | Aug 2, 2021 | The get_sliders() function in the Image Slider by Ays- Responsive Slider and Carousel WordPress plugin before 2.5.0 did ... |
| CVE-2021-24462 | HIGH | 8.8 | 1.4% | Aug 2, 2021 | The get_gallery_categories() and get_galleries() functions in the Photo Gallery by Ays – Responsive Image Gallery WordPr... |
| CVE-2021-24461 | HIGH | 8.8 | 1.4% | Aug 2, 2021 | The get_faqs() function in the FAQ Builder AYS WordPress plugin before 1.3.6 did not use whitelist or validate the order... |
| CVE-2021-24460 | HIGH | 8.8 | 1.4% | Aug 2, 2021 | The get_fb_likeboxes() function in the Popup Like box – Page Plugin WordPress plugin before 3.5.3 did not use whitelist ... |
| CVE-2021-24459 | HIGH | 8.8 | 1.4% | Aug 2, 2021 | The get_results() and get_items() functions in the Survey Maker WordPress plugin before 1.5.6 did not use whitelist or v... |
| CVE-2021-24458 | HIGH | 8.8 | 1.4% | Aug 2, 2021 | The get_ays_popupboxes() and get_popup_categories() functions of the Popup box WordPress plugin before 2.3.4 did not use... |
| CVE-2021-24457 | HIGH | 8.8 | 1.4% | Aug 2, 2021 | The get_portfolios() and get_portfolio_attributes() functions in the class-portfolio-responsive-gallery-list-table.php a... |
| CVE-2021-24456 | HIGH | 7.2 | 1.3% | Aug 2, 2021 | The Quiz Maker WordPress plugin before 6.2.0.9 did not properly sanitise and escape the order and orderby parameters bef... |
| CVE-2021-24430 | HIGH | 7.2 | 1.7% | Aug 2, 2021 | The Speed Booster Pack ⚡ PageSpeed Optimization Suite WordPress plugin before 4.2.0 did not validate its caching_exclude... |
| CVE-2021-32066 | HIGH | 7.4 | 2.9% | Aug 1, 2021 | An issue was discovered in Ruby through 2.6.7, 2.7.x through 2.7.3, and 3.x through 3.0.1. Net::IMAP does not raise an e... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now