2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2021-23682CRITICAL9.8This affects the package litespeed.js before 0.3.12; the package appwrite/server-ce from 0.12.0 and before 0.12.2, befor...
CVE-2021-46250CRITICAL10An issue in SOA2Login::commented of ScratchOAuth2 before commit a91879bd58fa83b09283c0708a1864cdf067c64a allows attacker...
CVE-2021-46321CRITICAL9.8Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the wifiBasicCfg modul...
CVE-2021-46265CRITICAL9.8Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the wanBasicCfg module...
CVE-2021-46264CRITICAL9.8Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the onlineList module....
CVE-2021-46263CRITICAL9.8Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the wifiTime module. T...
CVE-2021-46262CRITICAL9.8Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the PPPoE module. This...
CVE-2021-37354CRITICAL9.8Xerox Phaser 4622 v35.013.01.000 was discovered to contain a buffer overflow in the function sub_3226AC via the TIMEZONE...
CVE-2021-33945CRITICAL9.8RICOH Printer series SP products 320DN, SP 325DNw, SP 320SN, SP 320SFN, SP 325SNw, SP 325SFNw, SP 330SN, Aficio SP 3500S...
CVE-2021-43049CRITICAL9.8The Database component of TIBCO Software Inc.'s TIBCO BusinessConnect Container Edition contains an easily exploitable v...
CVE-2021-4201CRITICAL9.8Missing access control in ForgeRock Access Management 7.1.0 and earlier versions on all platforms allows remote unauthen...
CVE-2021-46463CRITICAL9.8njs through 0.7.1, used in NGINX, was discovered to contain a control flow hijack caused by a Type Confusion vulnerabili...
CVE-2021-46461CRITICAL9.8njs through 0.7.0, used in NGINX, was discovered to contain an out-of-bounds array access via njs_vmcode_typeof in /src/...
CVE-2021-45005CRITICAL9.8Artifex MuJS v1.1.3 was discovered to contain a heap buffer overflow which is caused by conflicting JumpList of nested t...
CVE-2021-45420CRITICAL9.8Emerson Dixell XWEB-500 products are affected by arbitrary file write vulnerability in /cgi-bin/logo_extra_upload.cgi, /...
CVE-2021-46362CRITICAL9.8A Server-Side Template Injection (SSTI) vulnerability in the Registration and Forgotten Password forms of Magnolia v6.2....
CVE-2021-46361CRITICAL9.8An issue in the Freemark Filter of Magnolia CMS v6.2.11 and below allows attackers to bypass security restrictions and e...
CVE-2021-23555CRITICAL9.8The package vm2 before 3.9.6 are vulnerable to Sandbox Bypass via direct access to host error objects generated by node ...
CVE-2021-20001CRITICAL9.8It was discovered, that debian-edu-config, a set of configuration files used for the Debian Edu blend, before 2.12.16 co...
CVE-2021-39675CRITICAL9.8In GKI_getbuf of gki_buffer.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead t...
CVE-2021-39658CRITICAL9.8ismsEx service is a vendor service in unisoc equipment。ismsEx service is an extension of sms system service,but it does ...
CVE-2021-39635CRITICAL9.1ims_ex is a vendor system service used to manage VoLTE in unisoc devices,But it does not verify the caller's permissions...
CVE-2021-39616CRITICAL9.8Summary:Product: AndroidVersions: Android SoCAndroid ID: A-204686438
CVE-2021-34235CRITICAL9.8Tokheim Profleet DiaLOG 11.005.02 is affected by SQL Injection. The component is the Field__UserLogin parameter on the l...
CVE-2021-31932CRITICAL9.8Nokia BTS TRS web console FTM_W20_FP2_2019.08.16_0010 allows Authentication Bypass. A malicious unauthenticated user can...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now