2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-36125HIGH7.5An issue was discovered in the CentralAuth extension in MediaWiki through 1.36. The Special:GlobalRenameRequest page is ...
CVE-2021-35197HIGH7.5In MediaWiki before 1.31.15, 1.32.x through 1.35.x before 1.35.3, and 1.36.x before 1.36.1, bots have certain unintended...
CVE-2021-27412HIGH7.8Delta Electronics DOPSoft Versions 4.0.10.17 and prior are vulnerable to an out-of-bounds read, which may allow an attac...
CVE-2021-28423HIGH8.8Multiple SQL Injection vulnerabilities in Teachers Record Management System 1.0 thru 2.1 allow remote authenticated user...
CVE-2021-28127HIGH7.5An issue was discovered in Stormshield SNS through 4.2.1. A brute-force attack can occur.
CVE-2021-27661HIGH8.8Successful exploitation of this vulnerability could give an authenticated Facility Explorer SNC Series Supervisory Contr...
CVE-2021-27660HIGH8.8An insecure client auto update feature in C-CURE 9000 can allow remote execution of lower privileged Windows programs.
CVE-2021-27477HIGH7.5When JTEKT Corporation TOYOPUC PLC versions PC10G-CPU, 2PORT-EFR, Plus CPU, Plus EX, Plus EX2, Plus EFR, Plus EFR2, Plus...
CVE-2021-20778HIGH7.5Improper access control vulnerability in EC-CUBE 4.0.6 (EC-CUBE 4 series) allows a remote attacker to bypass access rest...
CVE-2021-36089HIGH7.8Grok 7.6.6 through 9.2.0 has a heap-based buffer overflow in grk::FileFormatDecompress::apply_palette_clr (called from g...
CVE-2021-36082HIGH8.8ntop nDPI 3.4 has a stack-based buffer overflow in processClientServerHello.
CVE-2021-36081HIGH7.8Tesseract OCR 5.0.0-alpha-20201231 has a one_ell_conflict use-after-free during a strpbrk call.
CVE-2021-36080HIGH8.8GNU LibreDWG 0.12.3.4163 through 0.12.3.4191 has a double-free in bit_chain_free (called from dwg_encode_MTEXT and dwg_e...
CVE-2021-22352HIGH7.8There is a Configuration Defect Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may al...
CVE-2021-22351HIGH8.1There is a Credentials Management Errors Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerabili...
CVE-2021-22350HIGH7.5There is a Memory Buffer Improper Operation Limit Vulnerability in Huawei Smartphone. Successful exploitation of this vu...
CVE-2021-22349HIGH7.5There is an Input Verification Vulnerability in Huawei Smartphone. Successful exploitation of insufficient input verific...
CVE-2021-32736HIGH7.5think-helper defines a set of helper functions for ThinkJS. In versions of think-helper prior to 1.1.3, the software rec...
CVE-2021-22368HIGH7.5There is a Permission Control Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affe...
CVE-2021-22353HIGH7.5There is a Memory Buffer Improper Operation Limit Vulnerability in Huawei Smartphone. Successful exploitation of this vu...
CVE-2021-21671HIGH7.5Jenkins 2.299 and earlier, LTS 2.289.1 and earlier does not invalidate the previous session on login.
CVE-2021-35970HIGH7.5Talk 4 in Coral before 4.12.1 allows remote attackers to discover e-mail addresses and other sensitive information via G...
CVE-2021-22374HIGH7.5There is an Improper Validation of Array Index Vulnerability in Huawei Smartphone. Successful exploitation of this vulne...
CVE-2021-22371HIGH7.5There is an Improper Permission Management Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerabi...
CVE-2021-22369HIGH8.1There is a Time-of-check Time-of-use (TOCTOU) Race Condition Vulnerability in Huawei Smartphone. Successful exploitation...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now