2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-32441 | HIGH | 7.5 | 0.6% | Feb 17, 2023 | SQL Injection vulnerability in Exponent-CMS v.2.6.0 fixed in 2.7.0 allows attackers to gain access to sensitive informat... |
| CVE-2021-32142 | HIGH | 7.8 | 0.4% | Feb 17, 2023 | Buffer Overflow vulnerability in LibRaw linux/unix v0.20.0 allows attacker to escalate privileges via the LibRaw_buffer_... |
| CVE-2021-0187 | HIGH | 8.2 | 0.2% | Feb 16, 2023 | Improper access control in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially ena... |
| CVE-2021-38239 | HIGH | 7.5 | 0.7% | Feb 15, 2023 | SQL Injection vulnerability in dataease before 1.2.0, allows attackers to gain sensitive information via the orders para... |
| CVE-2021-34117 | HIGH | 7.5 | 0.9% | Feb 15, 2023 | SQL Injection vulnerability in SEO Panel 4.9.0 in api/user.api.php in function getUserName in the username parameter, al... |
| CVE-2021-46023 | HIGH | 7.5 | 0.8% | Feb 14, 2023 | An Untrusted Pointer Dereference was discovered in function mrb_vm_exec in mruby before 3.1.0-rc. The vulnerability caus... |
| CVE-2021-37492 | HIGH | 7.5 | 0.8% | Feb 7, 2023 | An issue discovered in src/wallet/wallet.cpp in Ravencoin Core 4.3.2.1 and earlier allows attackers to view sensitive in... |
| CVE-2021-37491 | HIGH | 7.5 | 0.9% | Feb 7, 2023 | An issue discovered in src/wallet/wallet.cpp in Dogecoin Project Dogecoin Core 1.14.3 and earlier allows attackers to vi... |
| CVE-2021-31576 | HIGH | 7.5 | 1.0% | Feb 6, 2023 | In Boa, there is a possible information disclosure due to a missing permission check. This could lead to remote informat... |
| CVE-2021-36225 | HIGH | 8.8 | 1.0% | Feb 6, 2023 | Western Digital My Cloud devices before OS5 allow REST API access by low-privileged accounts, as demonstrated by API com... |
| CVE-2021-37501 | HIGH | 7.5 | 1.5% | Feb 3, 2023 | Buffer Overflow vulnerability in HDFGroup hdf5-h5dump 1.12.0 through 1.13.0 allows attackers to cause a denial of servic... |
| CVE-2021-37316 | HIGH | 7.5 | 1.0% | Feb 3, 2023 | SQL injection vulnerability in Cloud Disk in ASUS RT-AC68U router firmware version before 3.0.0.4.386.41634 allows remot... |
| CVE-2021-37311 | HIGH | 7.5 | 0.9% | Feb 3, 2023 | Buffer Overflow vulnerability in fcitx5 5.0.8 allows attackers to cause a denial of service via crafted message to the a... |
| CVE-2021-37306 | HIGH | 7.5 | 0.8% | Feb 3, 2023 | An Insecure Permissions issue in jeecg-boot 2.4.5 and earlier allows remote attackers to gain escalated privilege and vi... |
| CVE-2021-37305 | HIGH | 7.5 | 3.5% | Feb 3, 2023 | An Insecure Permissions issue in jeecg-boot 2.4.5 and earlier allows remote attackers to gain escalated privilege and vi... |
| CVE-2021-37304 | HIGH | 7.5 | 4.0% | Feb 3, 2023 | An Insecure Permissions issue in jeecg-boot 2.4.5 allows unauthenticated remote attackers to gain escalated privilege an... |
| CVE-2021-36570 | HIGH | 8.8 | 0.7% | Feb 3, 2023 | Cross Site Request Forgery vulnerability in FUEL-CMS 1.4.13 allows remote attackers to run arbitrary code via post ID to... |
| CVE-2021-36569 | HIGH | 8.8 | 0.4% | Feb 3, 2023 | Cross Site Request Forgery vulnerability in FUEL-CMS 1.4.13 allows remote attackers to run arbitrary code via post ID to... |
| CVE-2021-36546 | HIGH | 7.5 | 0.9% | Feb 3, 2023 | Incorrect Access Control issue discovered in KiteCMS 1.1 allows remote attackers to view sensitive information via path ... |
| CVE-2021-36544 | HIGH | 7.5 | 0.9% | Feb 3, 2023 | Incorrect Access Control issue discovered in tpcms 3.2 allows remote attackers to view sensitive information via path in... |
| CVE-2021-36532 | HIGH | 8.1 | 0.8% | Feb 3, 2023 | Race condition vulnerability discovered in portfolioCMS 1.0 allows remote attackers to run arbitrary code via fileExt pa... |
| CVE-2021-36493 | HIGH | 7.5 | 0.9% | Feb 3, 2023 | Buffer Overflow vulnerability in pdfimages in xpdf 4.03 allows attackers to crash the application via crafted command. |
| CVE-2021-36444 | HIGH | 8.8 | 0.6% | Feb 3, 2023 | Cross Site Request Forgery (CSRF) vulnerability in imcat 5.4 allows remote attackers to gain escalated privileges via fl... |
| CVE-2021-36443 | HIGH | 8.8 | 0.6% | Feb 3, 2023 | Cross Site Request Forgery vulnerability in imcat 5.4 allows remote attackers to escalate privilege via lack of token ve... |
| CVE-2021-36432 | HIGH | 7.5 | 0.9% | Feb 3, 2023 | SQL injection vulnerability in jocms 0.8 allows remote attackers to run arbitrary SQL commands and view sentivie informa... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now