2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-32441HIGH7.5SQL Injection vulnerability in Exponent-CMS v.2.6.0 fixed in 2.7.0 allows attackers to gain access to sensitive informat...
CVE-2021-32142HIGH7.8Buffer Overflow vulnerability in LibRaw linux/unix v0.20.0 allows attacker to escalate privileges via the LibRaw_buffer_...
CVE-2021-0187HIGH8.2Improper access control in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially ena...
CVE-2021-38239HIGH7.5SQL Injection vulnerability in dataease before 1.2.0, allows attackers to gain sensitive information via the orders para...
CVE-2021-34117HIGH7.5SQL Injection vulnerability in SEO Panel 4.9.0 in api/user.api.php in function getUserName in the username parameter, al...
CVE-2021-46023HIGH7.5An Untrusted Pointer Dereference was discovered in function mrb_vm_exec in mruby before 3.1.0-rc. The vulnerability caus...
CVE-2021-37492HIGH7.5An issue discovered in src/wallet/wallet.cpp in Ravencoin Core 4.3.2.1 and earlier allows attackers to view sensitive in...
CVE-2021-37491HIGH7.5An issue discovered in src/wallet/wallet.cpp in Dogecoin Project Dogecoin Core 1.14.3 and earlier allows attackers to vi...
CVE-2021-31576HIGH7.5In Boa, there is a possible information disclosure due to a missing permission check. This could lead to remote informat...
CVE-2021-36225HIGH8.8Western Digital My Cloud devices before OS5 allow REST API access by low-privileged accounts, as demonstrated by API com...
CVE-2021-37501HIGH7.5Buffer Overflow vulnerability in HDFGroup hdf5-h5dump 1.12.0 through 1.13.0 allows attackers to cause a denial of servic...
CVE-2021-37316HIGH7.5SQL injection vulnerability in Cloud Disk in ASUS RT-AC68U router firmware version before 3.0.0.4.386.41634 allows remot...
CVE-2021-37311HIGH7.5Buffer Overflow vulnerability in fcitx5 5.0.8 allows attackers to cause a denial of service via crafted message to the a...
CVE-2021-37306HIGH7.5An Insecure Permissions issue in jeecg-boot 2.4.5 and earlier allows remote attackers to gain escalated privilege and vi...
CVE-2021-37305HIGH7.5An Insecure Permissions issue in jeecg-boot 2.4.5 and earlier allows remote attackers to gain escalated privilege and vi...
CVE-2021-37304HIGH7.5An Insecure Permissions issue in jeecg-boot 2.4.5 allows unauthenticated remote attackers to gain escalated privilege an...
CVE-2021-36570HIGH8.8Cross Site Request Forgery vulnerability in FUEL-CMS 1.4.13 allows remote attackers to run arbitrary code via post ID to...
CVE-2021-36569HIGH8.8Cross Site Request Forgery vulnerability in FUEL-CMS 1.4.13 allows remote attackers to run arbitrary code via post ID to...
CVE-2021-36546HIGH7.5Incorrect Access Control issue discovered in KiteCMS 1.1 allows remote attackers to view sensitive information via path ...
CVE-2021-36544HIGH7.5Incorrect Access Control issue discovered in tpcms 3.2 allows remote attackers to view sensitive information via path in...
CVE-2021-36532HIGH8.1Race condition vulnerability discovered in portfolioCMS 1.0 allows remote attackers to run arbitrary code via fileExt pa...
CVE-2021-36493HIGH7.5Buffer Overflow vulnerability in pdfimages in xpdf 4.03 allows attackers to crash the application via crafted command.
CVE-2021-36444HIGH8.8Cross Site Request Forgery (CSRF) vulnerability in imcat 5.4 allows remote attackers to gain escalated privileges via fl...
CVE-2021-36443HIGH8.8Cross Site Request Forgery vulnerability in imcat 5.4 allows remote attackers to escalate privilege via lack of token ve...
CVE-2021-36432HIGH7.5SQL injection vulnerability in jocms 0.8 allows remote attackers to run arbitrary SQL commands and view sentivie informa...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now