2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-45814 | CRITICAL | 9.8 | 6.3% | Dec 28, 2021 | Nettmp NNT 5.1 is affected by a SQL injection vulnerability. An attacker can bypass authentication and access the panel ... |
| CVE-2021-37401 | CRITICAL | 9.8 | 1.3% | Dec 28, 2021 | An attacker may obtain the user credentials from file servers, backup repositories, or ZLD files saved in SD cards. As a... |
| CVE-2021-37400 | CRITICAL | 9.8 | 1.3% | Dec 28, 2021 | An attacker may obtain the user credentials from the communication between the PLC and the software. As a result, the PL... |
| CVE-2021-45890 | CRITICAL | 9.8 | 1.7% | Dec 27, 2021 | basic/BasicAuthProvider.java in AuthGuard before 0.9.0 allows authentication via an inactive identifier. |
| CVE-2021-43845 | CRITICAL | 9.1 | 3.7% | Dec 27, 2021 | PJSIP is a free and open source multimedia communication library. In version 2.11.1 and prior, if incoming RTCP XR messa... |
| CVE-2021-45232 | CRITICAL | 9.8 | 85.9% | Dec 27, 2021 | In Apache APISIX Dashboard before 2.10.1, the Manager API uses two frameworks and introduces framework `droplet` on the ... |
| CVE-2021-45709 | CRITICAL | 9.8 | 0.8% | Dec 27, 2021 | An issue was discovered in the crypto2 crate through 2021-10-08 for Rust. During Chacha20 encryption and decryption, an ... |
| CVE-2021-45707 | CRITICAL | 9.8 | 1.6% | Dec 27, 2021 | An issue was discovered in the nix crate 0.16.0 and later before 0.20.2, 0.21.x before 0.21.2, and 0.22.x before 0.22.2 ... |
| CVE-2021-45706 | CRITICAL | 9.8 | 1.2% | Dec 27, 2021 | An issue was discovered in the zeroize_derive crate before 1.1.1 for Rust. Dropped memory is not zeroed out for an enum. |
| CVE-2021-45705 | CRITICAL | 9.8 | 1.2% | Dec 27, 2021 | An issue was discovered in the nanorand crate before 0.6.1 for Rust. There can be multiple mutable references to the sam... |
| CVE-2021-45703 | CRITICAL | 9.8 | 1.2% | Dec 27, 2021 | An issue was discovered in the tectonic_xdv crate before 0.1.12 for Rust. XdvParser::<T>::process may read from uninitia... |
| CVE-2021-45701 | CRITICAL | 9.8 | 1.2% | Dec 27, 2021 | An issue was discovered in the tremor-script crate before 0.11.6 for Rust. A patch operation may result in a use-after-f... |
| CVE-2021-45698 | CRITICAL | 9.8 | 1.2% | Dec 27, 2021 | An issue was discovered in the ckb crate before 0.40.0 for Rust. A get_block_template RPC call may fail in situations wh... |
| CVE-2021-45697 | CRITICAL | 9.8 | 1.3% | Dec 27, 2021 | An issue was discovered in the molecule crate before 0.7.2 for Rust. A FixVec partial read has an incorrect result. |
| CVE-2021-45696 | CRITICAL | 9.8 | 0.8% | Dec 27, 2021 | An issue was discovered in the sha2 crate 0.9.7 before 0.9.8 for Rust. Hashes of long messages may be incorrect when the... |
| CVE-2021-45695 | CRITICAL | 9.8 | 1.6% | Dec 27, 2021 | An issue was discovered in the mopa crate through 2021-06-01 for Rust. It incorrectly relies on Trait memory layout, pos... |
| CVE-2021-45693 | CRITICAL | 9.8 | 1.2% | Dec 27, 2021 | An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_string_primitive may read f... |
| CVE-2021-45692 | CRITICAL | 9.8 | 1.4% | Dec 27, 2021 | An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_extension_others may read f... |
| CVE-2021-45691 | CRITICAL | 9.8 | 1.2% | Dec 27, 2021 | An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_string may read from uninit... |
| CVE-2021-45690 | CRITICAL | 9.8 | 1.2% | Dec 27, 2021 | An issue was discovered in the messagepack-rs crate through 2021-01-26 for Rust. deserialize_binary may read from uninit... |
| CVE-2021-45689 | CRITICAL | 9.8 | 1.2% | Dec 27, 2021 | An issue was discovered in the gfx-auxil crate through 2021-01-07 for Rust. gfx_auxil::read_spirv may read from uninitia... |
| CVE-2021-45688 | CRITICAL | 9.8 | 1.3% | Dec 27, 2021 | An issue was discovered in the ash crate before 0.33.1 for Rust. util::read_spv may read from uninitialized memory locat... |
| CVE-2021-45687 | CRITICAL | 9.8 | 1.1% | Dec 27, 2021 | An issue was discovered in the raw-cpuid crate before 9.1.1 for Rust. If the serialize feature is used (which is not the... |
| CVE-2021-45686 | CRITICAL | 9.8 | 1.2% | Dec 27, 2021 | An issue was discovered in the csv-sniffer crate through 2021-01-05 for Rust. preamble_skipcount may read from uninitial... |
| CVE-2021-45685 | CRITICAL | 9.8 | 1.2% | Dec 27, 2021 | An issue was discovered in the columnar crate through 2021-01-07 for Rust. ColumnarReadExt::read_typed_vec may read from... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now