2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-42141 | CRITICAL | 9.8 | 1.2% | Jan 22, 2024 | An issue was discovered in Contiki-NG tinyDTLS through 2018-08-30. One incorrect handshake could complete with different... |
| CVE-2021-31314 | CRITICAL | 9.8 | 0.7% | Jan 20, 2024 | File upload vulnerability in ejinshan v8+ terminal security system allows attackers to upload arbitrary files to arbitra... |
| CVE-2021-4434 | CRITICAL | 9.8 | 1.9% | Jan 17, 2024 | The Social Warfare plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 3.5.2 v... |
| CVE-2021-22962 | CRITICAL | 9.1 | 91.0% | Dec 19, 2023 | An attacker can send a specially crafted request which could lead to leakage of sensitive data or potentially a resource... |
| CVE-2021-42796 | CRITICAL | 9.8 | 1.1% | Dec 16, 2023 | An issue was discovered in ExecuteCommand() in AVEVA Edge (formerly InduSoft Web Studio) versions R2020 and prior that a... |
| CVE-2021-35437 | CRITICAL | 9.8 | 1.0% | Nov 16, 2023 | SQL injection vulnerability in LMXCMS v.1.4 allows attacker to execute arbitrary code via the TagsAction.class. |
| CVE-2021-38243 | CRITICAL | 9.8 | 1.3% | Sep 27, 2023 | xunruicms up to v4.5.1 was discovered to contain a remote code execution (RCE) vulnerability in /index.php. This vulnera... |
| CVE-2021-26837 | CRITICAL | 9.8 | 0.9% | Sep 19, 2023 | SQL Injection vulnerability in SearchTextBox parameter in Fortra (Formerly HelpSystems) DeliverNow before version 1.2.18... |
| CVE-2021-27715 | CRITICAL | 9.8 | 1.1% | Sep 8, 2023 | An issue was discovered in MoFi Network MOFI4500-4GXeLTE-V2 3.5.6-xnet-5052 allows attackers to bypass the authenticatio... |
| CVE-2021-3262 | CRITICAL | 9.8 | 1.2% | Aug 29, 2023 | TripSpark VEO Transportation-2.2.x-XP_BB-20201123-184084 NovusEDU-2.2.x-XP_BB-20201123-184084 allows unsafe data inputs ... |
| CVE-2021-33390 | CRITICAL | 9.8 | 0.6% | Aug 22, 2023 | dpic 2021.04.10 has a use-after-free in thedeletestringbox() function in dpic.y. A different vulnerablility than CVE-202... |
| CVE-2021-33388 | CRITICAL | 9.8 | 0.6% | Aug 22, 2023 | dpic 2021.04.10 has a Heap Buffer Overflow in themakevar() function in dpic.y |
| CVE-2021-32292 | CRITICAL | 9.8 | 1.1% | Aug 22, 2023 | An issue was discovered in json-c from 20200420 (post 0.14 unreleased code) through 0.15-20200726. A stack-buffer-overfl... |
| CVE-2021-46895 | CRITICAL | 9.1 | 0.4% | Aug 13, 2023 | Vulnerability of defects introduced in the design process in the Multi-Device Task Center. Successful exploitation of th... |
| CVE-2021-28411 | CRITICAL | 9.8 | 0.8% | Aug 11, 2023 | An issue was discovered in getRememberedSerializedIdentity function in CookieRememberMeManager class in lerry903 RuoYi v... |
| CVE-2021-27523 | CRITICAL | 9.8 | 0.8% | Aug 11, 2023 | An issue was discovered in open-falcon dashboard version 0.2.0, allows remote attackers to gain, modify, and delete sens... |
| CVE-2021-26505 | CRITICAL | 9.8 | 1.0% | Aug 11, 2023 | Prototype pollution vulnerability in MrSwitch hello.js version 1.18.6, allows remote attackers to execute arbitrary code... |
| CVE-2021-37522 | CRITICAL | 9.8 | 0.8% | Jul 18, 2023 | SQL injection vulnerability in HKing2802 Locke-Bot 2.0.2 allows remote attackers to run arbitrary SQL commands via craft... |
| CVE-2021-34123 | CRITICAL | 9.8 | 0.7% | Jul 18, 2023 | An issue was discovered on atasm, version 1.09. A stack-buffer-overflow vulnerability in function aprintf() in asm.c all... |
| CVE-2021-37384 | CRITICAL | 9.8 | 1.4% | Jul 17, 2023 | RCE (Remote Code Execution) vulnerability was found in some Furukawa ONU models, this vulnerability allows remote unauth... |
| CVE-2021-32495 | CRITICAL | 9.1 | 0.6% | Jul 7, 2023 | Radare2 has a use-after-free vulnerability in pyc parser's get_none_object function. Attacker can read freed memory afte... |
| CVE-2021-46894 | CRITICAL | 9.8 | 0.4% | Jul 6, 2023 | Use After Free (UAF) vulnerability in the uinput module.Successful exploitation of this vulnerability may lead to kernel... |
| CVE-2021-46891 | CRITICAL | 9.8 | 0.4% | Jul 5, 2023 | Vulnerability of incomplete read and write permission verification in the GPU module. Successful exploitation of this vu... |
| CVE-2021-46890 | CRITICAL | 9.8 | 0.4% | Jul 5, 2023 | Vulnerability of incomplete read and write permission verification in the GPU module. Successful exploitation of this vu... |
| CVE-2021-25827 | CRITICAL | 9.8 | 1.2% | Jun 28, 2023 | Emby Server < 4.7.12.0 is vulnerable to a login bypass attack by setting the X-Forwarded-For header to a local IP-addres... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now