2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2021-42141CRITICAL9.8An issue was discovered in Contiki-NG tinyDTLS through 2018-08-30. One incorrect handshake could complete with different...
CVE-2021-31314CRITICAL9.8File upload vulnerability in ejinshan v8+ terminal security system allows attackers to upload arbitrary files to arbitra...
CVE-2021-4434CRITICAL9.8The Social Warfare plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 3.5.2 v...
CVE-2021-22962CRITICAL9.1An attacker can send a specially crafted request which could lead to leakage of sensitive data or potentially a resource...
CVE-2021-42796CRITICAL9.8An issue was discovered in ExecuteCommand() in AVEVA Edge (formerly InduSoft Web Studio) versions R2020 and prior that a...
CVE-2021-35437CRITICAL9.8SQL injection vulnerability in LMXCMS v.1.4 allows attacker to execute arbitrary code via the TagsAction.class.
CVE-2021-38243CRITICAL9.8xunruicms up to v4.5.1 was discovered to contain a remote code execution (RCE) vulnerability in /index.php. This vulnera...
CVE-2021-26837CRITICAL9.8SQL Injection vulnerability in SearchTextBox parameter in Fortra (Formerly HelpSystems) DeliverNow before version 1.2.18...
CVE-2021-27715CRITICAL9.8An issue was discovered in MoFi Network MOFI4500-4GXeLTE-V2 3.5.6-xnet-5052 allows attackers to bypass the authenticatio...
CVE-2021-3262CRITICAL9.8TripSpark VEO Transportation-2.2.x-XP_BB-20201123-184084 NovusEDU-2.2.x-XP_BB-20201123-184084 allows unsafe data inputs ...
CVE-2021-33390CRITICAL9.8dpic 2021.04.10 has a use-after-free in thedeletestringbox() function in dpic.y. A different vulnerablility than CVE-202...
CVE-2021-33388CRITICAL9.8dpic 2021.04.10 has a Heap Buffer Overflow in themakevar() function in dpic.y
CVE-2021-32292CRITICAL9.8An issue was discovered in json-c from 20200420 (post 0.14 unreleased code) through 0.15-20200726. A stack-buffer-overfl...
CVE-2021-46895CRITICAL9.1Vulnerability of defects introduced in the design process in the Multi-Device Task Center. Successful exploitation of th...
CVE-2021-28411CRITICAL9.8An issue was discovered in getRememberedSerializedIdentity function in CookieRememberMeManager class in lerry903 RuoYi v...
CVE-2021-27523CRITICAL9.8An issue was discovered in open-falcon dashboard version 0.2.0, allows remote attackers to gain, modify, and delete sens...
CVE-2021-26505CRITICAL9.8Prototype pollution vulnerability in MrSwitch hello.js version 1.18.6, allows remote attackers to execute arbitrary code...
CVE-2021-37522CRITICAL9.8SQL injection vulnerability in HKing2802 Locke-Bot 2.0.2 allows remote attackers to run arbitrary SQL commands via craft...
CVE-2021-34123CRITICAL9.8An issue was discovered on atasm, version 1.09. A stack-buffer-overflow vulnerability in function aprintf() in asm.c all...
CVE-2021-37384CRITICAL9.8RCE (Remote Code Execution) vulnerability was found in some Furukawa ONU models, this vulnerability allows remote unauth...
CVE-2021-32495CRITICAL9.1Radare2 has a use-after-free vulnerability in pyc parser's get_none_object function. Attacker can read freed memory afte...
CVE-2021-46894CRITICAL9.8Use After Free (UAF) vulnerability in the uinput module.Successful exploitation of this vulnerability may lead to kernel...
CVE-2021-46891CRITICAL9.8Vulnerability of incomplete read and write permission verification in the GPU module. Successful exploitation of this vu...
CVE-2021-46890CRITICAL9.8Vulnerability of incomplete read and write permission verification in the GPU module. Successful exploitation of this vu...
CVE-2021-25827CRITICAL9.8Emby Server < 4.7.12.0 is vulnerable to a login bypass attack by setting the X-Forwarded-For header to a local IP-addres...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now