2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-24539 | MEDIUM | 4.8 | 0.6% | Nov 1, 2021 | The Coming Soon, Under Construction & Maintenance Mode By Dazzler WordPress plugin before 1.6.7 does not sanitise or esc... |
| CVE-2021-40348 | HIGH | 8.8 | 1.7% | Nov 1, 2021 | Spacewalk 2.10, and derivatives such as Uyuni 2021.08, allows code injection. rhn-config-satellite.pl doesn't sanitize t... |
| CVE-2021-42694 | HIGH | 8.3 | 4.5% | Nov 1, 2021 | An issue was discovered in the character definitions of the Unicode Specification through 14.0. The specification allows... |
| CVE-2021-42574 | HIGH | 8.3 | 12.2% | Nov 1, 2021 | An issue was discovered in the Bidirectional Algorithm in the Unicode Specification through 14.0. It permits the visual ... |
| CVE-2021-41313 | MEDIUM | 4.3 | 0.8% | Nov 1, 2021 | Affected versions of Atlassian Jira Server and Data Center allow authenticated but non-admin remote attackers to edit em... |
| CVE-2021-20839 | MEDIUM | 6.5 | 1.1% | Nov 1, 2021 | Office Server Document Converter V7.2MR4 and earlier and V7.1MR7 and earlier allows a remote unauthenticated attacker to... |
| CVE-2021-20838 | HIGH | 7.5 | 1.5% | Nov 1, 2021 | Office Server Document Converter V7.2MR4 and earlier and V7.1MR7 and earlier allows a remote unauthenticated attacker to... |
| CVE-2021-33259 | MEDIUM | 5.3 | 2.2% | Oct 31, 2021 | Several web interfaces in D-Link DIR-868LW 1.12b have no authentication requirements for access, allowing for attackers ... |
| CVE-2021-36808 | HIGH | 7 | 0.2% | Oct 30, 2021 | A local attacker could bypass the app password using a race condition in Sophos Secure Workspace for Android before vers... |
| CVE-2021-1123 | MEDIUM | 5.5 | 0.2% | Oct 29, 2021 | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it can deadlock, which may... |
| CVE-2021-1122 | MEDIUM | 5.5 | 0.2% | Oct 29, 2021 | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it can dereference a NULL ... |
| CVE-2021-1121 | MEDIUM | 5.5 | 0.2% | Oct 29, 2021 | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager kernel driver, where a vGPU can cause resource ... |
| CVE-2021-1120 | HIGH | 7 | 0.2% | Oct 29, 2021 | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where a string provided by the g... |
| CVE-2021-1119 | HIGH | 7.1 | 0.2% | Oct 29, 2021 | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where it can double-free a point... |
| CVE-2021-1118 | HIGH | 7.8 | 0.4% | Oct 29, 2021 | NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager (vGPU plugin), where there is the potential to ... |
| CVE-2021-41874 | — | — | — | Oct 29, 2021 | Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: none. Reason: This record was withdrawn by its CNA. Further inv... |
| CVE-2021-41748 | — | — | — | Oct 29, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-41874. Reason: This candidate is a duplicate of ... |
| CVE-2021-41746 | HIGH | 7.5 | 1.2% | Oct 29, 2021 | SQL Injection vulnerability exists in all versions of Yonyou TurboCRM.via the orgcode parameter in changepswd.php. Attac... |
| CVE-2021-41646 | CRITICAL | 9.8 | 7.0% | Oct 29, 2021 | Remote Code Execution (RCE) vulnerability exists in Sourcecodester Online Reviewer System 1.0 by uploading a maliciously... |
| CVE-2021-41189 | HIGH | 7.2 | 2.0% | Oct 29, 2021 | DSpace is an open source turnkey repository application. In version 7.0, any community or collection administrator can e... |
| CVE-2021-41645 | HIGH | 8.8 | 3.1% | Oct 29, 2021 | Remote Code Execution (RCE) vulnerability exists in Sourcecodester Budget and Expense Tracker System 1.0 that allows a r... |
| CVE-2021-41644 | CRITICAL | 9.8 | 2.4% | Oct 29, 2021 | Remote Code Exection (RCE) vulnerability exists in Sourcecodester Online Food Ordering System 2.0 via a maliciously craf... |
| CVE-2021-41643 | CRITICAL | 9.8 | 4.5% | Oct 29, 2021 | Remote Code Execution (RCE) vulnerability exists in Sourcecodester Church Management System 1.0 via the image upload fie... |
| CVE-2021-41676 | CRITICAL | 9.8 | 1.4% | Oct 29, 2021 | An SQL Injection vulnerabilty exists in the oretnom23 Pharmacy Point of Sale System 1.0 in the login function in actions... |
| CVE-2021-41675 | HIGH | 7.2 | 3.0% | Oct 29, 2021 | A Remote Code Execution (RCE) vulnerabilty exists in Sourcecodester E-Negosyo System 1.0 in /admin/produts/controller.ph... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now