2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-41674 | CRITICAL | 9.8 | 1.7% | Oct 29, 2021 | An SQL Injection vulnerability exists in Sourcecodester E-Negosyo System 1.0 via the user_email parameter in /admin/logi... |
| CVE-2021-3756 | CRITICAL | 9.8 | 1.0% | Oct 29, 2021 | libmysofa is vulnerable to Heap-based Buffer Overflow |
| CVE-2021-41186 | HIGH | 7.5 | 2.1% | Oct 29, 2021 | Fluentd collects events from various data sources and writes them to files to help unify logging infrastructure. The par... |
| CVE-2021-39179 | HIGH | 8.8 | 1.9% | Oct 29, 2021 | DHIS 2 is an information system for data capture, management, validation, analytics and visualization. A SQL Injection v... |
| CVE-2021-35237 | MEDIUM | 4.3 | 0.9% | Oct 29, 2021 | A missing HTTP header (X-Frame-Options) in Kiwi Syslog Server has left customers vulnerable to click jacking. Clickjacki... |
| CVE-2021-3662 | MEDIUM | 5.4 | 0.5% | Oct 29, 2021 | Certain HP Enterprise LaserJet and PageWide MFPs may be vulnerable to stored cross site scripting (XSS). |
| CVE-2021-3441 | MEDIUM | 4.8 | 1.7% | Oct 29, 2021 | A potential security vulnerability has been identified for the HP OfficeJet 7110 Wide Format ePrinter that enables Cross... |
| CVE-2021-22038 | HIGH | 8.8 | 1.0% | Oct 29, 2021 | On Windows, the uninstaller binary copies itself to a fixed temporary location, which is then executed (the originally c... |
| CVE-2021-22037 | HIGH | 7.8 | 0.3% | Oct 29, 2021 | Under certain circumstances, when manipulating the Windows registry, InstallBuilder uses the reg.exe system command. The... |
| CVE-2021-31862 | MEDIUM | 6.1 | 3.9% | Oct 29, 2021 | SysAid 20.4.74 allows XSS via the KeepAlive.jsp stamp parameter without any authentication. |
| CVE-2021-31627 | HIGH | 8.8 | 1.2% | Oct 29, 2021 | Buffer Overflow vulnerability in Tenda AC9 V1.0 through V15.03.05.19(6318), and AC9 V3.0 V15.03.06.42_multi, allows atta... |
| CVE-2021-31624 | HIGH | 8.8 | 1.2% | Oct 29, 2021 | Buffer Overflow vulnerability in Tenda AC9 V1.0 through V15.03.05.19(6318), and AC9 V3.0 V15.03.06.42_multi, allows atta... |
| CVE-2021-25742 | HIGH | 7.1 | 1.8% | Oct 29, 2021 | A security issue was discovered in ingress-nginx where a user that can create or update ingress objects can use the cust... |
| CVE-2021-41194 | CRITICAL | 9.8 | 1.3% | Oct 28, 2021 | FirstUseAuthenticator is a JupyterHub authenticator that helps new users set their password on their first login to Jupy... |
| CVE-2021-36551 | MEDIUM | 5.4 | 0.5% | Oct 28, 2021 | TikiWiki v21.4 was discovered to contain a cross-site scripting (XSS) vulnerability in the component tiki-calendar.php. ... |
| CVE-2021-36550 | MEDIUM | 5.4 | 0.5% | Oct 28, 2021 | TikiWiki v21.4 was discovered to contain a cross-site scripting (XSS) vulnerability in the component tiki-browse_categor... |
| CVE-2021-36548 | CRITICAL | 9.8 | 3.2% | Oct 28, 2021 | A remote code execution (RCE) vulnerability in the component /admin/index.php?id=themes&action=edit_template&filename=bl... |
| CVE-2021-36547 | CRITICAL | 9.8 | 3.2% | Oct 28, 2021 | A remote code execution (RCE) vulnerability in the component /codebase/dir.php?type=filenew of Mara v7.5 allows attacker... |
| CVE-2021-30840 | HIGH | 7.8 | 1.0% | Oct 28, 2021 | This issue was addressed with improved checks. This issue is fixed in tvOS 15, watchOS 8, iOS 15 and iPadOS 15. Processi... |
| CVE-2021-30836 | MEDIUM | 5.5 | 1.0% | Oct 28, 2021 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.8 and iPadOS 14.8, tvO... |
| CVE-2021-30834 | HIGH | 7.8 | 1.1% | Oct 28, 2021 | A logic issue was addressed with improved state management. This issue is fixed in iOS 14.8 and iPadOS 14.8, tvOS 15, iO... |
| CVE-2021-30833 | MEDIUM | 5.5 | 42.7% | Oct 28, 2021 | This issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.0.1. Unpacking a maliciously cra... |
| CVE-2021-30831 | MEDIUM | 5.5 | 0.8% | Oct 28, 2021 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in tvOS 15, watchOS 8, iOS 15 an... |
| CVE-2021-30824 | HIGH | 7.8 | 1.0% | Oct 28, 2021 | A memory corruption issue was addressed with improved state management. This issue is fixed in macOS Monterey 12.0.1, Se... |
| CVE-2021-30823 | MEDIUM | 6.5 | 2.1% | Oct 28, 2021 | A logic issue was addressed with improved restrictions. This issue is fixed in macOS Monterey 12.0.1, iOS 14.8 and iPadO... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now