2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2021-31635CRITICAL9.8Server-Side Template Injection (SSTI) vulnerability in jFinal v.4.9.08 allows a remote attacker to execute arbitrary cod...
CVE-2021-0945CRITICAL9.8In _PMRCreate of the PowerVR kernel driver, a missing bounds check means it is possible to overwrite heap memory via Phy...
CVE-2021-0701CRITICAL9.8In PVRSRVBridgeSyncPrimOpCreate of the PowerVR kernel driver, a missing size check means there is a possible integer ove...
CVE-2021-4380CRITICAL9.8The Pinterest Automatic plugin for WordPress is vulnerable to authorization bypass due to missing capability checks on t...
CVE-2021-4381CRITICAL9.8The uListing plugin for WordPress is vulnerable to authorization bypass via wp_route due to missing capability checks, a...
CVE-2021-4374CRITICAL9.8The WordPress Automatic Plugin for WordPress is vulnerable to arbitrary options updates in versions up to, and including...
CVE-2021-4370CRITICAL9.8The uListing plugin for WordPress is vulnerable to authorization bypass as most actions and endpoints are accessible to ...
CVE-2021-4362CRITICAL9.8The Kiwi Social Share plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on th...
CVE-2021-4356CRITICAL9.8The Frontend File Manager plugin for WordPress is vulnerable to Unauthenticated Arbitrary File Download in versions up...
CVE-2021-4343CRITICAL9.8The Unauthenticated Account Creation plugin for WordPress is vulnerable to Unauthenticated Account Creation in versions ...
CVE-2021-4341CRITICAL9.8The uListing plugin for WordPress is vulnerable to authorization bypass via Ajax due to missing capability checks, missi...
CVE-2021-45039CRITICAL9.8Multiple models of the Uniview IP Camera (e.g., IPC_G6103 B6103.16.10.B25.201218, IPC_G61, IPC21, IPC23, IPC32, IPC36, I...
CVE-2021-4336CRITICAL9.8A vulnerability was found in ITRS Group monitor-ninja up to 2021.11.1. It has been rated as critical. Affected by this i...
CVE-2021-46887CRITICAL9.8Lack of length check vulnerability in the HW_KEYMASTER module. Successful exploitation of this vulnerability may cause o...
CVE-2021-0877CRITICAL9.8Product: AndroidVersions: Android SoCAndroid ID: A-273754094
CVE-2021-46760CRITICAL9.8A malicious or compromised UApp or ABL can send a malformed system call to the bootloader, which may result in an out-of...
CVE-2021-46756CRITICAL9.1Insufficient validation of inputs in SVC_MAP_USER_STACK in the ASP (AMD Secure Processor) bootloader may allow an attack...
CVE-2021-46754CRITICAL9.1Insufficient input validation in the ASP (AMD Secure Processor) bootloader may allow an attacker with a compromised Uapp...
CVE-2021-46762CRITICAL9.1Insufficient input validation in the SMU may allow an attacker to corrupt SMU SRAM potentially leading to a loss of inte...
CVE-2021-46753CRITICAL9.1Failure to validate the length fields of the ASP (AMD Secure Processor) sensor fusion hub headers may allow an attacker ...
CVE-2021-26379CRITICAL9.8Insufficient input validation of mailbox data in the SMU may allow an attacker to coerce the SMU to corrupt SMRAM, poten...
CVE-2021-44547CRITICAL9.1A sandboxing issue in Odoo Community 15.0 and Odoo Enterprise 15.0 allows authenticated administrators to executed arbit...
CVE-2021-33970CRITICAL10Buffer Overflow vulnerability in Qihoo 360 Chrome v13.0.2170.0 allows attacker to escalate priveleges.
CVE-2021-33975CRITICAL10Buffer Overflow vulnerability in Qihoo 360 Total Security v10.8.0.1060 and v10.8.0.1213 allows attacker to escalate priv...
CVE-2021-33972CRITICAL10Buffer Overflow vulnerability in Qihoo 360 Safe Browser v13.0.2170.0 allows attacker to escalate priveleges.

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now