2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-31635 | CRITICAL | 9.8 | 1.0% | Jun 26, 2023 | Server-Side Template Injection (SSTI) vulnerability in jFinal v.4.9.08 allows a remote attacker to execute arbitrary cod... |
| CVE-2021-0945 | CRITICAL | 9.8 | 0.3% | Jun 15, 2023 | In _PMRCreate of the PowerVR kernel driver, a missing bounds check means it is possible to overwrite heap memory via Phy... |
| CVE-2021-0701 | CRITICAL | 9.8 | 0.3% | Jun 15, 2023 | In PVRSRVBridgeSyncPrimOpCreate of the PowerVR kernel driver, a missing size check means there is a possible integer ove... |
| CVE-2021-4380 | CRITICAL | 9.8 | 4.5% | Jun 7, 2023 | The Pinterest Automatic plugin for WordPress is vulnerable to authorization bypass due to missing capability checks on t... |
| CVE-2021-4381 | CRITICAL | 9.8 | 1.4% | Jun 7, 2023 | The uListing plugin for WordPress is vulnerable to authorization bypass via wp_route due to missing capability checks, a... |
| CVE-2021-4374 | CRITICAL | 9.8 | 16.4% | Jun 7, 2023 | The WordPress Automatic Plugin for WordPress is vulnerable to arbitrary options updates in versions up to, and including... |
| CVE-2021-4370 | CRITICAL | 9.8 | 1.4% | Jun 7, 2023 | The uListing plugin for WordPress is vulnerable to authorization bypass as most actions and endpoints are accessible to ... |
| CVE-2021-4362 | CRITICAL | 9.8 | 1.4% | Jun 7, 2023 | The Kiwi Social Share plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on th... |
| CVE-2021-4356 | CRITICAL | 9.8 | 1.5% | Jun 7, 2023 | The Frontend File Manager plugin for WordPress is vulnerable to Unauthenticated Arbitrary File Download in versions up... |
| CVE-2021-4343 | CRITICAL | 9.8 | 1.4% | Jun 7, 2023 | The Unauthenticated Account Creation plugin for WordPress is vulnerable to Unauthenticated Account Creation in versions ... |
| CVE-2021-4341 | CRITICAL | 9.8 | 1.1% | Jun 7, 2023 | The uListing plugin for WordPress is vulnerable to authorization bypass via Ajax due to missing capability checks, missi... |
| CVE-2021-45039 | CRITICAL | 9.8 | 4.2% | May 31, 2023 | Multiple models of the Uniview IP Camera (e.g., IPC_G6103 B6103.16.10.B25.201218, IPC_G61, IPC21, IPC23, IPC32, IPC36, I... |
| CVE-2021-4336 | CRITICAL | 9.8 | 0.6% | May 28, 2023 | A vulnerability was found in ITRS Group monitor-ninja up to 2021.11.1. It has been rated as critical. Affected by this i... |
| CVE-2021-46887 | CRITICAL | 9.8 | 0.5% | May 26, 2023 | Lack of length check vulnerability in the HW_KEYMASTER module. Successful exploitation of this vulnerability may cause o... |
| CVE-2021-0877 | CRITICAL | 9.8 | 0.3% | May 15, 2023 | Product: AndroidVersions: Android SoCAndroid ID: A-273754094 |
| CVE-2021-46760 | CRITICAL | 9.8 | 0.8% | May 9, 2023 | A malicious or compromised UApp or ABL can send a malformed system call to the bootloader, which may result in an out-of... |
| CVE-2021-46756 | CRITICAL | 9.1 | 0.6% | May 9, 2023 | Insufficient validation of inputs in SVC_MAP_USER_STACK in the ASP (AMD Secure Processor) bootloader may allow an attack... |
| CVE-2021-46754 | CRITICAL | 9.1 | 0.6% | May 9, 2023 | Insufficient input validation in the ASP (AMD Secure Processor) bootloader may allow an attacker with a compromised Uapp... |
| CVE-2021-46762 | CRITICAL | 9.1 | 0.3% | May 9, 2023 | Insufficient input validation in the SMU may allow an attacker to corrupt SMU SRAM potentially leading to a loss of inte... |
| CVE-2021-46753 | CRITICAL | 9.1 | 0.6% | May 9, 2023 | Failure to validate the length fields of the ASP (AMD Secure Processor) sensor fusion hub headers may allow an attacker ... |
| CVE-2021-26379 | CRITICAL | 9.8 | 0.7% | May 9, 2023 | Insufficient input validation of mailbox data in the SMU may allow an attacker to coerce the SMU to corrupt SMRAM, poten... |
| CVE-2021-44547 | CRITICAL | 9.1 | 0.7% | Apr 25, 2023 | A sandboxing issue in Odoo Community 15.0 and Odoo Enterprise 15.0 allows authenticated administrators to executed arbit... |
| CVE-2021-33970 | CRITICAL | 10 | 3.1% | Apr 19, 2023 | Buffer Overflow vulnerability in Qihoo 360 Chrome v13.0.2170.0 allows attacker to escalate priveleges. |
| CVE-2021-33975 | CRITICAL | 10 | 1.4% | Apr 19, 2023 | Buffer Overflow vulnerability in Qihoo 360 Total Security v10.8.0.1060 and v10.8.0.1213 allows attacker to escalate priv... |
| CVE-2021-33972 | CRITICAL | 10 | 1.3% | Apr 19, 2023 | Buffer Overflow vulnerability in Qihoo 360 Safe Browser v13.0.2170.0 allows attacker to escalate priveleges. |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now