2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-40824 | MEDIUM | 5.9 | 0.6% | Sep 13, 2021 | A logic error in the room key sharing functionality of Element Android before 1.2.2 and matrix-android-sdk2 (aka Matrix ... |
| CVE-2021-40823 | MEDIUM | 5.9 | 0.6% | Sep 13, 2021 | A logic error in the room key sharing functionality of matrix-js-sdk (aka Matrix Javascript SDK) before 12.4.1 allows a ... |
| CVE-2021-38833 | CRITICAL | 9.8 | 2.2% | Sep 13, 2021 | SQL injection vulnerability in PHPGurukul Apartment Visitors Management System (AVMS) v. 1.0 allows attackers to execute... |
| CVE-2021-33366 | MEDIUM | 5.5 | 0.9% | Sep 13, 2021 | Memory leak in the gf_isom_oinf_read_entry function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafte... |
| CVE-2021-33364 | MEDIUM | 5.5 | 0.9% | Sep 13, 2021 | Memory leak in the def_parent_box_new function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted fil... |
| CVE-2021-33362 | HIGH | 7.8 | 1.2% | Sep 13, 2021 | Stack buffer overflow in the hevc_parse_vps_extension function in MP4Box in GPAC 1.0.1 allows attackers to cause a denia... |
| CVE-2021-3666 | CRITICAL | 9.8 | 1.3% | Sep 13, 2021 | body-parser-xml is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution... |
| CVE-2021-39212 | LOW | 3.6 | 0.3% | Sep 13, 2021 | ImageMagick is free software delivered as a ready-to-run binary distribution or as source code that you may use, copy, m... |
| CVE-2021-33554 | HIGH | 7.2 | 55.7% | Sep 13, 2021 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may a... |
| CVE-2021-33553 | HIGH | 7.2 | 47.5% | Sep 13, 2021 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may a... |
| CVE-2021-33552 | HIGH | 7.2 | 47.5% | Sep 13, 2021 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may a... |
| CVE-2021-33551 | HIGH | 7.2 | 47.5% | Sep 13, 2021 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may a... |
| CVE-2021-33550 | HIGH | 7.2 | 55.7% | Sep 13, 2021 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may a... |
| CVE-2021-33549 | HIGH | 7.2 | 66.2% | Sep 13, 2021 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow ... |
| CVE-2021-33548 | HIGH | 7.2 | 55.7% | Sep 13, 2021 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may a... |
| CVE-2021-33547 | HIGH | 7.2 | 2.7% | Sep 13, 2021 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow ... |
| CVE-2021-33546 | HIGH | 7.2 | 2.7% | Sep 13, 2021 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow ... |
| CVE-2021-33545 | HIGH | 7.2 | 2.7% | Sep 13, 2021 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to a stack-based buffer overflow ... |
| CVE-2021-33544 | HIGH | 7.2 | 94.6% | Sep 13, 2021 | Multiple camera devices by UDP Technology, Geutebrück and other vendors are vulnerable to command injection, which may a... |
| CVE-2021-33543 | CRITICAL | 9.8 | 82.1% | Sep 13, 2021 | Multiple camera devices by UDP Technology, Geutebrück and other vendors allow unauthenticated remote access to sensitive... |
| CVE-2021-24728 | HIGH | 8.8 | 1.7% | Sep 13, 2021 | The Membership & Content Restriction – Paid Member Subscriptions WordPress plugin before 2.4.2 did not sanitise, validat... |
| CVE-2021-24727 | HIGH | 8.8 | 1.7% | Sep 13, 2021 | The StopBadBots WordPress plugin before 6.60 did not validate or escape the order and orderby GET parameter in some of i... |
| CVE-2021-24726 | HIGH | 8.8 | 1.5% | Sep 13, 2021 | The WP Simple Booking Calendar WordPress plugin before 2.0.6 did not escape, validate or sanitise the orderby parameter ... |
| CVE-2021-24725 | MEDIUM | 4.3 | 0.5% | Sep 13, 2021 | The Comment Link Remove and Other Comment Tools WordPress plugin before 2.1.6 does not have CSRF check in its 'Delete co... |
| CVE-2021-24724 | MEDIUM | 5.4 | 0.9% | Sep 13, 2021 | The Timetable and Event Schedule by MotoPress WordPress plugin before 2.3.19 does not sanitise some of its parameters, w... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now