2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-42143 | CRITICAL | 9.1 | 0.8% | Jan 24, 2024 | An issue was discovered in Contiki-NG tinyDTLS through master branch 53a0d97. An infinite loop bug exists during the han... |
| CVE-2021-42142 | CRITICAL | 9.8 | 1.0% | Jan 23, 2024 | An issue was discovered in Contiki-NG tinyDTLS through master branch 53a0d97. DTLS servers mishandle the early use of a ... |
| CVE-2021-42141 | CRITICAL | 9.8 | 1.2% | Jan 22, 2024 | An issue was discovered in Contiki-NG tinyDTLS through 2018-08-30. One incorrect handshake could complete with different... |
| CVE-2021-31314 | CRITICAL | 9.8 | 0.7% | Jan 20, 2024 | File upload vulnerability in ejinshan v8+ terminal security system allows attackers to upload arbitrary files to arbitra... |
| CVE-2021-33631 | HIGH | 7.8 | 0.4% | Jan 18, 2024 | Integer Overflow or Wraparound vulnerability in openEuler kernel on Linux (filesystem modules) allows Forced Integer Ove... |
| CVE-2021-33630 | MEDIUM | 5.5 | 0.3% | Jan 18, 2024 | NULL Pointer Dereference vulnerability in openEuler kernel on Linux (network modules) allows Pointer Manipulation. This ... |
| CVE-2021-4433 | HIGH | 7.5 | 1.3% | Jan 18, 2024 | A vulnerability was found in Karjasoft Sami HTTP Server 2.0. It has been classified as problematic. Affected is an unkno... |
| CVE-2021-4434 | CRITICAL | 9.8 | 1.9% | Jan 17, 2024 | The Social Warfare plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 3.5.2 v... |
| CVE-2021-4227 | MEDIUM | 5.3 | 0.6% | Jan 16, 2024 | The ark-commenteditor WordPress plugin through 2.15.6 does not properly sanitise or encode the comments when in Source e... |
| CVE-2021-25117 | MEDIUM | 4.8 | 0.2% | Jan 16, 2024 | The WP-PostRatings WordPress plugin before 1.86.1 does not sanitise the postratings_image parameter from its options pag... |
| CVE-2021-24870 | MEDIUM | 6.1 | 0.3% | Jan 16, 2024 | The WP Fastest Cache WordPress plugin before 0.9.5 is lacking a CSRF check in its wpfc_save_cdn_integration AJAX action,... |
| CVE-2021-24869 | HIGH | 8.8 | 1.2% | Jan 16, 2024 | The WP Fastest Cache WordPress plugin before 0.9.5 does not escape user input in the set_urls_with_terms method before u... |
| CVE-2021-24567 | MEDIUM | 5.4 | 0.5% | Jan 16, 2024 | The Simple Post WordPress plugin through 1.1 does not sanitize user input when an authenticated user Text value, then it... |
| CVE-2021-24566 | HIGH | 8.8 | 1.3% | Jan 16, 2024 | The WooCommerce Currency Switcher FOX WordPress plugin before 1.3.7 was vulnerable to LFI attacks via the "woocs" shortc... |
| CVE-2021-24559 | MEDIUM | 5.4 | 0.2% | Jan 16, 2024 | The Qyrr WordPress plugin before 0.7 does not escape the data-uri of the QR Code when outputting it in a src attribute, ... |
| CVE-2021-24433 | MEDIUM | 5.4 | 0.4% | Jan 16, 2024 | The simple sort&search WordPress plugin through 0.0.3 does not make sure that the indexurl parameter of the shortcodes "... |
| CVE-2021-24432 | MEDIUM | 6.1 | 0.4% | Jan 16, 2024 | The Advanced AJAX Product Filters WordPress plugin does not sanitise the 'term_id' POST parameter before outputting it i... |
| CVE-2021-24151 | HIGH | 7.2 | 0.8% | Jan 16, 2024 | The WP Editor WordPress plugin before 1.2.7 did not sanitise or validate its setting fields leading to an authenticated ... |
| CVE-2021-4432 | HIGH | 7.5 | 1.3% | Jan 16, 2024 | A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as problematic. This affects an unknown part... |
| CVE-2021-3600 | HIGH | 7.8 | 0.3% | Jan 8, 2024 | It was discovered that the eBPF implementation in the Linux kernel did not properly track bounds information for 32 bit ... |
| CVE-2021-45465 | HIGH | 7.8 | 0.3% | Jan 4, 2024 | A vulnerability has been identified in syngo fastView (All versions). The affected application lacks proper validation o... |
| CVE-2021-42028 | HIGH | 7.8 | 0.3% | Jan 4, 2024 | A vulnerability has been identified in syngo fastView (All versions). The affected application lacks proper validation o... |
| CVE-2021-40367 | HIGH | 7.8 | 0.3% | Jan 4, 2024 | A vulnerability has been identified in syngo fastView (All versions). The affected application lacks proper validation o... |
| CVE-2021-46901 | HIGH | 7.5 | 0.7% | Dec 31, 2023 | examples/6lbr/apps/6lbr-webserver/httpd.c in CETIC-6LBR (aka 6lbr) 1.5.0 has a strcat stack-based buffer overflow via a ... |
| CVE-2021-46900 | HIGH | 7.5 | 0.4% | Dec 31, 2023 | Sympa before 6.2.62 relies on a cookie parameter for certain security objectives, but does not ensure that this paramete... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now