2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-40058 | HIGH | 7.5 | 0.7% | Mar 10, 2022 | There is a heap-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerabilit... |
| CVE-2021-40057 | HIGH | 7.5 | 0.7% | Mar 10, 2022 | There is a heap-based and stack-based buffer overflow vulnerability in the video framework. Successful exploitation of t... |
| CVE-2021-40056 | HIGH | 7.5 | 0.7% | Mar 10, 2022 | There is a vulnerability of copying input buffer without checking its size in the video framework. Successful exploitati... |
| CVE-2021-40054 | HIGH | 7.5 | 0.6% | Mar 10, 2022 | There is an integer underflow vulnerability in the atcmdserver module. Successful exploitation of this vulnerability may... |
| CVE-2021-40052 | HIGH | 7.5 | 0.7% | Mar 10, 2022 | There is an incorrect buffer size calculation vulnerability in the video framework.Successful exploitation of this vulne... |
| CVE-2021-40051 | HIGH | 7.5 | 0.7% | Mar 10, 2022 | There is an unauthorized access vulnerability in system components. Successful exploitation of this vulnerability will a... |
| CVE-2021-40049 | HIGH | 7.5 | 0.7% | Mar 10, 2022 | There is a permission control vulnerability in the PMS module. Successful exploitation of this vulnerability can lead to... |
| CVE-2021-40048 | HIGH | 7.5 | 0.7% | Mar 10, 2022 | There is an incorrect buffer size calculation vulnerability in the video framework. Successful exploitation of this vuln... |
| CVE-2021-40047 | HIGH | 7.5 | 0.6% | Mar 10, 2022 | There is a vulnerability of memory not being released after effective lifetime in the Bastet module. Successful exploita... |
| CVE-2021-3739 | HIGH | 7.1 | 0.6% | Mar 10, 2022 | A NULL pointer dereference flaw was found in the btrfs_rm_device function in fs/btrfs/volumes.c in the Linux Kernel, whe... |
| CVE-2021-3698 | HIGH | 7.5 | 0.7% | Mar 10, 2022 | A flaw was found in Cockpit in versions prior to 260 in the way it handles the certificate verification performed by the... |
| CVE-2021-32025 | HIGH | 7.8 | 0.2% | Mar 10, 2022 | An elevation of privilege vulnerability in the QNX Neutrino Kernel of affected versions of QNX Software Development Plat... |
| CVE-2021-38296 | HIGH | 7.5 | 1.8% | Mar 10, 2022 | Apache Spark supports end-to-end encryption of RPC connections via "spark.authenticate" and "spark.network.crypto.enable... |
| CVE-2021-22783 | HIGH | 7.6 | 0.4% | Mar 9, 2022 | A CWE-200: Information Exposure vulnerability exists which could allow a session hijack when the door panel is communica... |
| CVE-2021-36777 | HIGH | 8.8 | 0.9% | Mar 9, 2022 | A Reliance on Untrusted Inputs in a Security Decision vulnerability in the login proxy of the openSUSE Build service all... |
| CVE-2021-42020 | HIGH | 7.5 | 0.9% | Mar 8, 2022 | A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i80... |
| CVE-2021-42016 | HIGH | 7.5 | 0.6% | Mar 8, 2022 | A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i801, RUGGEDCOM i802, RUGGEDCOM i803, RUGGEDCOM M2100, ... |
| CVE-2021-43944 | HIGH | 7.2 | 2.2% | Mar 8, 2022 | This issue exists to document that a security improvement in the way that Jira Server and Data Center use templates has ... |
| CVE-2021-4199 | HIGH | 7.8 | 0.8% | Mar 7, 2022 | Incorrect Permission Assignment for Critical Resource vulnerability in the crash handling component BDReinit.exe as used... |
| CVE-2021-25087 | HIGH | 7.5 | 1.5% | Mar 7, 2022 | The Download Manager WordPress plugin before 3.2.35 does not have any authorisation checks in some of the REST API endpo... |
| CVE-2021-24952 | HIGH | 8.8 | 1.3% | Mar 7, 2022 | The Conversios.io WordPress plugin before 4.6.2 does not sanitise, validate and escape the sync_progressive_data paramet... |
| CVE-2021-24778 | HIGH | 7.2 | 1.3% | Mar 7, 2022 | The test parameter of the xmlfeed in the Tradetracker-Store WordPress plugin before 4.6.60 is not sanitised, escaped or ... |
| CVE-2021-24777 | HIGH | 7.2 | 1.3% | Mar 7, 2022 | The view submission functionality in the Hotscot Contact Form WordPress plugin before 1.3 makes a get request with the s... |
| CVE-2021-24216 | HIGH | 7.2 | 1.7% | Mar 7, 2022 | The All-in-One WP Migration WordPress plugin before 7.41 does not validate uploaded files' extension, which allows admin... |
| CVE-2021-44827 | HIGH | 8.8 | 54.0% | Mar 4, 2022 | There is remote authenticated OS command injection on TP-Link Archer C20i 0.9.1 3.2 v003a.0 Build 170221 Rel.55462n devi... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now