2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-36503 | CRITICAL | 9.8 | 0.9% | Feb 3, 2023 | SQL injection vulnerability in native-php-cms 1.0 allows remote attackers to run arbitrary SQL commands via the cat para... |
| CVE-2021-36484 | CRITICAL | 9.8 | 0.9% | Feb 3, 2023 | SQL injection vulnerability in JIZHICMS 1.9.5 allows attackers to run arbitrary SQL commands via add or edit article pag... |
| CVE-2021-36434 | CRITICAL | 9.1 | 0.9% | Feb 3, 2023 | SQL injection vulnerability in jocms 0.8 allows remote attackers to run arbitrary SQL commands and view sentivie informa... |
| CVE-2021-36433 | CRITICAL | 9.1 | 0.9% | Feb 3, 2023 | SQL injection vulnerability in jocms 0.8 allows remote attackers to run arbitrary SQL commands and view sentivie informa... |
| CVE-2021-36431 | CRITICAL | 9.1 | 0.9% | Feb 3, 2023 | SQL injection vulnerability in jocms 0.8 allows remote attackers to run arbitrary SQL commands and view sentivie informa... |
| CVE-2021-36424 | CRITICAL | 9.8 | 1.2% | Feb 3, 2023 | An issue discovered in phpwcms 1.9.25 allows remote attackers to run arbitrary code via DB user field during installatio... |
| CVE-2021-43445 | CRITICAL | 9.8 | 1.7% | Jan 23, 2023 | ONLYOFFICE all versions as of 2021-11-08 is affected by Incorrect Access Control. An attacker can authenticate with the ... |
| CVE-2021-26644 | CRITICAL | 9.8 | 0.9% | Jan 20, 2023 | SQL-Injection vulnerability caused by the lack of verification of input values for the table name of DB used by the Mang... |
| CVE-2021-26642 | CRITICAL | 9.8 | 1.2% | Jan 20, 2023 | When uploading an image file to a bulletin board developed with XpressEngine, a vulnerability in which an arbitrary file... |
| CVE-2021-4313 | CRITICAL | 9.8 | 0.7% | Jan 16, 2023 | A vulnerability was found in NethServer phonenehome. It has been rated as critical. This issue affects the function get_... |
| CVE-2021-4311 | CRITICAL | 9.8 | 0.7% | Jan 9, 2023 | A vulnerability classified as problematic was found in Talend Open Studio for MDM. This vulnerability affects unknown co... |
| CVE-2021-4308 | CRITICAL | 9.8 | 0.7% | Jan 8, 2023 | A vulnerability was found in WebPA up to 3.1.1. It has been rated as critical. This issue affects some unknown processin... |
| CVE-2021-4301 | CRITICAL | 9.8 | 0.7% | Jan 7, 2023 | A vulnerability was found in slackero phpwcms up to 1.9.26 and classified as critical. Affected by this issue is some un... |
| CVE-2021-4307 | CRITICAL | 9.8 | 1.3% | Jan 7, 2023 | A vulnerability was found in Yomguithereal Baobab up to 2.6.0. It has been declared as critical. Affected by this vulner... |
| CVE-2021-40342 | CRITICAL | 9.8 | 0.3% | Jan 5, 2023 | In the DES implementation, the affected product versions use a default key for encryption. Successful exploitation allo... |
| CVE-2021-4304 | CRITICAL | 9.8 | 2.1% | Jan 5, 2023 | A vulnerability was found in eprintsug ulcc-core. It has been declared as critical. Affected by this vulnerability is an... |
| CVE-2021-4300 | CRITICAL | 9.8 | 0.7% | Jan 4, 2023 | A vulnerability has been found in ghostlander Halcyon and classified as critical. Affected by this vulnerability is the ... |
| CVE-2021-32824 | CRITICAL | 9.8 | 2.9% | Jan 3, 2023 | Apache Dubbo is a java based, open source RPC framework. Versions prior to 2.6.10 and 2.7.10 are vulnerable to pre-auth ... |
| CVE-2021-4298 | CRITICAL | 9.8 | 0.7% | Jan 2, 2023 | A vulnerability classified as critical has been found in Hesburgh Libraries of Notre Dame Sipity. This affects the funct... |
| CVE-2021-4297 | CRITICAL | 9.8 | 0.6% | Jan 1, 2023 | A vulnerability has been found in trampgeek jobe up to 1.6.4 and classified as problematic. This vulnerability affects t... |
| CVE-2021-4295 | CRITICAL | 9.8 | 0.7% | Dec 29, 2022 | A vulnerability classified as problematic was found in ONC code-validator-api up to 1.0.30. This vulnerability affects t... |
| CVE-2021-4290 | CRITICAL | 9.8 | 0.6% | Dec 27, 2022 | A vulnerability was found in DHBW Fallstudie. It has been declared as critical. Affected by this vulnerability is an unk... |
| CVE-2021-4238 | CRITICAL | 9.1 | 1.3% | Dec 27, 2022 | Randomly-generated alphanumeric strings contain significantly less entropy than expected. The RandomAlphaNumeric and Cry... |
| CVE-2021-4236 | CRITICAL | 9.8 | 1.1% | Dec 27, 2022 | Web Sockets do not execute any AuthenticateMethod methods which may be set, leading to a nil pointer dereference if the ... |
| CVE-2021-4281 | CRITICAL | 9.8 | 1.8% | Dec 26, 2022 | A vulnerability was found in Brave UX for-the-badge and classified as critical. Affected by this issue is some unknown f... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now