2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-46527 | HIGH | 7.8 | 0.7% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via mjs_get_cstring at src/mjs_string.c. |
| CVE-2021-46526 | HIGH | 7.8 | 0.7% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a global buffer overflow via snquote at src/mjs_json.c. |
| CVE-2021-46525 | HIGH | 7.8 | 0.8% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a heap-use-after-free via mjs_apply at src/mjs_exec.c. |
| CVE-2021-46524 | HIGH | 7.8 | 0.7% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via snquote at mjs/src/mjs_json.c. |
| CVE-2021-46523 | HIGH | 7.8 | 0.7% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via to_json_or_debug at mjs/src/mjs_json.c. |
| CVE-2021-46522 | HIGH | 7.8 | 0.7% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via /usr/lib/x86_64-linux-gnu/libasan.so.4+0xaff53. |
| CVE-2021-46521 | HIGH | 7.8 | 0.7% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a global buffer overflow via c_vsnprintf at mjs/src/common/str_util.c. |
| CVE-2021-46520 | HIGH | 7.8 | 0.7% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via mjs_jprintf at src/mjs_util.c. |
| CVE-2021-46519 | HIGH | 7.8 | 0.7% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via mjs_array_length at src/mjs_array.c. |
| CVE-2021-46518 | HIGH | 7.8 | 0.7% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a heap buffer overflow via mjs_disown at src/mjs_core.c. |
| CVE-2021-46513 | HIGH | 7.8 | 0.7% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a global buffer overflow via mjs_mk_string at mjs/src/mjs_string.c. |
| CVE-2021-46509 | HIGH | 7.8 | 0.7% | Jan 27, 2022 | Cesanta MJS v2.20.0 was discovered to contain a stack overflow via snquote at mjs/src/mjs_json.c. |
| CVE-2021-46102 | HIGH | 7.5 | 1.9% | Jan 27, 2022 | From version 0.2.14 to 0.2.16 for Solana rBPF, function "relocate" in the file src/elf.rs has an integer overflow bug be... |
| CVE-2021-46097 | HIGH | 8.8 | 2.3% | Jan 27, 2022 | Dolphinphp v1.5.0 contains a remote code execution vulnerability in /application/common.php#action_log |
| CVE-2021-46088 | HIGH | 7.2 | 4.0% | Jan 27, 2022 | Zabbix 4.0 LTS, 4.2, 4.4, and 5.0 LTS is vulnerable to Remote Code Execution (RCE). Any user with the "Zabbix Admin" rol... |
| CVE-2021-44793 | HIGH | 8.6 | 1.4% | Jan 27, 2022 | Single Connect does not perform an authorization check when using the sc-reports-ui" module. A remote attacker could exp... |
| CVE-2021-32849 | HIGH | 8.8 | 7.6% | Jan 26, 2022 | Gerapy is a distributed crawler management framework. Prior to version 0.9.9, an authenticated user could execute arbitr... |
| CVE-2021-46385 | HIGH | 7.5 | 1.5% | Jan 26, 2022 | https://gitee.com/mingSoft/MCMS MCMS <=5.2.5 is affected by: SQL Injection. The impact is: obtain sensitive information ... |
| CVE-2021-46114 | HIGH | 8.8 | 1.7% | Jan 26, 2022 | jpress v 4.2.0 is vulnerable to RCE via io.jpress.module.product.ProductNotifyKit#doSendEmail. The admin panel provides ... |
| CVE-2021-46561 | HIGH | 7.2 | 0.8% | Jan 26, 2022 | controller/org.controller/org.controller.js in the CVE Services API 1.1.1 before 5c50baf3bda28133a3bc90b854765a64fb53830... |
| CVE-2021-29845 | HIGH | 8.8 | 0.8% | Jan 26, 2022 | IBM Security Guardium Insights 3.0 could allow an authenticated user to perform unauthorized actions due to improper inp... |
| CVE-2021-46383 | HIGH | 7.5 | 1.6% | Jan 26, 2022 | https://gitee.com/mingSoft/MCMS MCMS <=5.2.5 is affected by: SQL Injection. The impact is: obtain sensitive information ... |
| CVE-2021-46118 | HIGH | 7.2 | 2.8% | Jan 26, 2022 | jpress 4.2.0 is vulnerable to remote code execution via io.jpress.module.article.kit.ArticleNotifyKit#doSendEmail. The a... |
| CVE-2021-46116 | HIGH | 7.2 | 2.5% | Jan 26, 2022 | jpress 4.2.0 is vulnerable to remote code execution via io.jpress.web.admin._TemplateController#doInstall. The admin pan... |
| CVE-2021-46115 | HIGH | 7.2 | 1.3% | Jan 26, 2022 | jpress 4.2.0 is vulnerable to RCE via io.jpress.web.admin._TemplateController#doUploadFile. The admin panel provides a f... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now