2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2021-45467CRITICAL9.8In CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1107, an unauthenticated attacker can use %00 bytes to c...
CVE-2021-45466CRITICAL9.8In CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1107, attackers can make a crafted request to api/?api=a...
CVE-2021-4279CRITICAL9.8A vulnerability has been found in Starcounter-Jack JSON-Patch up to 3.1.0 and classified as problematic. This vulnerabil...
CVE-2021-32692CRITICAL9.6Activity Watch is a free and open-source automated time tracker. Versions prior to 0.11.0 allow an attacker to execute a...
CVE-2021-4140CRITICAL10It was possible to construct specific XSLT markup that would be able to bypass an iframe sandbox. This vulnerability aff...
CVE-2021-4129CRITICAL9.8Mozilla developers and community members Julian Hector, Randell Jesup, Gabriele Svelto, Tyson Smith, Christian Holler, a...
CVE-2021-4127CRITICAL9.8An out of date graphics library (Angle) likely contained vulnerabilities that could potentially be exploited. This vulne...
CVE-2021-33640CRITICAL9.8After tar_close(), libtar.c releases the memory pointed to by pointer t. After tar_close() is called in the list() funct...
CVE-2021-4262CRITICAL9.8A vulnerability classified as critical was found in laravel-jqgrid. Affected by this vulnerability is the function getRo...
CVE-2021-4261CRITICAL9.8A vulnerability classified as critical has been found in pacman-canvas up to 1.0.5. Affected is the function addHighscor...
CVE-2021-4259CRITICAL9.8A vulnerability was found in phpRedisAdmin up to 1.16.1. It has been classified as problematic. This affects the functio...
CVE-2021-4248CRITICAL9.8A vulnerability was found in kapetan dns up to 6.1.0. It has been rated as problematic. Affected by this issue is some u...
CVE-2021-4246CRITICAL9.8A vulnerability was found in roxlukas LMeve and classified as critical. Affected by this issue is some unknown functiona...
CVE-2021-38241CRITICAL9.8Deserialization issue discovered in Ruoyi before 4.6.1 allows remote attackers to run arbitrary code via weak cipher in ...
CVE-2021-31650CRITICAL9.8A SQL injection vulnerability in Sourcecodester Online Grading System 1.0 allows remote attackers to execute arbitrary S...
CVE-2021-4245CRITICAL9.8A vulnerability classified as problematic has been found in chbrown rfc6902. This affects an unknown part of the file po...
CVE-2021-4226CRITICAL9.8RSFirewall tries to identify the original IP address by looking at different HTTP headers. A bypass is possible due to t...
CVE-2021-39426CRITICAL9.8An issue was discovered in /Upload/admin/admin_notify.php in Seacms 11.4 allows attackers to execute arbitrary php code ...
CVE-2021-33420CRITICAL9.8A deserialization issue discovered in inikulin replicator before 1.0.4 allows remote attackers to run arbitrary code via...
CVE-2021-3942CRITICAL9.8Certain HP Print products and Digital Sending products may be vulnerable to potential remote code execution and buffer o...
CVE-2021-3919CRITICAL9.8A potential security vulnerability has been identified in OMEN Gaming Hub and in HP Command Center which may allow escal...
CVE-2021-3821CRITICAL9.8A potential security vulnerability has been identified for certain HP multifunction printers (MFPs). The vulnerability m...
CVE-2021-3437CRITICAL9.8Potential security vulnerabilities have been identified in an OMEN Gaming Hub SDK package which may allow escalation of ...
CVE-2021-35284CRITICAL9.8SQL Injection vulnerability in function get_user in login_manager.php in rizalafani cms-php v1.
CVE-2021-24649CRITICAL9.8The WP User Frontend WordPress plugin before 3.5.29 uses a user supplied argument called urhidden in its registration fo...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now