2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-45467 | CRITICAL | 9.8 | 70.9% | Dec 26, 2022 | In CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1107, an unauthenticated attacker can use %00 bytes to c... |
| CVE-2021-45466 | CRITICAL | 9.8 | 55.3% | Dec 26, 2022 | In CWP (aka Control Web Panel or CentOS Web Panel) before 0.9.8.1107, attackers can make a crafted request to api/?api=a... |
| CVE-2021-4279 | CRITICAL | 9.8 | 1.1% | Dec 25, 2022 | A vulnerability has been found in Starcounter-Jack JSON-Patch up to 3.1.0 and classified as problematic. This vulnerabil... |
| CVE-2021-32692 | CRITICAL | 9.6 | 0.7% | Dec 23, 2022 | Activity Watch is a free and open-source automated time tracker. Versions prior to 0.11.0 allow an attacker to execute a... |
| CVE-2021-4140 | CRITICAL | 10 | 1.3% | Dec 22, 2022 | It was possible to construct specific XSLT markup that would be able to bypass an iframe sandbox. This vulnerability aff... |
| CVE-2021-4129 | CRITICAL | 9.8 | 1.0% | Dec 22, 2022 | Mozilla developers and community members Julian Hector, Randell Jesup, Gabriele Svelto, Tyson Smith, Christian Holler, a... |
| CVE-2021-4127 | CRITICAL | 9.8 | 0.9% | Dec 22, 2022 | An out of date graphics library (Angle) likely contained vulnerabilities that could potentially be exploited. This vulne... |
| CVE-2021-33640 | CRITICAL | 9.8 | 0.6% | Dec 19, 2022 | After tar_close(), libtar.c releases the memory pointed to by pointer t. After tar_close() is called in the list() funct... |
| CVE-2021-4262 | CRITICAL | 9.8 | 0.6% | Dec 19, 2022 | A vulnerability classified as critical was found in laravel-jqgrid. Affected by this vulnerability is the function getRo... |
| CVE-2021-4261 | CRITICAL | 9.8 | 0.6% | Dec 19, 2022 | A vulnerability classified as critical has been found in pacman-canvas up to 1.0.5. Affected is the function addHighscor... |
| CVE-2021-4259 | CRITICAL | 9.8 | 0.8% | Dec 19, 2022 | A vulnerability was found in phpRedisAdmin up to 1.16.1. It has been classified as problematic. This affects the functio... |
| CVE-2021-4248 | CRITICAL | 9.8 | 0.8% | Dec 18, 2022 | A vulnerability was found in kapetan dns up to 6.1.0. It has been rated as problematic. Affected by this issue is some u... |
| CVE-2021-4246 | CRITICAL | 9.8 | 0.5% | Dec 17, 2022 | A vulnerability was found in roxlukas LMeve and classified as critical. Affected by this issue is some unknown functiona... |
| CVE-2021-38241 | CRITICAL | 9.8 | 1.0% | Dec 16, 2022 | Deserialization issue discovered in Ruoyi before 4.6.1 allows remote attackers to run arbitrary code via weak cipher in ... |
| CVE-2021-31650 | CRITICAL | 9.8 | 1.4% | Dec 16, 2022 | A SQL injection vulnerability in Sourcecodester Online Grading System 1.0 allows remote attackers to execute arbitrary S... |
| CVE-2021-4245 | CRITICAL | 9.8 | 1.3% | Dec 15, 2022 | A vulnerability classified as problematic has been found in chbrown rfc6902. This affects an unknown part of the file po... |
| CVE-2021-4226 | CRITICAL | 9.8 | 0.5% | Dec 15, 2022 | RSFirewall tries to identify the original IP address by looking at different HTTP headers. A bypass is possible due to t... |
| CVE-2021-39426 | CRITICAL | 9.8 | 0.9% | Dec 15, 2022 | An issue was discovered in /Upload/admin/admin_notify.php in Seacms 11.4 allows attackers to execute arbitrary php code ... |
| CVE-2021-33420 | CRITICAL | 9.8 | 1.6% | Dec 15, 2022 | A deserialization issue discovered in inikulin replicator before 1.0.4 allows remote attackers to run arbitrary code via... |
| CVE-2021-3942 | CRITICAL | 9.8 | 1.4% | Dec 12, 2022 | Certain HP Print products and Digital Sending products may be vulnerable to potential remote code execution and buffer o... |
| CVE-2021-3919 | CRITICAL | 9.8 | 0.8% | Dec 12, 2022 | A potential security vulnerability has been identified in OMEN Gaming Hub and in HP Command Center which may allow escal... |
| CVE-2021-3821 | CRITICAL | 9.8 | 0.9% | Dec 12, 2022 | A potential security vulnerability has been identified for certain HP multifunction printers (MFPs). The vulnerability m... |
| CVE-2021-3437 | CRITICAL | 9.8 | 15.6% | Dec 12, 2022 | Potential security vulnerabilities have been identified in an OMEN Gaming Hub SDK package which may allow escalation of ... |
| CVE-2021-35284 | CRITICAL | 9.8 | 0.7% | Nov 23, 2022 | SQL Injection vulnerability in function get_user in login_manager.php in rizalafani cms-php v1. |
| CVE-2021-24649 | CRITICAL | 9.8 | 0.6% | Nov 21, 2022 | The WP User Frontend WordPress plugin before 3.5.29 uses a user supplied argument called urhidden in its registration fo... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now