2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-46502 | MEDIUM | 5.5 | 0.7% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a heap-use-after-free via /usr/lib/x86_64-linux-gnu/libasan.so.4+0x5166d. This vu... |
| CVE-2021-46501 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a heap-use-after-free via SortSubCmd in src/jsiArray.c. This vulnerability can le... |
| CVE-2021-46500 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a heap-use-after-free via jsi_ArgTypeCheck in src/jsiFunc.c. This vulnerability c... |
| CVE-2021-46499 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a heap-use-after-free via jsi_ValueCopyMove in src/jsiValue.c. This vulnerability... |
| CVE-2021-46498 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a heap-use-after-free via jsi_wswebsocketObjFree in src/jsiWebSocket.c. This vuln... |
| CVE-2021-46497 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a heap-use-after-free via jsi_UserObjDelete in src/jsiUserObj.c. This vulnerabili... |
| CVE-2021-46496 | MEDIUM | 5.5 | 0.7% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a heap-use-after-free via Jsi_ObjFree in src/jsiObj.c. This vulnerability can lea... |
| CVE-2021-46495 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a heap-use-after-free via DeleteTreeValue in src/jsiObj.c. This vulnerability can... |
| CVE-2021-46494 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a heap-use-after-free via jsi_ValueLookupBase in src/jsiValue.c. This vulnerabili... |
| CVE-2021-46492 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a SEGV vulnerability via Jsi_FunctionInvoke at src/jsiFunc.c. This vulnerability ... |
| CVE-2021-46491 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a SEGV vulnerability via Jsi_CommandPkgOpts at src/jsiCmds.c. This vulnerability ... |
| CVE-2021-46490 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a SEGV vulnerability via NumberConstructor at src/jsiNumber.c. This vulnerability... |
| CVE-2021-46489 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a heap-use-after-free via Jsi_DecrRefCount in src/jsiValue.c. This vulnerability ... |
| CVE-2021-46488 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a SEGV vulnerability via jsi_ArrayConcatCmd at src/jsiArray.c. This vulnerability... |
| CVE-2021-46487 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a SEGV vulnerability via /lib/x86_64-linux-gnu/libc.so.6+0x18e506. This vulnerabi... |
| CVE-2021-46486 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a SEGV vulnerability via jsi_ArraySpliceCmd at src/jsiArray.c. This vulnerability... |
| CVE-2021-46485 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a SEGV vulnerability via Jsi_ValueIsNumber at src/jsiValue.c. This vulnerability ... |
| CVE-2021-46484 | MEDIUM | 5.5 | 0.6% | Jan 27, 2022 | Jsish v3.5.0 was discovered to contain a heap-use-after-free via Jsi_IncrRefCount in src/jsiValue.c. This vulnerability ... |
| CVE-2021-46065 | MEDIUM | 4.8 | 91.7% | Jan 27, 2022 | A Cross-site scripting (XSS) vulnerability in Secondary Email Field in Zoho ManageEngine ServiceDesk Plus 11.3 Build 113... |
| CVE-2021-28096 | MEDIUM | 5.3 | 0.9% | Jan 27, 2022 | An issue was discovered in Stormshield SNS before 4.2.3 (when the proxy is used). An attacker can saturate the proxy con... |
| CVE-2021-44795 | MEDIUM | 5.3 | 0.9% | Jan 27, 2022 | Single Connect does not perform an authorization check when using the "sc-assigned-credential-ui" module. A remote attac... |
| CVE-2021-44794 | MEDIUM | 5.3 | 1.0% | Jan 27, 2022 | Single Connect does not perform an authorization check when using the "sc-diagnostic-ui" module. A remote attacker could... |
| CVE-2021-44792 | MEDIUM | 5.3 | 1.0% | Jan 27, 2022 | Single Connect does not perform an authorization check when using the "log-monitor" module. A remote attacker could expl... |
| CVE-2021-41166 | MEDIUM | 5.3 | 0.9% | Jan 26, 2022 | The Nextcloud Android app is the Android client for Nextcloud, a self-hosted productivity platform. An issue in versions... |
| CVE-2021-32841 | MEDIUM | 5.3 | 1.1% | Jan 26, 2022 | SharpZipLib (or #ziplib) is a Zip, GZip, Tar and BZip2 library. Starting version 1.3.0 and prior to version 1.3.3, a che... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now