2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-40575 | MEDIUM | 5.5 | 0.9% | Jan 13, 2022 | The binary MP4Box in Gpac 1.0.1 has a null pointer dereference vulnerability in the mpgviddmx_process function in refram... |
| CVE-2021-40573 | MEDIUM | 5.5 | 0.7% | Jan 13, 2022 | The binary MP4Box in Gpac 1.0.1 has a double-free vulnerability in the gf_list_del function in list.c, which allows atta... |
| CVE-2021-40572 | MEDIUM | 5.5 | 0.9% | Jan 13, 2022 | The binary MP4Box in Gpac 1.0.1 has a double-free bug in the av1dmx_finalize function in reframe_av1.c, which allows att... |
| CVE-2021-40813 | MEDIUM | 5.4 | 0.7% | Jan 13, 2022 | A cross-site scripting (XSS) vulnerability in the "Zip content" feature in Element-IT HTTP Commander 3.1.9 allows remote... |
| CVE-2021-40569 | MEDIUM | 5.5 | 0.9% | Jan 13, 2022 | The binary MP4Box in Gpac through 1.0.1 has a double-free vulnerability in the iloc_entry_del funciton in box_code_meta.... |
| CVE-2021-40567 | MEDIUM | 5.5 | 0.9% | Jan 13, 2022 | Segmentation fault vulnerability exists in Gpac through 1.0.1 via the gf_odf_size_descriptor function in desc_private.c ... |
| CVE-2021-39056 | MEDIUM | 6.5 | 1.3% | Jan 13, 2022 | The IBM i 7.1, 7.2, 7.3, and 7.4 Extended Dynamic Remote SQL server (EDRSQL) could allow a remote authenticated user to ... |
| CVE-2021-40327 | MEDIUM | 5.9 | 1.2% | Jan 13, 2022 | Trusted Firmware-M (TF-M) 1.4.0, when Profile Small is used, has incorrect access control. NSPE can access a secure key ... |
| CVE-2021-23824 | MEDIUM | 6.1 | 0.9% | Jan 13, 2022 | This affects the package Crow before 0.3+4. When using attributes without quotes in the template, an attacker can manipu... |
| CVE-2021-30314 | MEDIUM | 5.5 | 0.1% | Jan 13, 2022 | Lack of validation for third party application accessing the service can lead to information disclosure in Snapdragon Au... |
| CVE-2021-30313 | MEDIUM | 6.4 | 0.1% | Jan 13, 2022 | Use after free condition can occur in wired connectivity due to a race condition while creating and deleting folders in ... |
| CVE-2021-40566 | MEDIUM | 5.5 | 0.8% | Jan 12, 2022 | A Segmentation fault casued by heap use after free vulnerability exists in Gpac through 1.0.1 via the mpgviddmx_process ... |
| CVE-2021-40565 | MEDIUM | 5.5 | 0.8% | Jan 12, 2022 | A Segmentation fault caused by a null pointer dereference vulnerability exists in Gpac through 1.0.1 via the gf_avc_pars... |
| CVE-2021-40564 | MEDIUM | 5.5 | 0.8% | Jan 12, 2022 | A Segmentation fault caused by null pointer dereference vulnerability eists in Gpac through 1.0.2 via the avc_parse_slic... |
| CVE-2021-40563 | MEDIUM | 5.5 | 0.8% | Jan 12, 2022 | A Segmentation fault exists casued by null pointer dereference exists in Gpac through 1.0.1 via the naludmx_create_avc_d... |
| CVE-2021-40562 | MEDIUM | 5.5 | 0.8% | Jan 12, 2022 | A Segmentation fault caused by a floating point exception exists in Gpac through 1.0.1 using mp4box via the naludmx_enqu... |
| CVE-2021-40559 | MEDIUM | 5.5 | 0.7% | Jan 12, 2022 | A null pointer deference vulnerability exists in gpac through 1.0.1 via the naludmx_parse_nal_avc function in reframe_na... |
| CVE-2021-37530 | MEDIUM | 5.5 | 0.7% | Jan 12, 2022 | A denial of service vulnerabiity exists in fig2dev through 3.28a due to a segfault in the open_stream function in readpi... |
| CVE-2021-37529 | MEDIUM | 5.5 | 0.7% | Jan 12, 2022 | A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, ... |
| CVE-2021-46225 | MEDIUM | 6.5 | 1.0% | Jan 12, 2022 | A buffer overflow in the GmfOpenMesh() function of libMeshb v7.61 allows attackers to cause a Denial of Service (DoS) vi... |
| CVE-2021-45449 | MEDIUM | 5.5 | 0.4% | Jan 12, 2022 | Docker Desktop version 4.3.0 and 4.3.1 has a bug that may log sensitive information (access token or password) on the us... |
| CVE-2021-42558 | MEDIUM | 6.1 | 1.1% | Jan 12, 2022 | An issue was discovered in CALDERA 2.8.1. It contains multiple reflected, stored, and self XSS vulnerabilities that may ... |
| CVE-2021-43960 | MEDIUM | 4.8 | 0.6% | Jan 12, 2022 | Lorensbergs Connect2 3.13.7647.20190 is affected by an XSS vulnerability. Exploitation requires administrator privileges... |
| CVE-2021-35500 | MEDIUM | 5.5 | 0.6% | Jan 12, 2022 | The Data Virtualization Server component of TIBCO Software Inc.'s TIBCO Data Virtualization, TIBCO Data Virtualization, ... |
| CVE-2021-28377 | MEDIUM | 5.3 | 8.2% | Jan 12, 2022 | ChronoForums 2.0.11 allows av Directory Traversal to read arbitrary files. |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now