2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-43554HIGH7.8FATEK WinProladder Versions 3.30_24518 and prior are vulnerable to an out-of-bounds write while processing project files...
CVE-2021-42583HIGH7.5A Broken or Risky Cryptographic Algorithm exists in Max Mazurov Maddy before 0.5.2, which is an unnecessary risk that ma...
CVE-2021-35032HIGH7.8A vulnerability in the 'libsal.so' of the Zyxel GS1900 series firmware version 2.60 could allow an authenticated local u...
CVE-2021-35031HIGH8A vulnerability in the TFTP client of Zyxel GS1900 series firmware, XGS1210 series firmware, and XGS1250 series firmware...
CVE-2021-20873HIGH8.1Yappli is an application development platform which provides the function to access a requested URL using Custom URL Sch...
CVE-2021-45911HIGH7.8An issue was discovered in gif2apng 1.9. There is a heap-based buffer overflow in the main function. It allows an attack...
CVE-2021-45910HIGH7.8An issue was discovered in gif2apng 1.9. There is a heap-based buffer overflow within the main function. It allows an at...
CVE-2021-45909HIGH7.8An issue was discovered in gif2apng 1.9. There is a heap-based buffer overflow vulnerability in the DecodeLZW function. ...
CVE-2021-45908HIGH7.8An issue was discovered in gif2apng 1.9. There is a stack-based buffer overflow involving a while loop. An attacker has ...
CVE-2021-45907HIGH7.8An issue was discovered in gif2apng 1.9. There is a stack-based buffer overflow involving a for loop. An attacker has li...
CVE-2021-45896HIGH8.8Nokia FastMile 3TG00118ABAD52 devices allow privilege escalation by an authenticated user via is_ctc_admin=1 to login_we...
CVE-2021-45884HIGH7.5In Brave Desktop 1.17 through 1.33 before 1.33.106, when CNAME-based adblocking and a proxying extension with a SOCKS fa...
CVE-2021-43858HIGH8.8MinIO is a Kubernetes native application for cloud storage. Prior to version `RELEASE.2021-12-27T07-23-18Z`, a malicious...
CVE-2021-4161HIGH7.5The affected products contain vulnerable firmware, which could allow an attacker to sniff the traffic and decrypt login ...
CVE-2021-43857HIGH8.8Gerapy is a distributed crawler management framework. Gerapy prior to version 0.9.8 is vulnerable to remote code executi...
CVE-2021-33017HIGH8.8The standard access path of the IntelliBridge EC 40 and 60 Hub (C.00.04 and prior) requires authentication, but the prod...
CVE-2021-32993HIGH8.8IntelliBridge EC 40 and 60 Hub (C.00.04 and prior) contains hard-coded credentials, such as a password or a cryptographi...
CVE-2021-23244HIGH7.8ColorOS pregrant dangerous permissions to apps which are listed in a whitelist xml named default-grant-permissions.But s...
CVE-2021-21751HIGH8.1ZTE BigVideo analysis product has an input verification vulnerability. Due to the inconsistency between the front and ba...
CVE-2021-21750HIGH7.8ZTE BigVideo Analysis product has a privilege escalation vulnerability. Due to improper management of the timed task mod...
CVE-2021-45339HIGH7.8Privilege escalation vulnerability in Avast Antivirus prior to 20.4 allows a local user to gain elevated privileges by "...
CVE-2021-45338HIGH7.8Multiple privilege escalation vulnerabilities in Avast Antivirus prior to 20.4 allow a local user to gain elevated privi...
CVE-2021-45337HIGH8.8Privilege escalation vulnerability in the Self-Defense driver of Avast Antivirus prior to 20.8 allows a local user with ...
CVE-2021-45336HIGH8.8Privilege escalation vulnerability in the Sandbox component of Avast Antivirus prior to 20.4 allows a local sandboxed co...
CVE-2021-45335HIGH8.8Sandbox component in Avast Antivirus prior to 20.4 has an insecure permission which could be abused by local user to con...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now