2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-46053MEDIUM5.5A Denial of Service vulnerability exists in Binaryen 103. The program terminates with signal SIGKILL.
CVE-2021-46052MEDIUM5.5A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::Tuple::validate.
CVE-2021-46051MEDIUM5.5A Pointer Dereference Vulnerability exists in GPAC 1.0.1 via the Media_IsSelfContained function, which could cause a Den...
CVE-2021-46050MEDIUM5.5A Stack Overflow vulnerability exists in Binaryen 103 via the printf_common function.
CVE-2021-46049MEDIUM5.5A Pointer Dereference Vulnerability exists in GPAC 1.0.1 via the gf_fileio_check function, which could cause a Denial of...
CVE-2021-46048MEDIUM5.5A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::readFunct...
CVE-2021-46047MEDIUM5.5A Pointer Dereference Vulnerability exists in GPAC 1.0.1 via the gf_hinter_finalize function.
CVE-2021-46046MEDIUM5.5A Pointer Derefernce Vulnerbility exists GPAC 1.0.1 the gf_isom_box_size function, which could cause a Denial of Service...
CVE-2021-46045MEDIUM5.5GPAC 1.0.1 is affected by: Abort failed. The impact is: cause a denial of service (context-dependent).
CVE-2021-44528MEDIUM6.1A open redirect vulnerability exists in Action Pack >= 6.0.0 that could allow an attacker to craft a "X-Forwarded-Host" ...
CVE-2021-42749MEDIUM5.3In Beaver Themer, attackers can bypass conditional logic controls (for hiding content) when viewing the post archives. E...
CVE-2021-42748MEDIUM5.3In Beaver Builder through 2.5.0.3, attackers can bypass the visibility controls protection mechanism via the REST API.
CVE-2021-40041MEDIUM4.2There is a Cross-Site Scripting(XSS) vulnerability in HUAWEI WS318n product when processing network settings. Due to ins...
CVE-2021-40037MEDIUM5.5There is a Vulnerability of accessing resources using an incompatible type (type confusion) in the MPTCP subsystem in sm...
CVE-2021-40009MEDIUM5.3There is an Out-of-bounds write vulnerability in the AOD module in smartphones. Successful exploitation of this vulnerab...
CVE-2021-40006MEDIUM4.6Vulnerability of design defects in the security algorithm component. Successful exploitation of this vulnerability may a...
CVE-2021-40003MEDIUM5.3HwPCAssistant has a path traversal vulnerability. Successful exploitation of this vulnerability may affect data confiden...
CVE-2021-40001MEDIUM5.3The CaasKit module has a path traversal vulnerability. Successful exploitation of this vulnerability may cause the MeeTi...
CVE-2021-38956MEDIUM5.3IBM Security Verify 10.0.0, 10.0.1.0, and 10.0.2.0 could disclose sensitive version information in HTTP response headers...
CVE-2021-38895MEDIUM5.4IBM Security Verify 10.0.0, 10.0.1.0, and 10.0.2.0 is vulnerable to cross-site scripting. This vulnerability allows user...
CVE-2021-35247MEDIUM5.3Serv-U web login screen to LDAP authentication was allowing characters that were not sufficiently sanitized. SolarWinds ...
CVE-2021-23173MEDIUM4.3The affected product is vulnerable to an improper access control, which may allow an authenticated user to gain unauthor...
CVE-2021-22569MEDIUM5.5An issue in protobuf-java allowed the interleaving of com.google.protobuf.UnknownFieldSet fields in such a way that woul...
CVE-2021-22060MEDIUM4.3In Spring Framework versions 5.3.0 - 5.3.13, 5.2.0 - 5.2.18, and older unsupported versions, it is possible for a user t...
CVE-2021-38674MEDIUM6.1A cross-site scripting (XSS) vulnerability has been reported to affect QTS, QuTS hero and QuTScloud. If exploited, this ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now