2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-0871 | HIGH | 7.8 | 0.1% | Sep 13, 2022 | In PVRSRVBridgePMRPDumpSymbolicAddr of the PowerVR kernel driver, a missing size check means there is a possible integer... |
| CVE-2021-0697 | HIGH | 7 | 0.1% | Sep 13, 2022 | In PVRSRVRGXSubmitTransferKM of rgxtransfer.c, there is a possible user after free due to a race condition. This could l... |
| CVE-2021-44426 | HIGH | 8.8 | 1.0% | Sep 12, 2022 | An issue was discovered in AnyDesk before 6.2.6 and 6.3.x before 6.3.5. An upload of an arbitrary file to a victim's loc... |
| CVE-2021-44425 | MEDIUM | 6.5 | 0.6% | Sep 12, 2022 | An issue was discovered in AnyDesk before 6.2.6 and 6.3.x before 6.3.3. An unnecessarily open listening port on a machin... |
| CVE-2021-37819 | HIGH | 7.5 | 0.7% | Sep 9, 2022 | PDF Labs pdftk-java v3.2.3 was discovered to contain an infinite loop via the component /text/pdf/PdfReader.java. |
| CVE-2021-44835 | CRITICAL | 9.8 | 0.9% | Sep 9, 2022 | An issue was discovered in Active Intelligent Visualization 5. The Vdc header is used in a SQL query without being sanit... |
| CVE-2021-40648 | MEDIUM | 5.5 | 0.3% | Sep 9, 2022 | In man2html 1.6g, a filename can be created to overwrite the previous size parameter of the next chunk and the fd, bk, f... |
| CVE-2021-40647 | MEDIUM | 5.5 | 0.3% | Sep 9, 2022 | In man2html 1.6g, a specific string being read in from a file will overwrite the size parameter in the top chunk of the ... |
| CVE-2021-34236 | CRITICAL | 9.8 | 1.1% | Sep 8, 2022 | Buffer Overflow in Netgear R8000 Router with firmware v1.0.4.56 allows remote attackers to execute arbitrary code or cau... |
| CVE-2021-36783 | CRITICAL | 9.9 | 0.6% | Sep 7, 2022 | A Insufficiently Protected Credentials vulnerability in SUSE Rancher allows authenticated Cluster Owners, Cluster Member... |
| CVE-2021-36782 | CRITICAL | 9.9 | 2.9% | Sep 7, 2022 | A Cleartext Storage of Sensitive Information vulnerability in SUSE Rancher allows authenticated Cluster Owners, Cluster ... |
| CVE-2021-43565 | HIGH | 7.5 | 0.9% | Sep 6, 2022 | The x/crypto/ssh package before 0.0.0-20211202192323-5770296d904e of golang.org/x/crypto allows an attacker to panic an ... |
| CVE-2021-39326 | — | — | — | Sep 6, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2021-39324 | — | — | — | Sep 6, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2021-36829 | MEDIUM | 4.8 | 0.5% | Sep 6, 2022 | Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability in MyThemeShop Launcher: Coming Soon & Maintenanc... |
| CVE-2021-43080 | MEDIUM | 5.4 | 0.4% | Sep 6, 2022 | An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiOS version 7.2.0, version ... |
| CVE-2021-43076 | MEDIUM | 6.5 | 0.4% | Sep 6, 2022 | An improper privilege management vulnerability [CWE-269] in FortiADC versions 6.2.1 and below, 6.1.5 and below, 6.0.4 an... |
| CVE-2021-28398 | HIGH | 7.2 | 1.1% | Sep 5, 2022 | A privileged attacker in GeoNetwork before 3.12.0 and 4.x before 4.0.4 can use the directory harvester before-script to ... |
| CVE-2021-27693 | CRITICAL | 9.8 | 0.9% | Sep 2, 2022 | Server-side Request Forgery (SSRF) vulnerability in PublicCMS before 4.0.202011.b via /publiccms/admin/ueditor when the ... |
| CVE-2021-44718 | MEDIUM | 5.9 | 0.6% | Sep 2, 2022 | wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the client component by sendi... |
| CVE-2021-35135 | MEDIUM | 5.5 | 0.1% | Sep 2, 2022 | A null pointer dereference may potentially occur during RSA key import in Snapdragon Auto, Snapdragon Compute, Snapdrago... |
| CVE-2021-35134 | HIGH | 8.4 | 0.1% | Sep 2, 2022 | Due to insufficient validation of ELF headers, an Incorrect Calculation of Buffer Size can occur in Boot leading to memo... |
| CVE-2021-35133 | MEDIUM | 6.7 | 0.1% | Sep 2, 2022 | Use after free in the synx driver issue while performing other functions during multiple invocation of synx release call... |
| CVE-2021-35132 | HIGH | 7.8 | 0.1% | Sep 2, 2022 | Out of bound write in DSP service due to improper bound check for response buffer size in Snapdragon Auto, Snapdragon Co... |
| CVE-2021-35122 | HIGH | 7.8 | 0.1% | Sep 2, 2022 | Non-secure region can try modifying RG permissions of IO space xPUs due to improper input validation in Snapdragon Auto,... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now