2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-0993MEDIUM6.5In getOffsetBeforeAfter of TextLine.java, there is a possible denial of service due to resource exhaustion. This could l...
CVE-2021-0986MEDIUM5.5In hasGrantedPolicy of DevicePolicyManagerService.java, there is a possible information disclosure about the device owne...
CVE-2021-0979MEDIUM5.5In isRequestPinItemSupported of ShortcutService.java, there is a possible cross-user leak of packages in which the defau...
CVE-2021-0977MEDIUM6.7In phNxpNHal_DtaUpdate of phNxpNciHal_dta.cc, there is a possible out of bounds write due to an incorrect bounds check. ...
CVE-2021-0976MEDIUM6.5In toBARK of floor0.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote i...
CVE-2021-0973MEDIUM5In isFileUri of UriUtil.java, there is a possible way to bypass ignoring file://URI attachment due to improper handling ...
CVE-2021-0971MEDIUM6.5In MPEG4Source::read of MPEG4Extractor.cpp, there is a possible out of bounds write due to a missing bounds check. This ...
CVE-2021-0969MEDIUM6.5In getTitle of AccessPoint.java, there is a possible unhandled exception due to a missing null check. This could lead to...
CVE-2021-0966MEDIUM5.5In code generated by BuildParcelFields of generate_cpp.cpp, there is a possible way for a crafted parcelable to reveal u...
CVE-2021-0964MEDIUM6.5In C2SoftMP3::process() of C2SoftMp3Dec.cpp, there is a possible out of bounds write due to a heap buffer overflow. This...
CVE-2021-0961MEDIUM4.4In quota_proc_write of xt_quota2.c, there is a possible way to read kernel memory due to uninitialized data. This could ...
CVE-2021-0958MEDIUM4.4In update of km_compat.cpp, there is a possible loss of potentially sensitive data due to a logic error in the code. Thi...
CVE-2021-0952MEDIUM5In doCropPhoto of PhotoSelectionHandler.java, there is a possible permission bypass due to a confused deputy. This could...
CVE-2021-0931MEDIUM5.5In getAlias of BluetoothDevice.java, there is a possible way to create misleading permission dialogs due to missing data...
CVE-2021-0920MEDIUM6.4In unix_scm_to_skb of af_unix.c, there is a possible use after free bug due to a race condition. This could lead to loca...
CVE-2021-0919MEDIUM5In getService of IServiceManager.cpp, there is a possible unhandled exception due to an integer overflow. This could lea...
CVE-2021-0904MEDIUM6.7In SRAMROM, there is a possible permission bypass due to an insecure permission setting. This could lead to local escala...
CVE-2021-0704MEDIUM5.5In createNoCredentialsPermissionNotification and related functions of AccountManagerService.java, there is a possible wa...
CVE-2021-0653MEDIUM5.5In enqueueNotification of NetworkPolicyManagerService.java, there is a possible way to retrieve a trackable identifier d...
CVE-2021-0650MEDIUM6.5In WT_InterpolateNoLoop of eas_wtengine.c, there is a possible out of bounds read due to an incorrect bounds check. This...
CVE-2021-43675MEDIUM6.1Lychee-v3 3.2.16 is affected by a Cross Site Scripting (XSS) vulnerability in php/Access/Guest.php. The function exit wi...
CVE-2021-4117MEDIUM4.3yetiforcecrm is vulnerable to Business Logic Errors
CVE-2021-43908MEDIUM4.3Visual Studio Code Spoofing Vulnerability
CVE-2021-43896MEDIUM5.5Microsoft PowerShell Spoofing Vulnerability
CVE-2021-43880MEDIUM5.5Windows Mobile Device Management Elevation of Privilege Vulnerability

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now