2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-42726HIGH7.8Adobe Bridge version 11.1.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a...
CVE-2021-26335HIGH7.8Improper input and range checking in the AMD Secure Processor (ASP) boot loader image header may allow an attacker to us...
CVE-2021-26331HIGH7.8AMD System Management Unit (SMU) contains a potential issue where a malicious user may be able to manipulate mailbox ent...
CVE-2021-26323HIGH7.8Failure to validate SEV Commands while SNP is active may result in a potential impact to memory integrity.
CVE-2021-26315HIGH7.8When the AMD Platform Security Processor (PSP) boot rom loads, authenticates, and subsequently decrypts an encrypted FW,...
CVE-2021-43046HIGH8.8The Interior Server and Gateway Server components of TIBCO Software Inc.'s TIBCO PartnerExpress contain an easily exploi...
CVE-2021-26338HIGH7.5Improper access controls in System Management Unit (SMU) may allow for an attacker to override performance control table...
CVE-2021-26326HIGH7.8Failure to validate VM_HSAVE_PA during SNP_INIT may result in a loss of memory integrity.
CVE-2021-26322HIGH7.5Persistent platform private key may not be protected with a random IV leading to a potential “two time pad attack”.
CVE-2021-42114HIGH8.3Modern DRAM devices (PC-DDR4, LPDDR4X) are affected by a vulnerability in their internal Target Row Refresh (TRR) mitiga...
CVE-2021-25965HIGH8.8In Calibre-web, versions 0.6.0 to 0.6.13 are vulnerable to Cross-Site Request Forgery (CSRF). By luring an authenticated...
CVE-2021-25940HIGH8In ArangoDB, versions v3.7.6 through v3.8.3 are vulnerable to Insufficient Session Expiration. When a user’s password is...
CVE-2021-25976HIGH8.1In PiranhaCMS, versions 4.0.0-alpha1 to 9.2.0 are vulnerable to cross-site request forgery (CSRF) when performing variou...
CVE-2021-42386HIGH7.2A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafte...
CVE-2021-42385HIGH7.2A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafte...
CVE-2021-42384HIGH7.2A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafte...
CVE-2021-42383HIGH7.2A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafte...
CVE-2021-42382HIGH7.2A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafte...
CVE-2021-42381HIGH7.2A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafte...
CVE-2021-42380HIGH7.2A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafte...
CVE-2021-42379HIGH7.2A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafte...
CVE-2021-42378HIGH7.2A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafte...
CVE-2021-41263HIGH8.8rails_multisite provides multi-db support for Rails applications. In affected versions this vulnerability impacts any Ra...
CVE-2021-41244HIGH7.2Grafana is an open-source platform for monitoring and observability. In affected versions when the fine-grained access c...
CVE-2021-38984HIGH7.5IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 uses weaker than expected cryptographic algorithms that could ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now