2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-44520HIGH8.8In Citrix XenMobile Server through 10.12 RP9, there is an Authenticated Command Injection vulnerability, leading to remo...
CVE-2021-28544MEDIUM4.3Apache Subversion SVN authz protected copyfrom paths regression Subversion servers reveal 'copyfrom' paths that should b...
CVE-2021-41005MEDIUM6.5A remote vulnerability was discovered in Aruba Instant On 1930 Switch Series version(s): Firmware below v1.0.7.0.
CVE-2021-41004HIGH7.5A remote vulnerability was discovered in Aruba Instant On 1930 Switch Series version(s): Firmware below v1.0.7.0.
CVE-2021-39814MEDIUM6.7In ppmp_validate_wsm of drm_fw.c, there is a possible out of bounds write due to an incorrect bounds check. This could l...
CVE-2021-39812HIGH7.8In TBD of TBD, there is a possible out of bounds read due to a use after free. This could lead to local escalation of pr...
CVE-2021-39809HIGH7.5In avrc_ctrl_pars_vendor_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. T...
CVE-2021-39808HIGH7.8In createNotificationChannelGroup of PreferencesHelper.java, there is a possible way for a service to run in foreground ...
CVE-2021-39807HIGH7.8In handleNfcStateChanged of SecureNfcEnabler.java, there is a possible way to enable NFC from the Guest account due to a...
CVE-2021-39805MEDIUM6.5In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing bounds check. This coul...
CVE-2021-39804MEDIUM6.5In reinit of HeifDecoderImpl.cpp, there is a possible crash due to a missing null check. This could lead to remote persi...
CVE-2021-39803MEDIUM6.5In ~Impl of C2AllocatorIon.cpp, there is a possible out of bounds read due to a use after free. This could lead to remot...
CVE-2021-39802HIGH7.8In change_pte_range of mprotect.c , there is a possible way to make a shared mmap writable due to a permissions bypass. ...
CVE-2021-39801HIGH7.8In ion_ioctl of ion-ioctl.c, there is a possible use after free due to improper locking. This could lead to local escala...
CVE-2021-39800MEDIUM5.5In ion_ioctl of ion-ioctl.c, there is a possible way to leak kernel head data due to a use after free. This could lead t...
CVE-2021-39799HIGH7.8In AttributionSource of AttributionSource.java, there is a possible permission bypass due to improper input validation. ...
CVE-2021-39798HIGH7.8In Bitmap_createFromParcel of Bitmap.cpp, there is a possible arbitrary code execution due to a missing bounds check. Th...
CVE-2021-39797HIGH7.8In several functions of of LauncherApps.java, there is a possible escalation of privilege due to a logic error in the co...
CVE-2021-39796HIGH7.3In HarmfulAppWarningActivity of HarmfulAppWarningActivity.java, there is a possible way to trick victim to install harmf...
CVE-2021-39795Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2021-39794HIGH7.8In broadcastPortInfo of AdbService.java, there is a possible way for apps to run code as the shell user, if wireless deb...
CVE-2021-36914MEDIUM6.1Cross-Site Request Forgery (CSRF) vulnerability leading to Reflected Cross-Site Scripting (XSS) in CalderaWP License Man...
CVE-2021-0707HIGH7.8In dma_buf_release of dma-buf.c, there is a possible memory corruption due to a use after free. This could lead to local...
CVE-2021-0694HIGH7.8In setServiceForegroundInnerLocked of ActiveServices.java, there is a possible way for a background application to regai...
CVE-2021-42255HIGH7.8AppGuard Enterprise before 6.7.100.1 creates a Temporary File in a Directory with Insecure Permissions. Local users can ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now