2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-44520 | HIGH | 8.8 | 5.6% | Apr 13, 2022 | In Citrix XenMobile Server through 10.12 RP9, there is an Authenticated Command Injection vulnerability, leading to remo... |
| CVE-2021-28544 | MEDIUM | 4.3 | 2.7% | Apr 12, 2022 | Apache Subversion SVN authz protected copyfrom paths regression Subversion servers reveal 'copyfrom' paths that should b... |
| CVE-2021-41005 | MEDIUM | 6.5 | 0.8% | Apr 12, 2022 | A remote vulnerability was discovered in Aruba Instant On 1930 Switch Series version(s): Firmware below v1.0.7.0. |
| CVE-2021-41004 | HIGH | 7.5 | 0.9% | Apr 12, 2022 | A remote vulnerability was discovered in Aruba Instant On 1930 Switch Series version(s): Firmware below v1.0.7.0. |
| CVE-2021-39814 | MEDIUM | 6.7 | 0.1% | Apr 12, 2022 | In ppmp_validate_wsm of drm_fw.c, there is a possible out of bounds write due to an incorrect bounds check. This could l... |
| CVE-2021-39812 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In TBD of TBD, there is a possible out of bounds read due to a use after free. This could lead to local escalation of pr... |
| CVE-2021-39809 | HIGH | 7.5 | 0.7% | Apr 12, 2022 | In avrc_ctrl_pars_vendor_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. T... |
| CVE-2021-39808 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In createNotificationChannelGroup of PreferencesHelper.java, there is a possible way for a service to run in foreground ... |
| CVE-2021-39807 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In handleNfcStateChanged of SecureNfcEnabler.java, there is a possible way to enable NFC from the Guest account due to a... |
| CVE-2021-39805 | MEDIUM | 6.5 | 0.3% | Apr 12, 2022 | In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing bounds check. This coul... |
| CVE-2021-39804 | MEDIUM | 6.5 | 0.4% | Apr 12, 2022 | In reinit of HeifDecoderImpl.cpp, there is a possible crash due to a missing null check. This could lead to remote persi... |
| CVE-2021-39803 | MEDIUM | 6.5 | 0.6% | Apr 12, 2022 | In ~Impl of C2AllocatorIon.cpp, there is a possible out of bounds read due to a use after free. This could lead to remot... |
| CVE-2021-39802 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In change_pte_range of mprotect.c , there is a possible way to make a shared mmap writable due to a permissions bypass. ... |
| CVE-2021-39801 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In ion_ioctl of ion-ioctl.c, there is a possible use after free due to improper locking. This could lead to local escala... |
| CVE-2021-39800 | MEDIUM | 5.5 | 0.1% | Apr 12, 2022 | In ion_ioctl of ion-ioctl.c, there is a possible way to leak kernel head data due to a use after free. This could lead t... |
| CVE-2021-39799 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In AttributionSource of AttributionSource.java, there is a possible permission bypass due to improper input validation. ... |
| CVE-2021-39798 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In Bitmap_createFromParcel of Bitmap.cpp, there is a possible arbitrary code execution due to a missing bounds check. Th... |
| CVE-2021-39797 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In several functions of of LauncherApps.java, there is a possible escalation of privilege due to a logic error in the co... |
| CVE-2021-39796 | HIGH | 7.3 | 0.2% | Apr 12, 2022 | In HarmfulAppWarningActivity of HarmfulAppWarningActivity.java, there is a possible way to trick victim to install harmf... |
| CVE-2021-39795 | — | — | — | Apr 12, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2021-39794 | HIGH | 7.8 | 0.3% | Apr 12, 2022 | In broadcastPortInfo of AdbService.java, there is a possible way for apps to run code as the shell user, if wireless deb... |
| CVE-2021-36914 | MEDIUM | 6.1 | 0.5% | Apr 12, 2022 | Cross-Site Request Forgery (CSRF) vulnerability leading to Reflected Cross-Site Scripting (XSS) in CalderaWP License Man... |
| CVE-2021-0707 | HIGH | 7.8 | 0.2% | Apr 12, 2022 | In dma_buf_release of dma-buf.c, there is a possible memory corruption due to a use after free. This could lead to local... |
| CVE-2021-0694 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In setServiceForegroundInnerLocked of ActiveServices.java, there is a possible way for a background application to regai... |
| CVE-2021-42255 | HIGH | 7.8 | 0.3% | Apr 12, 2022 | AppGuard Enterprise before 6.7.100.1 creates a Temporary File in a Directory with Insecure Permissions. Local users can ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now