2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-27593 | LOW | 3.3 | 0.6% | Mar 22, 2021 | When a user opens manipulated Graphics Interchange Format (.GIF) files received from untrusted sources in SAP 3D Visual ... |
| CVE-2021-22887 | LOW | 2.3 | 0.2% | Mar 16, 2021 | A vulnerability in the BIOS of Pulse Secure (PSA-Series Hardware) models PSA5000 and PSA7000 could allow an attacker to ... |
| CVE-2021-20286 | LOW | 2.7 | 1.1% | Mar 15, 2021 | A flaw was found in libnbd 1.7.3. An assertion failure in nbd_unlocked_opt_go in ilb/opt.c may lead to denial of service... |
| CVE-2021-21726 | LOW | 2.3 | 0.4% | Mar 12, 2021 | Some ZTE products have an input verification vulnerability in the diagnostic function interface. Due to insufficient ver... |
| CVE-2021-20668 | LOW | 2.7 | 0.8% | Mar 10, 2021 | Path traversal vulnerability in GROWI versions v4.2.2 and earlier allows an attacker with administrator rights to read a... |
| CVE-2021-20263 | LOW | 3.3 | 0.4% | Mar 9, 2021 | A flaw was found in the virtio-fs shared file system daemon (virtiofsd) of QEMU. The new 'xattrmap' option may cause the... |
| CVE-2021-27584 | LOW | 3.3 | 0.7% | Mar 9, 2021 | When a user opens manipulated PhotoShop Document (.PSD) format files received from untrusted sources in SAP 3D Visual En... |
| CVE-2021-21493 | LOW | 3.3 | 1.4% | Mar 9, 2021 | When a user opens manipulated Graphics Interchange Format (.GIF) format files received from untrusted sources in SAP 3D ... |
| CVE-2021-25348 | LOW | 2.4 | 0.3% | Mar 4, 2021 | Improper permission grant check in Samsung Internet prior to version 13.0.1.60 allows access to files in internal storag... |
| CVE-2021-25343 | LOW | 3.3 | 0.2% | Mar 4, 2021 | Calling of non-existent provider in Samsung Members prior to version 2.4.81.13 (in Android O(8.1) and below) and 3.8.00.... |
| CVE-2021-25342 | LOW | 3.3 | 0.2% | Mar 4, 2021 | Calling of non-existent provider in SMP sdk prior to version 3.0.9 allows unauthorized actions including denial of servi... |
| CVE-2021-25341 | LOW | 3.3 | 0.2% | Mar 4, 2021 | Calling of non-existent provider in S Assistant prior to version 6.5.01.22 allows unauthorized actions including denial ... |
| CVE-2021-25340 | LOW | 2.4 | 0.1% | Mar 4, 2021 | Improper access control vulnerability in Samsung keyboard version prior to SMR Feb-2021 Release 1 allows physically prox... |
| CVE-2021-26988 | LOW | 3.5 | 0.4% | Mar 4, 2021 | Clustered Data ONTAP versions prior to 9.3P21, 9.5P16, 9.6P12, 9.7P8 and 9.8 are susceptible to a vulnerability which co... |
| CVE-2021-25336 | LOW | 3.3 | 0.2% | Mar 4, 2021 | Improper access control in NotificationManagerService in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows u... |
| CVE-2021-25335 | LOW | 2.5 | 0.1% | Mar 4, 2021 | Improper lockscreen status check in cocktailbar service in Samsung mobile devices prior to SMR Mar-2021 Release 1 allows... |
| CVE-2021-25333 | LOW | 2.4 | 0.3% | Mar 4, 2021 | Improper access control in Samsung Pay mini application prior to v4.0.14 allows unauthorized access to balance informati... |
| CVE-2021-25332 | LOW | 2.4 | 0.3% | Mar 4, 2021 | Improper access control in Samsung Pay mini application prior to v4.0.14 allows unauthorized access to contacts informat... |
| CVE-2021-25331 | LOW | 2.4 | 0.3% | Mar 4, 2021 | Improper access control in Samsung Pay mini application prior to v4.0.14 allows unauthorized access to balance informati... |
| CVE-2021-21331 | LOW | 3.3 | 0.6% | Mar 3, 2021 | The Java client for the Datadog API before version 1.0.0-beta.9 has a local information disclosure of sensitive informat... |
| CVE-2021-22294 | LOW | 3.3 | 0.2% | Mar 2, 2021 | A component API of the HarmonyOS 2.0 has a permission bypass vulnerability. Local attackers may exploit this vulnerabili... |
| CVE-2021-20203 | LOW | 3.2 | 0.6% | Feb 25, 2021 | An integer overflow issue was found in the vmxnet3 NIC emulator of the QEMU for versions up to v5.2.0. It may occur if a... |
| CVE-2021-27645 | LOW | 2.5 | 0.4% | Feb 24, 2021 | The nameserver caching daemon (nscd) in the GNU C Library (aka glibc or libc6) 2.29 through 2.33, when processing a requ... |
| CVE-2021-23839 | LOW | 3.7 | 3.0% | Feb 16, 2021 | OpenSSL 1.0.2 supports SSLv2. If a client attempts to negotiate SSLv2 with a server that is configured to support both S... |
| CVE-2021-21061 | LOW | 3.3 | 2.0% | Feb 11, 2021 | Acrobat Pro DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earl... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now