2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-1961MEDIUM6.7Possible buffer overflow due to lack of offset length check while updating the buffer value in Snapdragon Auto, Snapdrag...
CVE-2021-1960MEDIUM6.5Improper handling of ASB-C broadcast packets with crafted opcode in LMP can lead to uncontrolled resource consumption in...
CVE-2021-1958MEDIUM6.4A race condition in fastrpc kernel driver for dynamic process creation can lead to use after free scenario in Snapdragon...
CVE-2021-1957MEDIUM6.5Improper Access Control when ACL link encryption is failed and ACL link is not disconnected during reconnection with pai...
CVE-2021-1956MEDIUM6.5Improper handling of ASB-U packet with L2CAP channel ID by slave host can lead to interference with piconet in Snapdrago...
CVE-2021-1935MEDIUM5.5Possible null pointer dereference due to lack of validation check for passed pointer during key import in Snapdragon Aut...
CVE-2021-34786MEDIUM4.9Multiple vulnerabilities in Cisco BroadWorks CommPilot Application Software could allow an authenticated, remote attacke...
CVE-2021-34771MEDIUM5.5A vulnerability in the Cisco IOS XR Software CLI could allow an authenticated, local attacker to view more information t...
CVE-2021-34722MEDIUM6.7Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to gain access...
CVE-2021-34721MEDIUM6.7Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to gain access...
CVE-2021-34709MEDIUM6.4Multiple vulnerabilities in image verification checks of Cisco Network Convergence System (NCS) 540 Series Routers, only...
CVE-2021-34708MEDIUM6.7Multiple vulnerabilities in image verification checks of Cisco Network Convergence System (NCS) 540 Series Routers, only...
CVE-2021-40812MEDIUM6.5The GD Graphics Library (aka LibGD) through 2.3.2 has an out-of-bounds read because of the lack of certain gdGetBuf and ...
CVE-2021-40797MEDIUM6.5An issue was discovered in the routes middleware in OpenStack Neutron before 16.4.1, 17.x before 17.2.1, and 18.x before...
CVE-2021-36215MEDIUM5.3LINE client for iOS 10.21.3 and before allows address bar spoofing due to inappropriate address handling.
CVE-2021-32805MEDIUM6.1Flask-AppBuilder is an application development framework, built on top of Flask. In affected versions if using Flask-App...
CVE-2021-31274MEDIUM5.4In LibreNMS < 21.3.0, a stored XSS vulnerability was identified in the API Access page due to insufficient sanitization ...
CVE-2021-3055MEDIUM6.5An improper restriction of XML external entity (XXE) reference vulnerability in the Palo Alto Networks PAN-OS web interf...
CVE-2021-3054MEDIUM6.6A time-of-check to time-of-use (TOCTOU) race condition vulnerability in the Palo Alto Networks PAN-OS web interface enab...
CVE-2021-3052MEDIUM5.4A reflected cross-site scripting (XSS) vulnerability in the Palo Alto Network PAN-OS web interface enables an authentica...
CVE-2021-3049MEDIUM4.3An improper authorization vulnerability in the Palo Alto Networks Cortex XSOAR server enables an authenticated network-b...
CVE-2021-33981MEDIUM4.3An insecure, direct object vulnerability in hunting/fishing license retrieval function of the "Fish | Hunt FL" iOS app v...
CVE-2021-28569MEDIUM4.3Adobe Media Encoder version 15.1 (and earlier) is affected by an Out-of-bounds Read vulnerability when parsing a special...
CVE-2021-28568MEDIUM6.5Adobe Genuine Services version 7.1 (and earlier) is affected by an Insecure file permission vulnerability during install...
CVE-2021-28567MEDIUM6.5Magento versions 2.4.2 (and earlier), 2.4.1-p1 (and earlier) and 2.3.6-p1 (and earlier) are vulnerable to an Improper Au...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now