2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-1035HIGH7.8In setLaunchIntent of BluetoothDevicePickerPreferenceController.java, there is a possible way to invoke an arbitrary bro...
CVE-2021-0959HIGH7.8In jit_memory_region.cc, there is a possible bypass of memory restrictions due to a logic error in the code. This could ...
CVE-2021-45763MEDIUM5.5GPAC v1.1.0 was discovered to contain an invalid call in the function gf_node_changed(). This vulnerability can lead to ...
CVE-2021-45762MEDIUM5.5GPAC v1.1.0 was discovered to contain an invalid memory address dereference via the function gf_sg_vrml_mf_reset(). This...
CVE-2021-45761HIGH7.5ROPium v3.1 was discovered to contain an invalid memory address dereference via the find() function.
CVE-2021-45468CRITICAL9.8Imperva Web Application Firewall (WAF) before 2021-12-23 allows remote unauthenticated attackers to use "Content-Encodin...
CVE-2021-36736Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2021-36735Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2021-36734Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2021-24046MEDIUM5.3A logic flaw in Ray-Ban® Stories device software allowed some parameters like video capture duration limit to be modifie...
CVE-2021-39032MEDIUM5.5IBM Sterling Gentran:Server for Microsoft Windows 5.3 stores potentially sensitive information in log files that could b...
CVE-2021-32650HIGH8.8October CMS is a self-hosted content management system (CMS) platform based on the Laravel PHP Framework. Prior to versi...
CVE-2021-32649HIGH8.8October CMS is a self-hosted content management system (CMS) platform based on the Laravel PHP Framework. Prior to versi...
CVE-2021-33962CRITICAL9.8China Mobile An Lianbao WF-1 router v1.0.1 is affected by an OS command injection vulnerability in the web interface /ap...
CVE-2021-36781MEDIUM4.4A Incorrect Default Permissions vulnerability in the parsec package of openSUSE Factory allows local attackers to imitat...
CVE-2021-42551MEDIUM6.1Cross-site Scripting (XSS) vulnerability in the search functionality of AlCoda NetBiblio WebOPAC allows an unauthenticat...
CVE-2021-46255HIGH8.1eyouCMS V1.5.5-UTF8-SP3_1 suffers from Arbitrary file deletion due to insufficient filtering of the parameter filename.
CVE-2021-38692CRITICAL9.8A stack buffer overflow vulnerability has been reported to affect QNAP device running QVR Elite, QVR Pro, QVR Guard. If ...
CVE-2021-38691CRITICAL9.8A stack buffer overflow vulnerability has been reported to affect QNAP device running QVR Elite, QVR Pro, QVR Guard. If ...
CVE-2021-38690CRITICAL9.8A stack buffer overflow vulnerability has been reported to affect QNAP device running QVR Elite, QVR Pro, QVR Guard. If ...
CVE-2021-38689CRITICAL9.8A stack buffer overflow vulnerability has been reported to affect QNAP device running QVR Elite, QVR Pro, QVR Guard. If ...
CVE-2021-38682CRITICAL9.8A stack buffer overflow vulnerability has been reported to affect QNAP device running QVR Elite, QVR Pro, QVR Guard. If ...
CVE-2021-38678MEDIUM6.1An open redirect vulnerability has been reported to affect QNAP device running QcalAgent. If exploited, this vulnerabili...
CVE-2021-38677MEDIUM6.1A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running QcalAgent. If exploited, this...
CVE-2021-45760MEDIUM5.5GPAC v1.1.0 was discovered to contain an invalid memory address dereference via the function gf_list_last(). This vulner...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now