2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-0587 | HIGH | 7.8 | 0.1% | Jul 14, 2021 | In StreamOut::prepareForWriting of StreamOut.cpp, there is a possible out of bounds write due to a use after free. This ... |
| CVE-2021-0586 | HIGH | 7.8 | 0.3% | Jul 14, 2021 | In onCreate of DevicePickerFragment.java, there is a possible way to trick the user to select an unwanted bluetooth devi... |
| CVE-2021-0577 | HIGH | 7.8 | 0.1% | Jul 14, 2021 | In flv extractor, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escala... |
| CVE-2021-0514 | HIGH | 8.1 | 1.0% | Jul 14, 2021 | In several functions of the V8 library, there is a possible use after free due to a race condition. This could lead to r... |
| CVE-2021-0486 | HIGH | 7.8 | 0.1% | Jul 14, 2021 | In onPackageAddedInternal of PermissionManagerService.java, there is possible access to external storage due to a permis... |
| CVE-2021-0441 | HIGH | 7.3 | 0.1% | Jul 14, 2021 | In onCreate of PermissionActivity.java, there is a possible permission bypass due to Confusing UI. This could lead to lo... |
| CVE-2021-35469 | HIGH | 7.8 | 0.2% | Jul 14, 2021 | The Lexmark Printer Software G2, G3 and G4 Installation Packages have a local escalation of privilege vulnerability due ... |
| CVE-2021-33677 | HIGH | 7.5 | 1.1% | Jul 14, 2021 | SAP NetWeaver ABAP Server and ABAP Platform, versions - 700, 702, 730, 731, 804, 740, 750, 784, expose functions to exte... |
| CVE-2021-33676 | HIGH | 7.2 | 0.9% | Jul 14, 2021 | A missing authority check in SAP CRM, versions - 700, 701, 702, 712, 713, 714, could be leveraged by an attacker with hi... |
| CVE-2021-33671 | HIGH | 8.8 | 0.7% | Jul 14, 2021 | SAP NetWeaver Guided Procedures (Administration Workset), versions - 7.10, 7.20, 7.30, 7.31, 7.40, 7.50, does not perfor... |
| CVE-2021-33670 | HIGH | 7.5 | 3.2% | Jul 14, 2021 | SAP NetWeaver AS for Java (Http Service Monitoring Filter), versions - 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, allows ... |
| CVE-2021-20782 | HIGH | 8.8 | 0.9% | Jul 14, 2021 | Cross-site request forgery (CSRF) vulnerability in Software License Manager versions prior to 4.4.6 allows remote attack... |
| CVE-2021-20781 | HIGH | 8.8 | 0.8% | Jul 14, 2021 | Cross-site request forgery (CSRF) vulnerability in WordPress Meta Data Filter & Taxonomies Filter versions prior to v.1.... |
| CVE-2021-20748 | HIGH | 7.5 | 1.0% | Jul 14, 2021 | Retty App for Android versions prior to 4.8.13 and Retty App for iOS versions prior to 4.11.14 uses a hard-coded API key... |
| CVE-2021-22000 | HIGH | 7.8 | 0.6% | Jul 13, 2021 | VMware Thinapp version 5.x prior to 5.2.10 contain a DLL hijacking vulnerability due to insecure loading of DLLs. A mali... |
| CVE-2021-21995 | HIGH | 7.5 | 1.0% | Jul 13, 2021 | OpenSLP as used in ESXi has a denial-of-service vulnerability due a heap out-of-bounds read issue. A malicious actor wit... |
| CVE-2021-20423 | HIGH | 8.8 | 1.1% | Jul 13, 2021 | IBM Cloud Pak for Applications 4.3 could allow an authenticated user gain escalated privilesges due to improper applicat... |
| CVE-2021-20422 | HIGH | 7.5 | 1.3% | Jul 13, 2021 | IBM Cloud Pak for Applications 4.3 could disclose sensitive information to a malicious attacker by accessing data stored... |
| CVE-2021-20360 | HIGH | 7.5 | 0.7% | Jul 13, 2021 | IBM Cloud Pak for Applications 4.3 uses weaker than expected cryptographic algorithms that could allow an attacker to de... |
| CVE-2021-36122 | HIGH | 8.8 | 1.0% | Jul 13, 2021 | An issue was discovered in Echo ShareCare 8.15.5. The UnzipFile feature in Access/EligFeedParse_Sup/UnzipFile_Upd.cfm is... |
| CVE-2021-36121 | HIGH | 8.8 | 2.1% | Jul 13, 2021 | An issue was discovered in Echo ShareCare 8.15.5. The file-upload feature in Access/DownloadFeed_Mnt/FileUpload_Upd.cfm ... |
| CVE-2021-20593 | HIGH | 7.1 | 0.9% | Jul 13, 2021 | Incorrect Implementation of Authentication Algorithm in Mitsubishi Electric Air Conditioning System/Centralized Controll... |
| CVE-2021-36376 | HIGH | 7.8 | 0.4% | Jul 13, 2021 | dandavison delta before 0.8.3 on Windows resolves an executable's pathname as a relative path from the current directory... |
| CVE-2021-31225 | HIGH | 7.3 | 0.3% | Jul 13, 2021 | SES Evolution before 2.1.0 allows deleting some resources not currently in use by any security policy by leveraging acce... |
| CVE-2021-34331 | HIGH | 7.8 | 1.6% | Jul 13, 2021 | A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). Th... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now