2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-26406 | HIGH | 7.5 | 0.4% | May 9, 2023 | Insufficient validation in parsing Owner's Certificate Authority (OCA) certificates in SEV (AMD Secure Encrypted Virtual... |
| CVE-2021-26397 | HIGH | 7.1 | 0.2% | May 9, 2023 | Insufficient address validation, may allow an attacker with a compromised ABL and UApp to corrupt sensitive memory locat... |
| CVE-2021-26365 | HIGH | 8.2 | 0.6% | May 9, 2023 | Certain size values in firmware binary headers could trigger out of bounds reads during signature validation, leading to... |
| CVE-2021-26356 | HIGH | 7.4 | 0.4% | May 9, 2023 | A TOCTOU in ASP bootloader may allow an attacker to tamper with the SPI ROM following data read to memory potentially re... |
| CVE-2021-31240 | HIGH | 7.8 | 0.3% | May 9, 2023 | An issue found in libming v.0.4.8 allows a local attacker to execute arbitrary code via the parseSWF_IMPORTASSETS functi... |
| CVE-2021-44283 | HIGH | 7.5 | 0.9% | May 9, 2023 | A buffer overflow in the component /Enclave.cpp of Electronics and Telecommunications Research Institute ShieldStore com... |
| CVE-2021-31239 | HIGH | 7.5 | 2.2% | May 9, 2023 | An issue found in SQLite SQLite3 v.3.35.4 that allows a remote attacker to cause a denial of service via the appendvfs.c... |
| CVE-2021-28999 | HIGH | 8.8 | 1.3% | May 8, 2023 | SQL Injection vulnerability in CMS Made Simple through 2.2.15 allows remote attackers to execute arbitrary commands via ... |
| CVE-2021-28998 | HIGH | 7.2 | 1.3% | May 8, 2023 | File upload vulnerability in CMS Made Simple through 2.2.15 allows remote authenticated attackers to gain a webshell via... |
| CVE-2021-27280 | HIGH | 7.8 | 1.0% | May 8, 2023 | OS Command injection vulnerability in mblog 3.5.0 allows attackers to execute arbitrary code via crafted theme when it g... |
| CVE-2021-40331 | HIGH | 8.1 | 0.9% | May 5, 2023 | An Incorrect Permission Assignment for Critical Resource vulnerability was found in the Apache Ranger Hive Plugin. Any u... |
| CVE-2021-45111 | HIGH | 8.1 | 0.8% | Apr 25, 2023 | Improper access control in Odoo Community 15.0 and earlier and Odoo Enterprise 15.0 and earlier allows remote authentica... |
| CVE-2021-23203 | HIGH | 7.5 | 0.9% | Apr 25, 2023 | Improper access control in reporting engine of Odoo Community 14.0 through 15.0, and Odoo Enterprise 14.0 through 15.0, ... |
| CVE-2021-23186 | HIGH | 8.7 | 0.6% | Apr 25, 2023 | A sandboxing issue in Odoo Community 15.0 and earlier and Odoo Enterprise 15.0 and earlier allows authenticated administ... |
| CVE-2021-23178 | HIGH | 7.5 | 0.6% | Apr 25, 2023 | Improper access control in Odoo Community 15.0 and earlier and Odoo Enterprise 15.0 and earlier allows attackers to vali... |
| CVE-2021-23166 | HIGH | 8.7 | 0.6% | Apr 25, 2023 | A sandboxing issue in Odoo Community 15.0 and earlier and Odoo Enterprise 15.0 and earlier allows authenticated administ... |
| CVE-2021-33589 | HIGH | 7.5 | 0.5% | Apr 21, 2023 | Ribose RNP before 0.15.1 does not implement a required step in a cryptographic algorithm, resulting in weaker encryption... |
| CVE-2021-38363 | HIGH | 7.5 | 0.7% | Apr 20, 2023 | An issue was discovered in ONOS 2.5.1. In IntentManager, the install-requested intent (which causes an exception) remain... |
| CVE-2021-33971 | HIGH | 7.8 | 0.4% | Apr 19, 2023 | Qihoo 360 (https://www.360.cn/) Qihoo 360 Safeguard (https://www.360.cn/) Qihoo 360 Total Security (http://www.360totals... |
| CVE-2021-33974 | HIGH | 8.8 | 1.0% | Apr 19, 2023 | Qihoo 360 (https://www.360.cn/) Qihoo 360 Safeguard (https://www.360.cn/) Qihoo 360 Chrome (https://browser.360.cn/ee/) ... |
| CVE-2021-33973 | HIGH | 7.8 | 0.4% | Apr 19, 2023 | Buffer Overflow vulnerability in Qihoo 360 Safe guard v12.1.0.1004, v12.1.0.1005, v13.1.0.1001 allows attacker to escala... |
| CVE-2021-0885 | HIGH | 7.8 | 0.1% | Apr 19, 2023 | In PVRSRVBridgeSyncPrimOpTake of the PowerVR kernel driver, a missing size check means there is a possible integer overf... |
| CVE-2021-0884 | HIGH | 7.8 | 0.1% | Apr 19, 2023 | In PVRSRVBridgePhysmemImportSparseDmaBuf of the PowerVR kernel driver, a missing size check means there is a possible in... |
| CVE-2021-0883 | HIGH | 7.8 | 0.1% | Apr 19, 2023 | In PVRSRVBridgeCacheOpQueue of the PowerVR kernel driver, a missing size check means there is a possible integer overflo... |
| CVE-2021-0882 | HIGH | 7.8 | 0.1% | Apr 19, 2023 | In PVRSRVBridgeRGXKickSync of the PowerVR kernel driver, a missing size check means there is a possible integer overflow... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now