2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22376 | HIGH | 8.4 | 0.2% | Jun 30, 2021 | A component of the HarmonyOS has a Improper Privilege Management vulnerability. Local attackers may exploit this vulnera... |
| CVE-2021-22372 | HIGH | 7.5 | 0.7% | Jun 30, 2021 | There is a Security Features Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affec... |
| CVE-2021-22370 | HIGH | 7.5 | 0.7% | Jun 30, 2021 | There is a Credentials Management Errors Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerabili... |
| CVE-2021-22326 | HIGH | 7.1 | 0.2% | Jun 30, 2021 | A component of the HarmonyOS has a Privilege Dropping / Lowering Errors vulnerability. Local attackers may exploit this ... |
| CVE-2021-28993 | HIGH | 7.5 | 1.0% | Jun 30, 2021 | Plixer Scrutinizer 19.0.2 is affected by: SQL Injection. The impact is: obtain sensitive information (remote). |
| CVE-2021-25951 | HIGH | 7.5 | 1.2% | Jun 30, 2021 | XXE vulnerability in 'XML2Dict' version 0.2.2 allows an attacker to cause a denial of service. |
| CVE-2021-34384 | HIGH | 7.8 | 0.2% | Jun 30, 2021 | Bootloader contains a vulnerability in NVIDIA MB2 where a potential heap overflow could cause memory corruption, which m... |
| CVE-2021-34382 | HIGH | 7.8 | 0.2% | Jun 30, 2021 | Trusty TLK contains a vulnerability in the NVIDIA TLK kernel’s tz_map_shared_mem function where an integer overflow on t... |
| CVE-2021-34381 | HIGH | 7.8 | 0.2% | Jun 30, 2021 | Trusty TLK contains a vulnerability in the NVIDIA TLK kernel function where a lack of checks allows the exploitation of ... |
| CVE-2021-34380 | HIGH | 7.8 | 0.2% | Jun 30, 2021 | Bootloader contains a vulnerability in NVIDIA MB2 where potential heap overflow might cause corruption of the heap metad... |
| CVE-2021-28692 | HIGH | 7.1 | 0.3% | Jun 30, 2021 | inappropriate x86 IOMMU timeout detection / handling IOMMUs process commands issued to them in parallel with the operati... |
| CVE-2021-25321 | HIGH | 7.8 | 0.4% | Jun 30, 2021 | A UNIX Symbolic Link (Symlink) Following vulnerability in arpwatch of SUSE Linux Enterprise Server 11-SP4-LTSS, SUSE Man... |
| CVE-2021-32567 | HIGH | 7.5 | 2.4% | Jun 30, 2021 | Improper Input Validation vulnerability in HTTP/2 of Apache Traffic Server allows an attacker to DOS the server. This is... |
| CVE-2021-32566 | HIGH | 7.5 | 2.5% | Jun 30, 2021 | Improper Input Validation vulnerability in HTTP/2 of Apache Traffic Server allows an attacker to DOS the server. This is... |
| CVE-2021-35941 | HIGH | 7.5 | 12.7% | Jun 29, 2021 | Western Digital WD My Book Live (2.x and later) and WD My Book Live Duo (all versions) have an administrator API that ca... |
| CVE-2021-29485 | HIGH | 8.8 | 2.0% | Jun 29, 2021 | Ratpack is a toolkit for creating web applications. In versions prior to 1.9.0, a malicious attacker can achieve Remote ... |
| CVE-2021-29481 | HIGH | 7.5 | 0.5% | Jun 29, 2021 | Ratpack is a toolkit for creating web applications. In versions prior to 1.9.0, the default configuration of client side... |
| CVE-2021-22439 | HIGH | 8.1 | 0.8% | Jun 29, 2021 | There is a deserialization vulnerability in Huawei AnyOffice V200R006C10. An attacker can construct a specific request t... |
| CVE-2021-28830 | HIGH | 7.8 | 0.2% | Jun 29, 2021 | The TIBCO Spotfire Server and TIBCO Enterprise Runtime for R components of TIBCO Software Inc.'s TIBCO Enterprise Runtim... |
| CVE-2021-23275 | HIGH | 7.8 | 0.2% | Jun 29, 2021 | The Windows Installation component of TIBCO Software Inc.'s TIBCO Enterprise Runtime for R - Server Edition, TIBCO Enter... |
| CVE-2021-22119 | HIGH | 7.5 | 6.7% | Jun 29, 2021 | Spring Security versions 5.5.x prior to 5.5.1, 5.4.x prior to 5.4.7, 5.3.x prior to 5.3.10 and 5.2.x prior to 5.2.11 are... |
| CVE-2021-21871 | HIGH | 7.8 | 0.9% | Jun 29, 2021 | A memory corruption vulnerability exists in the DMG File Format Handler functionality of PowerISO 7.9. A specially craft... |
| CVE-2021-20104 | HIGH | 8.1 | 2.2% | Jun 29, 2021 | Machform prior to version 16 is vulnerable to unauthenticated remote code execution due to insufficient sanitization of ... |
| CVE-2021-20102 | HIGH | 8.8 | 0.5% | Jun 29, 2021 | Machform prior to version 16 is vulnerable to cross-site request forgery due to a lack of CSRF tokens in place. |
| CVE-2021-31516 | HIGH | 7.8 | 2.4% | Jun 29, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Vector 35 Binary Ninja... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now