2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-46145MEDIUM5.3The keyfob subsystem in Honda Civic 2012 vehicles allows a replay attack for unlocking. This is related to a non-expirin...
CVE-2021-46144MEDIUM6.1Roundcube before 1.4.13 and 1.5.x before 1.5.2 allows XSS via an HTML e-mail message with crafted Cascading Style Sheets...
CVE-2021-46143HIGH7.8In doProlog in xmlparse.c in Expat (aka libexpat) before 2.4.3, an integer overflow exists for m_groupSize.
CVE-2021-46142MEDIUM5.5An issue was discovered in uriparser before 0.9.6. It performs invalid free operations in uriNormalizeSyntax.
CVE-2021-46141MEDIUM5.5An issue was discovered in uriparser before 0.9.6. It performs invalid free operations in uriFreeUriMembers and uriMakeO...
CVE-2021-43947HIGH7.2Affected versions of Atlassian Jira Server and Data Center allow remote attackers with administrator privileges to execu...
CVE-2021-45971HIGH8.2An issue was discovered in SdHostDriver in Insyde InsydeH2O with kernel 5.1 before 05.16.25, 5.2 before 05.26.25, 5.3 be...
CVE-2021-41842CRITICAL9.8An issue was discovered in AtaLegacySmm in the kernel 5.0 before 05.08.46, 5.1 before 05.16.46, 5.2 before 05.26.46, 5.3...
CVE-2021-46038MEDIUM5.5A Pointer Dereference vulnerability exists in GPAC 1.0.1 in unlink_chunk.isra, which causes a Denial of Service (context...
CVE-2021-45970HIGH8.2An issue was discovered in IdeBusDxe in Insyde InsydeH2O with kernel 5.1 before 05.16.25, 5.2 before 05.26.25, 5.3 befor...
CVE-2021-45969HIGH8.2An issue was discovered in AhciBusDxe in Insyde InsydeH2O with kernel 5.1 before 05.16.25, 5.2 before 05.26.25, 5.3 befo...
CVE-2021-45833MEDIUM5.5A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 via the H5D__create_chunk_file_map_hyper function in...
CVE-2021-45832MEDIUM5.5A Stack-based Buffer Overflow Vulnerability exists in HDF5 1.13.1-1 at at hdf5/src/H5Eint.c, which causes a Denial of Se...
CVE-2021-45831MEDIUM5.5A Null Pointer Dereference vulnerability exitgs in GPAC 1.0.1 in MP4Box via __strlen_avx2, which causes a Denial of Serv...
CVE-2021-45830MEDIUM5.5A heap-based buffer overflow vulnerability exists in HDF5 1.13.1-1 via H5F_addr_decode_len in /hdf5/src/H5Fint.c, which ...
CVE-2021-43816CRITICAL9.1containerd is an open source container runtime. On installations using SELinux, such as EL8 (CentOS, RHEL), Fedora, or S...
CVE-2021-43779CRITICAL9.9GLPI is an open source IT Asset Management, issue tracking system and service desk system. The GLPI addressing plugin in...
CVE-2021-38918HIGH7.5IBM PowerVM Hypervisor FW860, FW940, FW950, and FW1010, through a specific sequence of VM management operations could le...
CVE-2021-28713MEDIUM6.5Rogue backends can cause DoS of guests via high frequency events T[his CNA information record relates to multiple CVEs; ...
CVE-2021-28712MEDIUM6.5Rogue backends can cause DoS of guests via high frequency events T[his CNA information record relates to multiple CVEs; ...
CVE-2021-28711MEDIUM6.5Rogue backends can cause DoS of guests via high frequency events T[his CNA information record relates to multiple CVEs; ...
CVE-2021-41043MEDIUM5.5Use after free in tcpslice triggers AddressSanitizer, no other confirmed impact.
CVE-2021-31589MEDIUM6.1A cross-site scripting (XSS) vulnerability has been reported and confirmed for BeyondTrust Secure Remote Access Base Sof...
CVE-2021-22567LOW3.5Bidirectional Unicode text can be interpreted and compiled differently than how it appears in editors which can be explo...
CVE-2021-43946MEDIUM6.5Affected versions of Atlassian Jira Server and Data Center allow authenticated remote attackers to add administrator gro...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now