2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-0547HIGH7.8In onReceive of NetInitiatedActivity.java, there is a possible way to supply an attacker-controlled value to a GPS HAL h...
CVE-2021-0539HIGH7.8In archiveStoredConversation of MmsService.java, there is a possible way to archive message conversation without user co...
CVE-2021-0538HIGH7.3In onCreate of EmergencyCallbackModeExitDialog.java, there is a possible exit of emergency callback mode due to a tapjac...
CVE-2021-0537HIGH7.3In onCreate of WiFiInstaller.java, there is a possible way to install a malicious Hotspot 2.0 configuration due to a tap...
CVE-2021-0536HIGH7.8In dropFile of WiFiInstaller, there is a way to delete files accessible to CertInstaller due to a confused deputy. This ...
CVE-2021-0571HIGH7.8In ActivityTaskManagerService.startActivity() and AppTaskImpl.startActivity() of ActivityTaskManagerService.java and App...
CVE-2021-0570HIGH7.8In sendBugreportNotification of BugreportProgressService.java, there is a possible permission bypass due to an unsafe Pe...
CVE-2021-0568HIGH7.8In onReceive of DevicePolicyManagerService.java, there is a possible enabling of disabled profiles due to a missing perm...
CVE-2021-0567HIGH7.8In isRestricted of RemoteViews.java, there is a possible way to inject font files due to a permissions bypass. This coul...
CVE-2021-0565HIGH7In wrapUserThread of AudioStream.cpp, there is a possible use after free due to a race condition. This could lead to loc...
CVE-2021-0557HIGH8.8In setRange of ABuffer.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to remot...
CVE-2021-0555HIGH7.5In RenderStruct of protostream_objectsource.cc, there is a possible crash due to a missing null check. This could lead t...
CVE-2021-0534HIGH7.8In permission declarations of DeviceAdminReceiver.java, there is a possible lack of broadcast protection due to an insec...
CVE-2021-35196HIGH7.8Manuskript through 0.12.0 allows remote attackers to execute arbitrary code via a crafted settings.pickle file in a proj...
CVE-2021-34388HIGH7.8Bootloader contains a vulnerability in NVIDIA TegraBoot where a potential heap overflow might allow an attacker to contr...
CVE-2021-29063HIGH7.5A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in Mpmath v1.0.0 through v1.2.1 when the mpm...
CVE-2021-29061HIGH7.5A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in Vfsjfilechooser2 version 0.2.9 and below ...
CVE-2021-24377HIGH8.1The Autoptimize WordPress plugin before 2.7.8 attempts to remove potential malicious files from the extracted archive up...
CVE-2021-0533HIGH7In memory management driver, there is a possible memory corruption due to a race condition. This could lead to local esc...
CVE-2021-0532HIGH7In memory management driver, there is a possible memory corruption due to a race condition. This could lead to local esc...
CVE-2021-0531HIGH7.8In memory management driver, there is a possible memory corruption due to a use after free. This could lead to local esc...
CVE-2021-0530HIGH7.8In memory management driver, there is a possible out of bounds write due to uninitialized data. This could lead to local...
CVE-2021-0529HIGH7.8In memory management driver, there is a possible memory corruption due to improper locking. This could lead to local esc...
CVE-2021-0528HIGH7.8In memory management driver, there is a possible memory corruption due to a double free. This could lead to local escala...
CVE-2021-0527HIGH7.8In memory management driver, there is a possible memory corruption due to a use after free. This could lead to local esc...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now