2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-33839HIGH7.5Luca through 1.7.4 on Android allows remote attackers to obtain sensitive information about COVID-19 tracking because th...
CVE-2021-33838HIGH7.5Luca through 1.7.4 on Android allows remote attackers to obtain sensitive information about COVID-19 tracking because re...
CVE-2021-22335HIGH7.8There is a Memory Buffer Improper Operation Limit vulnerability in Huawei Smartphone. Successful exploitation of this vu...
CVE-2021-22334HIGH7.4There is an Improper Access Control vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability ma...
CVE-2021-32661HIGH7.3Backstage is an open platform for building developer portals. In versions of Backstage's Techdocs Plugin (`@backstage/pl...
CVE-2021-33815HIGH8.8dwa_uncompress in libavcodec/exr.c in FFmpeg 4.4 allows an out-of-bounds array access because dc_count is not strictly c...
CVE-2021-32660HIGH8.1Backstage is an open platform for building developer portals, and techdocs-common contains common functionalities for Ba...
CVE-2021-22336HIGH7.5There is an Improper Control of Generation of Code vulnerability in Huawei Smartphone. Successful exploitation of this v...
CVE-2021-22324HIGH7.5There is a Credentials Management Errors vulnerability in Huawei Smartphone. Successful exploitation of this vulnerabili...
CVE-2021-22322HIGH7.5There is a Missing Authentication for Critical Function vulnerability in Huawei Smartphone. Successful exploitation of t...
CVE-2021-22317HIGH7.5There is an Information Disclosure vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may...
CVE-2021-22313HIGH7.5There is a Security Function vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may impai...
CVE-2021-32460HIGH7.8The Trend Micro Maximum Security 2021 (v17) consumer product is vulnerable to an improper access control vulnerability i...
CVE-2021-24023HIGH8.8An improper input validation in FortiAI v1.4.0 and earlier may allow an authenticated user to gain system shell access v...
CVE-2021-20380HIGH7.5IBM QRadar Advisor With Watson App 1.1 through 2.5 as used on IBM QRadar SIEM 7.4 could allow a remote user to obtain se...
CVE-2021-32926HIGH7.5When an authenticated password change request takes place, this vulnerability could allow the attacker to intercept the ...
CVE-2021-28848HIGH7.5Mintty before 3.4.5 allows remote servers to cause a denial of service (Windows GUI hang) by telling the Mintty window t...
CVE-2021-32923HIGH7.4HashiCorp Vault and Vault Enterprise allowed the renewal of nearly-expired token leases and dynamic secret leases (speci...
CVE-2021-28847HIGH7.5MobaXterm before 21.0 allows remote servers to cause a denial of service (Windows GUI hang) via tab title change request...
CVE-2021-28812HIGH8.8A command injection vulnerability has been reported to affect certain versions of Video Station. If exploited, this vuln...
CVE-2021-32625HIGH8.8Redis is an open source (BSD licensed), in-memory data structure store, used as a database, cache, and message broker. A...
CVE-2021-3529HIGH7.1A flaw was found in noobaa-core in versions before 5.7.0. This flaw results in the name of an arbitrarily URL being copi...
CVE-2021-28677HIGH7.5An issue was discovered in Pillow before 8.2.0. For EPS data, the readline implementation used in EPSImageFile has to de...
CVE-2021-28676HIGH7.5An issue was discovered in Pillow before 8.2.0. For FLI data, FliDecode did not properly check that the block advance wa...
CVE-2021-3530HIGH7.5A flaw was discovered in GNU libiberty within demangle_path() in rust-demangle.c, as distributed in GNU Binutils version...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now