2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-29747HIGH7.5IBM InfoSphere Information Server 11.7 could allow a remote attacker to obtain highly sensitive information due to a vul...
CVE-2021-24295HIGH7.5It was possible to exploit an Unauthenticated Time-Based Blind SQL Injection vulnerability in the Spam protection, AntiS...
CVE-2021-24289HIGH8.8There is functionality in the Store Locator Plus for WordPress plugin through 5.5.14 that made it possible for authentic...
CVE-2021-32403HIGH8.8Intelbras Router RF 301K Firmware 1.1.2 is vulnerable to Cross Site Request Forgery (CSRF) due to lack of security mecha...
CVE-2021-32402HIGH8.8Intelbras Router RF 301K Firmware 1.1.2 is vulnerable to Cross Site Request Forgery (CSRF) due to lack of validation and...
CVE-2021-31728HIGH7.8Incorrect access control in zam64.sys, zam32.sys in MalwareFox AntiMalware 2.74.0.150 allows a non-privileged process to...
CVE-2021-31727HIGH7.8Incorrect access control in zam64.sys, zam32.sys in MalwareFox AntiMalware 2.74.0.150 where IOCTL's 0x80002014, 0x800020...
CVE-2021-3483HIGH7.8A flaw was found in the Nosy driver in the Linux kernel. This issue allows a device to be inserted twice into a doubly-l...
CVE-2021-29053HIGH8.8Multiple SQL injection vulnerabilities in Liferay Portal 7.3.5 and Liferay DXP 7.3 before fix pack 1 allow remote authen...
CVE-2021-29047HIGH7.5The SimpleCaptcha implementation in Liferay Portal 7.3.4, 7.3.5 and Liferay DXP 7.3 before fix pack 1 does not invalidat...
CVE-2021-32073HIGH8.8DedeCMS V5.7 SP2 contains a CSRF vulnerability that allows a remote attacker to send a malicious request to to the web m...
CVE-2021-33034HIGH7.8In the Linux kernel before 5.12.4, net/bluetooth/hci_event.c has a use-after-free when destroying an hci_chan, aka CID-5...
CVE-2021-33033HIGH7.8The Linux kernel before 5.11.14 has a use-after-free in cipso_v4_genopt in net/ipv4/cipso_ipv4.c because the CIPSO and C...
CVE-2021-27737HIGH7.5Apache Traffic Server 9.0.0 is vulnerable to a remote DOS attack on the experimental Slicer plugin.
CVE-2021-22866HIGH8.8A UI misrepresentation vulnerability was identified in GitHub Enterprise Server that allowed more permissions to be gran...
CVE-2021-29616HIGH7.8TensorFlow is an end-to-end open source platform for machine learning. The implementation of TrySimplify(https://github....
CVE-2021-29614HIGH7.8TensorFlow is an end-to-end open source platform for machine learning. The implementation of `tf.io.decode_raw` produces...
CVE-2021-29613HIGH7.1TensorFlow is an end-to-end open source platform for machine learning. Incomplete validation in `tf.raw_ops.CTCLoss` all...
CVE-2021-29612HIGH7.8TensorFlow is an end-to-end open source platform for machine learning. An attacker can trigger a heap buffer overflow in...
CVE-2021-29610HIGH7.8TensorFlow is an end-to-end open source platform for machine learning. The validation in `tf.raw_ops.QuantizeAndDequanti...
CVE-2021-29609HIGH7.8TensorFlow is an end-to-end open source platform for machine learning. Incomplete validation in `SparseAdd` results in a...
CVE-2021-29608HIGH7.8TensorFlow is an end-to-end open source platform for machine learning. Due to lack of validation in `tf.raw_ops.RaggedTe...
CVE-2021-29607HIGH7.8TensorFlow is an end-to-end open source platform for machine learning. Incomplete validation in `SparseAdd` results in a...
CVE-2021-29606HIGH7.8TensorFlow is an end-to-end open source platform for machine learning. A specially crafted TFLite model could trigger an...
CVE-2021-29603HIGH7.8TensorFlow is an end-to-end open source platform for machine learning. A specially crafted TFLite model could trigger an...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now