2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-0871 | HIGH | 7.8 | 0.1% | Sep 13, 2022 | In PVRSRVBridgePMRPDumpSymbolicAddr of the PowerVR kernel driver, a missing size check means there is a possible integer... |
| CVE-2021-0697 | HIGH | 7 | 0.1% | Sep 13, 2022 | In PVRSRVRGXSubmitTransferKM of rgxtransfer.c, there is a possible user after free due to a race condition. This could l... |
| CVE-2021-44426 | HIGH | 8.8 | 1.0% | Sep 12, 2022 | An issue was discovered in AnyDesk before 6.2.6 and 6.3.x before 6.3.5. An upload of an arbitrary file to a victim's loc... |
| CVE-2021-37819 | HIGH | 7.5 | 0.7% | Sep 9, 2022 | PDF Labs pdftk-java v3.2.3 was discovered to contain an infinite loop via the component /text/pdf/PdfReader.java. |
| CVE-2021-43565 | HIGH | 7.5 | 0.9% | Sep 6, 2022 | The x/crypto/ssh package before 0.0.0-20211202192323-5770296d904e of golang.org/x/crypto allows an attacker to panic an ... |
| CVE-2021-28398 | HIGH | 7.2 | 1.1% | Sep 5, 2022 | A privileged attacker in GeoNetwork before 3.12.0 and 4.x before 4.0.4 can use the directory harvester before-script to ... |
| CVE-2021-35134 | HIGH | 8.4 | 0.1% | Sep 2, 2022 | Due to insufficient validation of ELF headers, an Incorrect Calculation of Buffer Size can occur in Boot leading to memo... |
| CVE-2021-35132 | HIGH | 7.8 | 0.1% | Sep 2, 2022 | Out of bound write in DSP service due to improper bound check for response buffer size in Snapdragon Auto, Snapdragon Co... |
| CVE-2021-35122 | HIGH | 7.8 | 0.1% | Sep 2, 2022 | Non-secure region can try modifying RG permissions of IO space xPUs due to improper input validation in Snapdragon Auto,... |
| CVE-2021-25657 | HIGH | 7.8 | 0.2% | Sep 2, 2022 | A privilege escalation vulnerability was discovered in Avaya IP Office Admin Lite and USB Creator that may potentially a... |
| CVE-2021-45027 | HIGH | 7.5 | 1.6% | Sep 1, 2022 | An arbitrary file download vulnerability in Oliver v5 Library Server Versions < 5.00.008.053 via the FileServlet functio... |
| CVE-2021-41785 | HIGH | 7.8 | 1.3% | Aug 29, 2022 | Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-... |
| CVE-2021-41784 | HIGH | 7.8 | 0.7% | Aug 29, 2022 | Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-... |
| CVE-2021-41783 | HIGH | 7.8 | 1.3% | Aug 29, 2022 | Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-... |
| CVE-2021-41782 | HIGH | 7.8 | 1.3% | Aug 29, 2022 | Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-... |
| CVE-2021-41781 | HIGH | 7.8 | 1.3% | Aug 29, 2022 | Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-... |
| CVE-2021-41780 | HIGH | 7.8 | 0.5% | Aug 29, 2022 | Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-... |
| CVE-2021-3864 | HIGH | 7 | 0.7% | Aug 26, 2022 | A flaw was found in the way the dumpable flag setting was handled when certain SUID binaries executed its descendants. T... |
| CVE-2021-3859 | HIGH | 7.5 | 1.2% | Aug 26, 2022 | A flaw was found in Undertow that tripped the client-side invocation timeout with certain calls made over HTTP2. This fl... |
| CVE-2021-3703 | HIGH | 7.5 | 0.7% | Aug 26, 2022 | It was found that the CVE-2021-27918, CVE-2021-31525 and CVE-2021-33196 have been incorrectly mentioned as fixed in RHSA... |
| CVE-2021-3632 | HIGH | 7.5 | 0.9% | Aug 26, 2022 | A flaw was found in Keycloak. This vulnerability allows anyone to register a new security device or key when there is no... |
| CVE-2021-3563 | HIGH | 7.4 | 1.3% | Aug 26, 2022 | A flaw was found in openstack-keystone. Only the first 72 characters of an application secret are verified allowing atta... |
| CVE-2021-3414 | HIGH | 8.1 | 0.5% | Aug 26, 2022 | A flaw was found in satellite. When giving granular permission related to the organization, other permissions allowing a... |
| CVE-2021-20260 | HIGH | 7.8 | 0.2% | Aug 26, 2022 | A flaw was found in the Foreman project. The Datacenter plugin exposes the password through the API to an authenticated ... |
| CVE-2021-40285 | HIGH | 8.1 | 0.8% | Aug 26, 2022 | htmly v2.8.1 was discovered to contain an arbitrary file deletion vulnerability via the component \views\backup.html.php... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now