2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-42731HIGH7.8Adobe InDesign versions 16.4 (and earlier) are affected by a Buffer Overflow vulnerability when parsing a specially craf...
CVE-2021-42725HIGH7.8Adobe Bridge version 11.1.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a...
CVE-2021-42723HIGH7.8Adobe Bridge version 11.1.1 (and earlier) is affected by an out-of-bounds read vulnerability when parsing a crafted SGI ...
CVE-2021-42721HIGH7.8Acrobat Bridge versions 11.1.1 and earlier are affected by a use-after-free vulnerability in the processing of Format ev...
CVE-2021-43013HIGH7.8Adobe Media Encoder version 15.4.1 (and earlier) are affected by a memory corruption vulnerability. An unauthenticated a...
CVE-2021-42726HIGH7.8Adobe Bridge version 11.1.1 (and earlier) is affected by a memory corruption vulnerability due to insecure handling of a...
CVE-2021-26337MEDIUM5.5Insufficient DRAM address validation in System Management Unit (SMU) may result in a DMA read from invalid DRAM address ...
CVE-2021-26336MEDIUM5.5Insufficient bounds checking in System Management Unit (SMU) may cause invalid memory accesses/updates that could result...
CVE-2021-26335HIGH7.8Improper input and range checking in the AMD Secure Processor (ASP) boot loader image header may allow an attacker to us...
CVE-2021-26331HIGH7.8AMD System Management Unit (SMU) contains a potential issue where a malicious user may be able to manipulate mailbox ent...
CVE-2021-26330MEDIUM5.5AMD System Management Unit (SMU) may experience a heap-based overflow which may result in a loss of resources.
CVE-2021-26327MEDIUM5.5Insufficient validation of guest context in the SNP Firmware could lead to a potential loss of guest confidentiality.
CVE-2021-26325MEDIUM5.5Insufficient input validation in the SNP_GUEST_REQUEST command may lead to a potential data abort error and a denial of ...
CVE-2021-26323HIGH7.8Failure to validate SEV Commands while SNP is active may result in a potential impact to memory integrity.
CVE-2021-26321MEDIUM5.5Insufficient ID command validation in the SEV Firmware may allow a local authenticated attacker to perform a denial of s...
CVE-2021-26320MEDIUM5.5Insufficient validation of the AMD SEV Signing Key (ASK) in the SEND_START command in the SEV Firmware may allow a local...
CVE-2021-26315HIGH7.8When the AMD Platform Security Processor (PSP) boot rom loads, authenticates, and subsequently decrypts an encrypted FW,...
CVE-2021-43048CRITICAL9.8The Interior Server and Gateway Server components of TIBCO Software Inc.'s TIBCO PartnerExpress contain a vulnerability ...
CVE-2021-43047CRITICAL9The Interior Server and Gateway Server components of TIBCO Software Inc.'s TIBCO PartnerExpress contain easily exploitab...
CVE-2021-43046HIGH8.8The Interior Server and Gateway Server components of TIBCO Software Inc.'s TIBCO PartnerExpress contain an easily exploi...
CVE-2021-41258MEDIUM5.4Kirby is an open source file structured CMS. In affected versions Kirby's blocks field stores structured data for each b...
CVE-2021-41252MEDIUM5.4Kirby is an open source file structured CMS ### Impact Kirby's writer field stores its formatted content as HTML code. U...
CVE-2021-26338HIGH7.5Improper access controls in System Management Unit (SMU) may allow for an attacker to override performance control table...
CVE-2021-26329MEDIUM5.5AMD System Management Unit (SMU) may experience an integer overflow when an invalid length is provided which may result ...
CVE-2021-26326HIGH7.8Failure to validate VM_HSAVE_PA during SNP_INIT may result in a loss of memory integrity.

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now