2021 CVE Vulnerabilities

23,452 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-30819MEDIUM5.5An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 15 and iPadOS 15. Process...
CVE-2021-30815LOW2.4A lock screen issue allowed access to contacts on a locked device. This issue was addressed with improved state manageme...
CVE-2021-30811MEDIUM5.5This issue was addressed with improved checks. This issue is fixed in iOS 15 and iPadOS 15, watchOS 8. A local attacker ...
CVE-2021-30810MEDIUM4.3An authorization issue was addressed with improved state management. This issue is fixed in iOS 15 and iPadOS 15, watchO...
CVE-2021-30807HIGH7.8A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.5.1, iOS ...
CVE-2021-30358HIGH7.2Mobile Access Portal Native Applications who's path is defined by the administrator with environment variables may run a...
CVE-2021-3889HIGH8.1libmobi is vulnerable to Use of Out-of-range Pointer Offset
CVE-2021-3888HIGH8.1libmobi is vulnerable to Use of Out-of-range Pointer Offset
CVE-2021-3879MEDIUM5.4snipe-it is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-3872HIGH7.8vim is vulnerable to Heap-based Buffer Overflow
CVE-2021-3869HIGH7.5corenlp is vulnerable to Improper Restriction of XML External Entity Reference
CVE-2021-3863MEDIUM6.1snipe-it is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-3858HIGH8.8snipe-it is vulnerable to Cross-Site Request Forgery (CSRF)
CVE-2021-3851MEDIUM5.4firefly-iii is vulnerable to URL Redirection to Untrusted Site
CVE-2021-3846HIGH8.8firefly-iii is vulnerable to Unrestricted Upload of File with Dangerous Type
CVE-2021-38486HIGH8.5InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 cloud portal allows for self-registration of the aff...
CVE-2021-38484HIGH7.2InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 do not have a filter or signature check to detect or...
CVE-2021-38482MEDIUM4.8InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 website used to control the router is vulnerable to ...
CVE-2021-38480HIGH8.8InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 are vulnerable to cross-site request forgery when un...
CVE-2021-38478CRITICAL9.1InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 are vulnerable to an attacker using a traceroute too...
CVE-2021-38476MEDIUM5.3InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 authentication process response indicates and valida...
CVE-2021-38474CRITICAL9.8InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 have has no account lockout policy configured for th...
CVE-2021-38472MEDIUM4.7InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 management portal does not contain an X-FRAME-OPTION...
CVE-2021-38470CRITICAL9.1InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 are vulnerable to an attacker using a ping tool to i...
CVE-2021-38468MEDIUM4.8InHand Networks IR615 Router's Versions 2.3.0.r4724 and 2.3.0.r4870 are vulnerable to stored cross-scripting, which may ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now