2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-26377MEDIUM4.1Insufficient parameter validation while allocating process space in the Trusted OS (TOS) may allow for a malicious users...
CVE-2021-4459MEDIUM6.5An authorized remote attacker can access files and directories outside the intended web root, potentially exposing sensi...
CVE-2021-27961MEDIUM6.5evesys 7.1 (2152) through 8.0 (2202) allows Reflected XSS via the indexeva.php action parameter.
CVE-2021-47688MEDIUM5.7In WhiteBeam 0.2.0 through 0.2.1 before 0.2.2, a user with local access to a server can bypass the allow-list functional...
CVE-2021-25262MEDIUM5.4Yandex Browser for Android prior to version 21.3.0 allows remote attackers to perform IDN homograph attack.
CVE-2021-25254MEDIUM5.3Yandex Browser Lite for Android before 21.1.0 allows remote attackers to spoof the address bar.
CVE-2021-47664MEDIUM5.3Due to improper authentication mechanism an unauthenticated remote attacker can enumerate valid usernames.
CVE-2021-24008MEDIUM5.3An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiDDoS versi...
CVE-2021-4454MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: can: j1939: fix errant WARN_ON_ONCE in j1939_sessio...
CVE-2021-25635MEDIUM5.5An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to self sign an ODF document, with ...
CVE-2021-32584MEDIUM5.3An improper access control (CWE-284) vulnerability in FortiWLC version 8.6.0, version 8.5.3 and below, version 8.4.8 and...
CVE-2021-26087MEDIUM6.1An improper neutralization of input during web page generation in FortiWLC version 8.6.0, version 8.5.3 and below, versi...
CVE-2021-22126MEDIUM6.7A use of hard-coded password vulnerability in FortiWLC version 8.5.2 and below, version 8.4.8 and below, version 8.3.3 t...
CVE-2021-37787MEDIUM6.5The unprivileged administrative interface in ABO.CMS version 5.8 through v.5.9.3 is affected by a SQL Injection vulnerab...
CVE-2021-4453MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: fix a potential gpu_metrics_table memor...
CVE-2021-47660MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix some memory leaks in an error handlin...
CVE-2021-47659MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/plane: Move range check for format_count earlie...
CVE-2021-47658MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: fix a potential gpu_metrics_table memor...
CVE-2021-47657MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: drm/virtio: Ensure that objs is not NULL in virtio_...
CVE-2021-47655MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: media: venus: vdec: fixed possible memory leak issu...
CVE-2021-47654MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: samples/landlock: Fix path_list memory leak Clang ...
CVE-2021-47652MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: video: fbdev: smscufx: Fix null-ptr-deref in ufx_us...
CVE-2021-47651MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: soc: qcom: rpmpd: Check for null return of devm_kca...
CVE-2021-47650MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: ASoC: soc-compress: prevent the potentially use of ...
CVE-2021-47649MEDIUM5.5In the Linux kernel, the following vulnerability has been resolved: udmabuf: validate ubuf->pagecount Syzbot has repor...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now