2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-21947HIGH8.8Two heap-based buffer overflow vulnerabilities exists in the JPEG-JFIF lossless Huffman image parser functionality of Ac...
CVE-2021-21946HIGH8.8Two heap-based buffer overflow vulnerabilities exists in the JPEG-JFIF lossless Huffman image parser functionality of Ac...
CVE-2021-21945HIGH8.8Two heap-based buffer overflow vulnerabilities exist in the TIFF parser functionality of Accusoft ImageGear 19.10. A spe...
CVE-2021-21944HIGH8.8Two heap-based buffer overflow vulnerabilities exist in the TIFF parser functionality of Accusoft ImageGear 19.10. A spe...
CVE-2021-21943HIGH8.8A heap-based buffer overflow vulnerability exists in the XWD parser functionality of Accusoft ImageGear 19.10. A special...
CVE-2021-21942HIGH8.8An out-of-bounds write vulnerability exists in the TIFF YCbCr image parser functionality of Accusoft ImageGear 19.10. A ...
CVE-2021-21939HIGH8.8A heap-based buffer overflow vulnerability exists in the XWD parser functionality of Accusoft ImageGear 19.10. A special...
CVE-2021-21938HIGH8.8A heap-based buffer overflow vulnerability exists in the Palette box parser functionality of Accusoft ImageGear 19.10. A...
CVE-2021-21914HIGH8.8A heap-based buffer overflow vulnerability exists in the DecoderStream::Append functionality of Accusoft ImageGear 19.10...
CVE-2021-43289HIGH7.5An issue was discovered in ThoughtWorks GoCD before 21.3.0. An attacker who has compromised a GoCD agent can upload a ma...
CVE-2021-43286HIGH8.8An issue was discovered in ThoughtWorks GoCD before 21.3.0. An attacker with privileges to create a new pipeline on a Go...
CVE-2021-43287HIGH7.5An issue was discovered in ThoughtWorks GoCD before 21.3.0. The business continuity add-on, which is enabled by default,...
CVE-2021-41119HIGH7.5Wire-server is the system server for the wire back-end services. Releases prior to v2022-03-01 are subject to a denial o...
CVE-2021-22797HIGH7.8A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal) vulnerability exists that could ...
CVE-2021-46167HIGH7.8An access control issue in the authentication module of wizplat PD065 v1.19 allows attackers to access sensitive data an...
CVE-2021-44520HIGH8.8In Citrix XenMobile Server through 10.12 RP9, there is an Authenticated Command Injection vulnerability, leading to remo...
CVE-2021-41004HIGH7.5A remote vulnerability was discovered in Aruba Instant On 1930 Switch Series version(s): Firmware below v1.0.7.0.
CVE-2021-39812HIGH7.8In TBD of TBD, there is a possible out of bounds read due to a use after free. This could lead to local escalation of pr...
CVE-2021-39809HIGH7.5In avrc_ctrl_pars_vendor_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. T...
CVE-2021-39808HIGH7.8In createNotificationChannelGroup of PreferencesHelper.java, there is a possible way for a service to run in foreground ...
CVE-2021-39807HIGH7.8In handleNfcStateChanged of SecureNfcEnabler.java, there is a possible way to enable NFC from the Guest account due to a...
CVE-2021-39802HIGH7.8In change_pte_range of mprotect.c , there is a possible way to make a shared mmap writable due to a permissions bypass. ...
CVE-2021-39801HIGH7.8In ion_ioctl of ion-ioctl.c, there is a possible use after free due to improper locking. This could lead to local escala...
CVE-2021-39799HIGH7.8In AttributionSource of AttributionSource.java, there is a possible permission bypass due to improper input validation. ...
CVE-2021-39798HIGH7.8In Bitmap_createFromParcel of Bitmap.cpp, there is a possible arbitrary code execution due to a missing bounds check. Th...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now