2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-21947 | HIGH | 8.8 | 1.0% | Apr 14, 2022 | Two heap-based buffer overflow vulnerabilities exists in the JPEG-JFIF lossless Huffman image parser functionality of Ac... |
| CVE-2021-21946 | HIGH | 8.8 | 1.0% | Apr 14, 2022 | Two heap-based buffer overflow vulnerabilities exists in the JPEG-JFIF lossless Huffman image parser functionality of Ac... |
| CVE-2021-21945 | HIGH | 8.8 | 1.0% | Apr 14, 2022 | Two heap-based buffer overflow vulnerabilities exist in the TIFF parser functionality of Accusoft ImageGear 19.10. A spe... |
| CVE-2021-21944 | HIGH | 8.8 | 1.0% | Apr 14, 2022 | Two heap-based buffer overflow vulnerabilities exist in the TIFF parser functionality of Accusoft ImageGear 19.10. A spe... |
| CVE-2021-21943 | HIGH | 8.8 | 1.5% | Apr 14, 2022 | A heap-based buffer overflow vulnerability exists in the XWD parser functionality of Accusoft ImageGear 19.10. A special... |
| CVE-2021-21942 | HIGH | 8.8 | 1.8% | Apr 14, 2022 | An out-of-bounds write vulnerability exists in the TIFF YCbCr image parser functionality of Accusoft ImageGear 19.10. A ... |
| CVE-2021-21939 | HIGH | 8.8 | 1.5% | Apr 14, 2022 | A heap-based buffer overflow vulnerability exists in the XWD parser functionality of Accusoft ImageGear 19.10. A special... |
| CVE-2021-21938 | HIGH | 8.8 | 1.7% | Apr 14, 2022 | A heap-based buffer overflow vulnerability exists in the Palette box parser functionality of Accusoft ImageGear 19.10. A... |
| CVE-2021-21914 | HIGH | 8.8 | 1.5% | Apr 14, 2022 | A heap-based buffer overflow vulnerability exists in the DecoderStream::Append functionality of Accusoft ImageGear 19.10... |
| CVE-2021-43289 | HIGH | 7.5 | 2.3% | Apr 14, 2022 | An issue was discovered in ThoughtWorks GoCD before 21.3.0. An attacker who has compromised a GoCD agent can upload a ma... |
| CVE-2021-43286 | HIGH | 8.8 | 2.6% | Apr 14, 2022 | An issue was discovered in ThoughtWorks GoCD before 21.3.0. An attacker with privileges to create a new pipeline on a Go... |
| CVE-2021-43287 | HIGH | 7.5 | 23.7% | Apr 14, 2022 | An issue was discovered in ThoughtWorks GoCD before 21.3.0. The business continuity add-on, which is enabled by default,... |
| CVE-2021-41119 | HIGH | 7.5 | 1.5% | Apr 13, 2022 | Wire-server is the system server for the wire back-end services. Releases prior to v2022-03-01 are subject to a denial o... |
| CVE-2021-22797 | HIGH | 7.8 | 26.1% | Apr 13, 2022 | A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal) vulnerability exists that could ... |
| CVE-2021-46167 | HIGH | 7.8 | 0.4% | Apr 13, 2022 | An access control issue in the authentication module of wizplat PD065 v1.19 allows attackers to access sensitive data an... |
| CVE-2021-44520 | HIGH | 8.8 | 5.6% | Apr 13, 2022 | In Citrix XenMobile Server through 10.12 RP9, there is an Authenticated Command Injection vulnerability, leading to remo... |
| CVE-2021-41004 | HIGH | 7.5 | 0.9% | Apr 12, 2022 | A remote vulnerability was discovered in Aruba Instant On 1930 Switch Series version(s): Firmware below v1.0.7.0. |
| CVE-2021-39812 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In TBD of TBD, there is a possible out of bounds read due to a use after free. This could lead to local escalation of pr... |
| CVE-2021-39809 | HIGH | 7.5 | 0.7% | Apr 12, 2022 | In avrc_ctrl_pars_vendor_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. T... |
| CVE-2021-39808 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In createNotificationChannelGroup of PreferencesHelper.java, there is a possible way for a service to run in foreground ... |
| CVE-2021-39807 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In handleNfcStateChanged of SecureNfcEnabler.java, there is a possible way to enable NFC from the Guest account due to a... |
| CVE-2021-39802 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In change_pte_range of mprotect.c , there is a possible way to make a shared mmap writable due to a permissions bypass. ... |
| CVE-2021-39801 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In ion_ioctl of ion-ioctl.c, there is a possible use after free due to improper locking. This could lead to local escala... |
| CVE-2021-39799 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In AttributionSource of AttributionSource.java, there is a possible permission bypass due to improper input validation. ... |
| CVE-2021-39798 | HIGH | 7.8 | 0.1% | Apr 12, 2022 | In Bitmap_createFromParcel of Bitmap.cpp, there is a possible arbitrary code execution due to a missing bounds check. Th... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now