2021 CVE Vulnerabilities

23,461 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-0640HIGH7.8In noteAtomLogged of StatsdStats.cpp, there is a possible out of bounds write due to a missing bounds check. This could ...
CVE-2021-0639MEDIUM5.5In multiple functions of libl3oemcrypto.cpp, there is a possible weakness in the existing obfuscation mechanism due to t...
CVE-2021-0593HIGH7.8In sendDevicePickedIntent of DevicePickerFragment.java, there is a possible way to invoke a privileged broadcast receive...
CVE-2021-0591HIGH7.3In sendReplyIntentToReceiver of BluetoothPermissionActivity.java, there is a possible way to invoke privileged broadcast...
CVE-2021-0584MEDIUM5.5In verifyBufferObject of Parcel.cpp, there is a possible out of bounds read due to an improper input validation. This co...
CVE-2021-0582MEDIUM6.5In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informat...
CVE-2021-0581MEDIUM6.5In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informat...
CVE-2021-0580MEDIUM6.5In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informat...
CVE-2021-0579MEDIUM6.5In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informat...
CVE-2021-0578MEDIUM6.5In wifi driver, there is a possible out of bounds read due to a missing bounds check. This could lead to remote informat...
CVE-2021-0576HIGH7.8In flv extractor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escala...
CVE-2021-0574HIGH7.8In asf extractor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escala...
CVE-2021-0573HIGH7.8In asf extractor, there is a possible out of bounds write due to a missing bounds check. This could lead to local escala...
CVE-2021-0519HIGH7.8In BITSTREAM_FLUSH of ih264e_bitstream.h, there is a possible out of bounds write due to a heap buffer overflow. This co...
CVE-2021-32830HIGH7The @diez/generation npm package is a client for Diez. The locateFont method of @diez/generation has a command injection...
CVE-2021-29056MEDIUM4.8Cross Site Scripting (XSS) vulnerability exists in Pixelimity 1.0 via the HTTP POST parameter to admin/setting.php.
CVE-2021-3633HIGH7.8A DLL preloading vulnerability was reported in Lenovo Driver Management prior to version 2.9.0719.1104 that could allow ...
CVE-2021-3617HIGH7.2A vulnerability was reported in Lenovo Smart Camera X3, X5, and C2E that could allow command injection by setting a spec...
CVE-2021-3616CRITICAL9.8A vulnerability was reported in Lenovo Smart Camera X3, X5, and C2E that could allow an unauthorized user to view device...
CVE-2021-3615MEDIUM6.8A vulnerability was reported in Lenovo Smart Camera X3, X5, and C2E that could allow code execution if a specific file e...
CVE-2021-3459MEDIUM6.8A privilege escalation vulnerability was reported in the MM1000 device configuration web server, which could allow privi...
CVE-2021-3458MEDIUM4.6The Motorola MM1000 device configuration portal can be accessed without authentication, which could allow adapter settin...
CVE-2021-32829CRITICAL9.9ZStack is open source IaaS(infrastructure as a service) software aiming to automate datacenters, managing resources of c...
CVE-2021-25957HIGH8.8In “Dolibarr” application, v2.8.1 to v13.0.2 are vulnerable to account takeover via password reset functionality. A low ...
CVE-2021-25956HIGH7.2In “Dolibarr” application, v3.3.beta1_20121221 to v13.0.2 have “Modify” access for admin level users to change other use...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now