2021 CVE Vulnerabilities

23,466 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-21793HIGH8.8An out-of-bounds write vulnerability exists in the JPG sof_nb_comp header processing functionality of Accusoft ImageGear...
CVE-2021-21779HIGH8.8A use-after-free vulnerability exists in the way Webkit’s GraphicsContext handles certain events in WebKitGTK 2.30.4. A ...
CVE-2021-32462HIGH8.8Trend Micro Password Manager (Consumer) version 5.0.0.1217 and below is vulnerable to an Exposed Hazardous Function Remo...
CVE-2021-32461HIGH7.8Trend Micro Password Manager (Consumer) version 5.0.0.1217 and below is vulnerable to an Integer Truncation Privilege Es...
CVE-2021-31817HIGH7.5When configuring Octopus Server if it is configured with an external SQL database, on initial configuration the database...
CVE-2021-31816HIGH7.5When configuring Octopus Server if it is configured with an external SQL database, on initial configuration the database...
CVE-2021-21821CRITICAL9.8A stack-based buffer overflow vulnerability exists in the PDF process_fontname functionality of Accusoft ImageGear 19.9....
CVE-2021-28809CRITICAL9.8An improper access control vulnerability has been reported to affect certain legacy versions of HBS 3. If exploited, thi...
CVE-2021-34430HIGH7.5Eclipse TinyDTLS through 0.9-rc1 relies on the rand function in the C library, which makes it easier for remote attacker...
CVE-2021-21807CRITICAL9.8An integer overflow vulnerability exists in the DICOM parse_dicom_meta_info functionality of Accusoft ImageGear 19.9. A ...
CVE-2021-21775HIGH8A use-after-free vulnerability exists in the way certain events are processed for ImageLoader objects of Webkit WebKitGT...
CVE-2021-32715MEDIUM5.3hyper is an HTTP library for rust. hyper's HTTP/1 server code had a flaw that incorrectly parses and accepts requests wi...
CVE-2021-32714CRITICAL9.1hyper is an HTTP library for Rust. In versions prior to 0.14.10, hyper's HTTP server and client code had a flaw that cou...
CVE-2021-36217Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-3502. Reason: This candidate is a duplicate of C...
CVE-2021-29759LOW2.3IBM App Connect Enterprise Certified Container 1.0, 1.1, 1.2, and 1.3 could allow a privileged user to obtain sensitive ...
CVE-2021-21789HIGH8.8A privilege escalation vulnerability exists in the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Priv...
CVE-2021-21788HIGH8.8A privilege escalation vulnerability exists in the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Priv...
CVE-2021-21787HIGH8.8A privilege escalation vulnerability exists in the way IOBit Advanced SystemCare Ultimate 14.2.0.220 driver handles Priv...
CVE-2021-21786HIGH7.8A privilege escalation vulnerability exists in the IOCTL 0x9c406144 handling of IOBit Advanced SystemCare Ultimate 14.2....
CVE-2021-20474HIGH7.5IBM Guardium Data Encryption (GDE) 3.0.0.2 and 4.0.0.4 does not perform any authentication for functionality that requir...
CVE-2021-20417MEDIUM4.3IBM Guardium Data Encryption (GDE) 4.0.0.4 could allow a remote attacker to obtain sensitive information when a detailed...
CVE-2021-20416MEDIUM5.3IBM Guardium Data Encryption (GDE) 3.0.0.3 and 4.0.0.4 could allow a remote attacker to obtain sensitive information, ca...
CVE-2021-20415HIGH7.5IBM Guardium Data Encryption (GDE) 4.0.0.4 uses an inadequate account lockout setting that could allow a remote attacker...
CVE-2021-20379HIGH7.5IBM Guardium Data Encryption (GDE) 3.0.0.3 and 4.0.0.4 uses weaker than expected cryptographic algorithms that could all...
CVE-2021-20378HIGH8.8IBM Guardium Data Encryption (GDE) 3.0.0.2 and 4.0.0.4 does not invalidate session after logout which could allow an aut...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now