2021 CVE Vulnerabilities

23,466 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-27660HIGH8.8An insecure client auto update feature in C-CURE 9000 can allow remote execution of lower privileged Windows programs.
CVE-2021-35336CRITICAL9.8Tieline IP Audio Gateway 2.6.4.8 and below is affected by Incorrect Access Control. A vulnerability in the Tieline Web A...
CVE-2021-27477HIGH7.5When JTEKT Corporation TOYOPUC PLC versions PC10G-CPU, 2PORT-EFR, Plus CPU, Plus EX, Plus EX2, Plus EFR, Plus EFR2, Plus...
CVE-2021-31813MEDIUM5.4Zoho ManageEngine Applications Manager before 15130 is vulnerable to Stored XSS while importing malicious user details (...
CVE-2021-22344MEDIUM5.3There is an Improper Access Control vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability ma...
CVE-2021-22343CRITICAL9.1There is a Configuration Defect vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may af...
CVE-2021-22347MEDIUM5.3There is an Improper Access Control vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability ma...
CVE-2021-20778HIGH7.5Improper access control vulnerability in EC-CUBE 4.0.6 (EC-CUBE 4 series) allows a remote attacker to bypass access rest...
CVE-2021-20752MEDIUM6.1Cross-site scripting vulnerability in IkaIka RSS Reader all versions allows a remote attacker to inject an arbitrary scr...
CVE-2021-36089HIGH7.8Grok 7.6.6 through 9.2.0 has a heap-based buffer overflow in grk::FileFormatDecompress::apply_palette_clr (called from g...
CVE-2021-36088CRITICAL9.8Fluent Bit (aka fluent-bit) 1.7.0 through 1.7.4 has a double free in flb_free (called from flb_parser_json_do and flb_pa...
CVE-2021-36087LOW3.3The CIL compiler in SELinux 3.2 has a heap-based buffer over-read in ebitmap_match_any (called indirectly from cil_check...
CVE-2021-36086LOW3.3The CIL compiler in SELinux 3.2 has a use-after-free in cil_reset_classpermission (called from cil_reset_classperms_set ...
CVE-2021-36085LOW3.3The CIL compiler in SELinux 3.2 has a use-after-free in __cil_verify_classperms (called from __verify_map_perm_classperm...
CVE-2021-36084LOW3.3The CIL compiler in SELinux 3.2 has a use-after-free in __cil_verify_classperms (called from __cil_verify_classpermissio...
CVE-2021-36083MEDIUM5.5KDE KImageFormats 5.70.0 through 5.81.0 has a stack-based buffer overflow in XCFImageFormat::loadTileRLE.
CVE-2021-36082HIGH8.8ntop nDPI 3.4 has a stack-based buffer overflow in processClientServerHello.
CVE-2021-36081HIGH7.8Tesseract OCR 5.0.0-alpha-20201231 has a one_ell_conflict use-after-free during a strpbrk call.
CVE-2021-36080HIGH8.8GNU LibreDWG 0.12.3.4163 through 0.12.3.4191 has a double-free in bit_chain_free (called from dwg_encode_MTEXT and dwg_e...
CVE-2021-28804CRITICAL9.8A command injection vulnerabilities have been reported to affect QTS and QuTS hero. If exploited, this vulnerability all...
CVE-2021-28803MEDIUM5.4This issue affects: QNAP Systems Inc. Q'center versions prior to 1.11.1004.
CVE-2021-28802CRITICAL9.8A command injection vulnerabilities have been reported to affect QTS and QuTS hero. If exploited, this vulnerability all...
CVE-2021-22345CRITICAL9.8There is an Input Verification Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cau...
CVE-2021-22352HIGH7.8There is a Configuration Defect Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may al...
CVE-2021-22351HIGH8.1There is a Credentials Management Errors Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerabili...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now