2021 CVE Vulnerabilities

23,466 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-3630MEDIUM5.5An out-of-bounds write vulnerability was found in DjVuLibre in DJVU::DjVuTXT::decode() in DjVuText.cpp via a crafted djv...
CVE-2021-22380CRITICAL9.1There is a Cleartext Transmission of Sensitive Information Vulnerability in Huawei Smartphone. Successful exploitation o...
CVE-2021-22376HIGH8.4A component of the HarmonyOS has a Improper Privilege Management vulnerability. Local attackers may exploit this vulnera...
CVE-2021-22375CRITICAL9.8There is a Key Management Errors Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may a...
CVE-2021-22372HIGH7.5There is a Security Features Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may affec...
CVE-2021-22370HIGH7.5There is a Credentials Management Errors Vulnerability in Huawei Smartphone. Successful exploitation of this vulnerabili...
CVE-2021-22326HIGH7.1A component of the HarmonyOS has a Privilege Dropping / Lowering Errors vulnerability. Local attackers may exploit this ...
CVE-2021-20461MEDIUM6.5IBM Cognos Analytics 10.0 and 11.1 is susceptible to a weakness in the implementation of the System Appearance configura...
CVE-2021-20107MEDIUM5.4There exists an unauthenticated BLE Interface in Sloan SmartFaucets including Optima EAF, Optima ETF/EBF, BASYS EFX, and...
CVE-2021-28993HIGH7.5Plixer Scrutinizer 19.0.2 is affected by: SQL Injection. The impact is: obtain sensitive information (remote).
CVE-2021-35956MEDIUM5.4Stored cross-site scripting (XSS) in the embedded webserver of AKCP sensorProbe before SP480-20210624 enables remote aut...
CVE-2021-27903CRITICAL9.8An issue was discovered in Craft CMS before 3.6.7. In some circumstances, a potential Remote Code Execution vulnerabilit...
CVE-2021-27902MEDIUM6.1An issue was discovered in Craft CMS before 3.6.0. In some circumstances, a potential XSS vulnerability existed in conne...
CVE-2021-25951HIGH7.5XXE vulnerability in 'XML2Dict' version 0.2.2 allows an attacker to cause a denial of service.
CVE-2021-34385MEDIUM6.7Trusty TLK contains a vulnerability in the NVIDIA TLK kernel where an integer overflow in the calculation of a length co...
CVE-2021-34384HIGH7.8Bootloader contains a vulnerability in NVIDIA MB2 where a potential heap overflow could cause memory corruption, which m...
CVE-2021-34383MEDIUM6.7Bootloader contains a vulnerability in NVIDIA MB2 where a potential heap overflow might lead to denial of service or esc...
CVE-2021-34382HIGH7.8Trusty TLK contains a vulnerability in the NVIDIA TLK kernel’s tz_map_shared_mem function where an integer overflow on t...
CVE-2021-34381HIGH7.8Trusty TLK contains a vulnerability in the NVIDIA TLK kernel function where a lack of checks allows the exploitation of ...
CVE-2021-34380HIGH7.8Bootloader contains a vulnerability in NVIDIA MB2 where potential heap overflow might cause corruption of the heap metad...
CVE-2021-34379MEDIUM6.7Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 10 is missing. The length of an ...
CVE-2021-34378MEDIUM6.7Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 11 is missing. Improper restrict...
CVE-2021-34377MEDIUM6.7Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 9 is missing. Improper restricti...
CVE-2021-34376MEDIUM6.7Trusty contains a vulnerability in the HDCP service TA where bounds checking in command 5 is missing. Improper restricti...
CVE-2021-34375MEDIUM6.7Trusty contains a vulnerability in all trusted applications (TAs) where the stack cookie was not randomized, which might...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now