2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-0527HIGH7.8In memory management driver, there is a possible memory corruption due to a use after free. This could lead to local esc...
CVE-2021-0526HIGH7.8In memory management driver, there is a possible out of bounds write due to uninitialized data. This could lead to local...
CVE-2021-0525HIGH7.8In memory management driver, there is a possible out of bounds write due to a use after free. This could lead to local e...
CVE-2021-0523HIGH7.3In onCreate of WifiScanModeActivity.java, there is a possible way to enable Wi-Fi scanning without user consent due to a...
CVE-2021-0522HIGH7.5In ConnectionHandler::SdpCb of connection_handler.cc, there is a possible out of bounds read due to a use after free. Th...
CVE-2021-0521MEDIUM5.5In getAllPackages of PackageManagerService, there is a possible information disclosure due to a missing permission check...
CVE-2021-0520HIGH7In several functions of MemoryFileSystem.cpp and related files, there is a possible use after free due to a race conditi...
CVE-2021-0517HIGH7.5In updateCapabilities of ConnectivityService.java, there is a possible incorrect network state determination due to a lo...
CVE-2021-0516CRITICAL9.8In p2p_process_prov_disc_req of p2p_pd.c, there is a possible out of bounds read and write due to a use after free. This...
CVE-2021-0513HIGH7.8In deleteNotificationChannel and related functions of NotificationManagerService.java, there is a possible permission by...
CVE-2021-0512HIGH7.8In __hidinput_change_resolution_multipliers of hid-input.c, there is a possible out of bounds write due to a heap buffer...
CVE-2021-0511HIGH7.8In Dex2oat of dex2oat.cc, there is a possible way to inject bytecode into an app due to improper input validation. This ...
CVE-2021-0510HIGH7.8In decrypt_1_2 of CryptoPlugin.cpp, there is a possible out of bounds write due to an integer overflow. This could lead ...
CVE-2021-0509HIGH7In various functions of CryptoPlugin.cpp, there is a possible use after free due to a race condition. This could lead to...
CVE-2021-0508HIGH7In various functions of DrmPlugin.cpp, there is a possible use after free due to a race condition. This could lead to lo...
CVE-2021-0507HIGH8.8In handle_rc_metamsg_cmd of btif_rc.cc, there is a possible out of bounds write due to a missing bounds check. This coul...
CVE-2021-0506HIGH7.3In ActivityPicker.java, there is a possible bypass of user interaction in intent resolution due to a tapjacking/overlay ...
CVE-2021-0505HIGH7.8In the Settings app, there is a possible way to disable an always-on VPN due to a missing permission check. This could l...
CVE-2021-0504MEDIUM6.5In avrc_pars_browse_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. This c...
CVE-2021-0478HIGH7.8In updateDrawable of StatusBarIconView.java, there is a possible permission bypass due to an uncaught exception. This co...
CVE-2021-29060MEDIUM5.3A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in Color-String version 1.5.5 and below whic...
CVE-2021-29059HIGH7.5A vulnerability was discovered in IS-SVG version 2.1.0 to 4.2.2 and below where a Regular Expression Denial of Service (...
CVE-2021-20249Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2021-20248Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2021-28833MEDIUM6.1Increments Qiita::Markdown before 0.34.0 allows XSS via a crafted gist link, a different vulnerability than CVE-2021-287...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now