2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-22756HIGH7.8A CWE-125: Out-of-bounds read vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result...
CVE-2021-22755HIGH7.8A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could resul...
CVE-2021-22754HIGH7.8A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could resul...
CVE-2021-22753HIGH7.8A CWE-125: Out-of-bounds read vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result...
CVE-2021-22752HIGH7.8A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could resul...
CVE-2021-22751HIGH7.8A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could resul...
CVE-2021-22750HIGH7.8A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21041 and prior that could resul...
CVE-2021-22749MEDIUM5.3A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Modicon X80 BMXNOR0200H RT...
CVE-2021-22181MEDIUM6.5A denial of service vulnerability in GitLab CE/EE affecting all versions since 11.8 allows an attacker to create a recur...
CVE-2021-22175CRITICAL9.8When requests to the internal network for webhooks are enabled, a server-side request forgery vulnerability in GitLab af...
CVE-2021-20591HIGH7.5Uncontrolled Resource Consumption vulnerability in Mitsubishi Electric MELSEC iQ-R series CPU modules (R00/01/02CPU all ...
CVE-2021-29754HIGH8.8IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to a privilege escalation vulnerability when using...
CVE-2021-28689MEDIUM5.5x86: Speculative vulnerabilities with bare (non-shim) 32-bit PV guests 32-bit x86 PV guest kernels run in ring 1. At the...
CVE-2021-28687MEDIUM5.5HVM soft-reset crashes toolstack libxl requires all data structures passed across its public interface to be initialized...
CVE-2021-25425MEDIUM5.3Improper check vulnerability in Samsung Health prior to version 6.17 allows attacker to read internal cache data via exp...
CVE-2021-25424HIGH8.8Improper authentication vulnerability in Tizen bluetooth-frwk prior to Firmware update JUN-2021 Release allows bluetooth...
CVE-2021-25423MEDIUM5.5Improper log management vulnerability in Watch Active2 PlugIn prior to 2.2.08.21033151 version allows attacker with log ...
CVE-2021-25422MEDIUM5.5Improper log management vulnerability in Watch Active PlugIn prior to version 2.2.07.21033151 allows attacker with log p...
CVE-2021-25421MEDIUM5.5Improper log management vulnerability in Galaxy Watch3 PlugIn prior to version 2.2.09.21033151 allows attacker with log ...
CVE-2021-25420MEDIUM5.5Improper log management vulnerability in Galaxy Watch PlugIn prior to version 2.2.05.21033151 allows attacker with log p...
CVE-2021-25419MEDIUM6.5Non-compliance of recommended secure coding scheme in Samsung Internet prior to version 14.0.1.62 allows attackers to di...
CVE-2021-25418HIGH7.8Improper component protection vulnerability in Samsung Internet prior to version 14.0.1.62 allows untrusted applications...
CVE-2021-25417HIGH7.5Improper authorization in SDP SDK prior to SMR JUN-2021 Release 1 allows access to internal storage.
CVE-2021-25416MEDIUM6.5Assuming EL1 is compromised, an improper address validation in RKP prior to SMR JUN-2021 Release 1 allows local attacker...
CVE-2021-25415MEDIUM5.5Assuming EL1 is compromised, an improper address validation in RKP prior to SMR JUN-2021 Release 1 allows local attacker...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now