2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-27657HIGH8.8Successful exploitation of this vulnerability could give an authenticated Metasys user an unintended level of access to ...
CVE-2021-30475CRITICAL9.8aom_dsp/noise_model.c in libaom in AOMedia before 2021-03-24 has a buffer overflow.
CVE-2021-22516HIGH7.5Insertion of Sensitive Information into Log File vulnerability in Micro Focus Secure API Manager (SAPIM) product, affect...
CVE-2021-3565MEDIUM5.9A flaw was found in tpm2-tools in versions before 5.1.1 and before 4.3.2. tpm2_import used a fixed AES key for the inner...
CVE-2021-26994MEDIUM6.5Clustered Data ONTAP versions prior to 9.7P13 and 9.8P3 are susceptible to a vulnerability which could allow single work...
CVE-2021-3491HIGH8.8The io_uring subsystem in the Linux kernel allowed the MAX_RW_COUNT limit to be bypassed in the PROVIDE_BUFFERS operatio...
CVE-2021-3490HIGH7.8The eBPF ALU32 bounds tracking for bitwise ops (AND, OR and XOR) in the Linux kernel did not properly update 32-bit boun...
CVE-2021-3489HIGH7.8The eBPF RINGBUF bpf_ringbuf_reserve() function in the Linux kernel did not check that the allocated size was smaller th...
CVE-2021-33840HIGH7.5The server in Luca through 1.1.14 allows remote attackers to cause a denial of service (insertion of many fake records r...
CVE-2021-33839HIGH7.5Luca through 1.7.4 on Android allows remote attackers to obtain sensitive information about COVID-19 tracking because th...
CVE-2021-33838HIGH7.5Luca through 1.7.4 on Android allows remote attackers to obtain sensitive information about COVID-19 tracking because re...
CVE-2021-32666MEDIUM6.5wire-ios is the iOS version of Wire, an open-source secure messaging app. In wire-ios versions 3.8.0 and prior, a vulner...
CVE-2021-32662MEDIUM6.5Backstage is an open platform for building developer portals, and techdocs-common contains common functionalities for Ba...
CVE-2021-32665MEDIUM6.5wire-ios is the iOS version of Wire, an open-source secure messaging app. wire-ios versions 3.8.0 and earlier have a bug...
CVE-2021-3469MEDIUM5.4Foreman versions before 2.3.4 and before 2.4.0 is affected by an improper authorization handling flaw. An authenticated ...
CVE-2021-25947CRITICAL9.8Prototype pollution vulnerability in 'nestie' versions 0.0.0 through 1.0.0 allows an attacker to cause a denial of servi...
CVE-2021-22337MEDIUM5.3There is an Information Disclosure vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may...
CVE-2021-22335HIGH7.8There is a Memory Buffer Improper Operation Limit vulnerability in Huawei Smartphone. Successful exploitation of this vu...
CVE-2021-22334HIGH7.4There is an Improper Access Control vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability ma...
CVE-2021-22333CRITICAL9.8There is an Improper Validation of Array Index vulnerability in Huawei Smartphone. Successful exploitation of this vulne...
CVE-2021-32661HIGH7.3Backstage is an open platform for building developer portals. In versions of Backstage's Techdocs Plugin (`@backstage/pl...
CVE-2021-33815HIGH8.8dwa_uncompress in libavcodec/exr.c in FFmpeg 4.4 allows an out-of-bounds array access because dc_count is not strictly c...
CVE-2021-32660HIGH8.1Backstage is an open platform for building developer portals, and techdocs-common contains common functionalities for Ba...
CVE-2021-22336HIGH7.5There is an Improper Control of Generation of Code vulnerability in Huawei Smartphone. Successful exploitation of this v...
CVE-2021-22325MEDIUM5.3There is an Information Disclosure vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now