2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-30472HIGH7.8A flaw was found in PoDoFo 0.9.7. A stack-based buffer overflow in PdfEncryptMD5Base::ComputeOwnerKey function in PdfEnc...
CVE-2021-30471MEDIUM5.5A flaw was found in PoDoFo 0.9.7. An uncontrolled recursive call in PdfNamesTree::AddToDictionary function in src/podofo...
CVE-2021-30470MEDIUM5.5A flaw was found in PoDoFo 0.9.7. An uncontrolled recursive call among PdfTokenizer::ReadArray(), PdfTokenizer::GetNextV...
CVE-2021-30469MEDIUM5.5A flaw was found in PoDoFo 0.9.7. An use-after-free in PoDoFo::PdfVecObjects::Clear() function can cause a denial of ser...
CVE-2021-28170MEDIUM5.3In the Jakarta Expression Language implementation 3.0.3 and earlier, a bug in the ELParserTokenManager enables invalid E...
CVE-2021-25217HIGH7.4In ISC DHCP 4.1-ESV-R1 -> 4.1-ESV-R16, ISC DHCP 4.4.0 -> 4.4.2 (Other branches of ISC DHCP (i.e., releases in the 4.0.x ...
CVE-2021-20196MEDIUM6.5A NULL pointer dereference flaw was found in the floppy disk emulator of QEMU. This issue occurs while processing read/w...
CVE-2021-3549HIGH7.1An out of bounds flaw was found in GNU binutils objdump utility version 2.36. An attacker could use this flaw and pass a...
CVE-2021-3548HIGH7.1A flaw was found in dmg2img through 20170502. dmg2img did not validate the size of the read buffer during memcpy() insid...
CVE-2021-25643MEDIUM4.9An issue was discovered in Couchbase Server 5.x and 6.x before 6.5.2 and 6.6.x before 6.6.2. Internal users with adminis...
CVE-2021-20297MEDIUM5.5A flaw was found in NetworkManager in versions before 1.30.0. Setting match.path and activating a profile crashes Networ...
CVE-2021-20191MEDIUM5.5A flaw was found in ansible. Credentials, such as secrets, are being disclosed in console log by default and not protect...
CVE-2021-20177MEDIUM4.4A flaw was found in the Linux kernel's implementation of string matching within a packet. A privileged user (with root o...
CVE-2021-22747LOW3.9Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon ...
CVE-2021-22746LOW3.9Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon ...
CVE-2021-22745LOW3.9Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon ...
CVE-2021-22744LOW3.9Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon ...
CVE-2021-22743LOW3.9Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex TCM 4351B installed on Tricon V11....
CVE-2021-22742LOW3.9Improper Check for Unusual or Exceptional Conditions vulnerability exists in Triconex Model 3009 MP installed on Tricon ...
CVE-2021-22741MEDIUM6.7Use of Password Hash with Insufficient Computational Effort vulnerability exists in ClearSCADA (all versions), EcoStruxu...
CVE-2021-22740MEDIUM6.5Information Exposure vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior which could cause in...
CVE-2021-22739MEDIUM5.9Information Exposure vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior which could cause a ...
CVE-2021-22738CRITICAL9.8Use of a Broken or Risky Cryptographic Algorithm vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 an...
CVE-2021-22737CRITICAL9.8Insufficiently Protected Credentials vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior that...
CVE-2021-22736HIGH7.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in homeLYnk (Wiser F...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now