2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-39727 | MEDIUM | 4.1 | 0.1% | Mar 16, 2022 | In eicPresentationRetrieveEntryValue of acropora/app/identity/libeic/EicPresentation.c, there is a possible information ... |
| CVE-2021-39725 | MEDIUM | 6.7 | 0.1% | Mar 16, 2022 | In gasket_free_coherent_memory_all of gasket_page_table.c, there is a possible memory corruption due to a double free. T... |
| CVE-2021-39724 | MEDIUM | 4.4 | 0.1% | Mar 16, 2022 | In TuningProviderBase::GetTuningTreeSet of tuning_provider_base.cc, there is a possible out of bounds read due to a miss... |
| CVE-2021-39722 | MEDIUM | 4.4 | 0.1% | Mar 16, 2022 | In ProtocolStkProactiveCommandAdapter::Init of protocolstkadapter.cpp, there is a possible out of bounds read due to an ... |
| CVE-2021-39721 | MEDIUM | 6.7 | 0.1% | Mar 16, 2022 | In TBD of TBD, there is a possible out of bounds write due to memory corruption. This could lead to local escalation of ... |
| CVE-2021-39719 | MEDIUM | 6.7 | 0.1% | Mar 16, 2022 | In lwis_top_register_io of lwis_device_top.c, there is a possible out of bounds write due to an integer overflow. This c... |
| CVE-2021-39718 | MEDIUM | 6.7 | 0.1% | Mar 16, 2022 | In ProtocolStkProactiveCommandAdapter::Init of protocolstkadapter.cpp, there is a possible out of bounds write due to an... |
| CVE-2021-39717 | MEDIUM | 4.4 | 0.1% | Mar 16, 2022 | In iaxxx_btp_write_words of iaxxx-btp.c, there is a possible out of bounds read due to an incorrect bounds check. This c... |
| CVE-2021-39715 | MEDIUM | 4.4 | 0.1% | Mar 16, 2022 | In __show_regs of process.c, there is a possible leak of kernel memory and addresses due to log information disclosure. ... |
| CVE-2021-39712 | MEDIUM | 6.4 | 0.1% | Mar 16, 2022 | In TBD of TBD, there is a possible user after free vulnerability due to a race condition. This could lead to local escal... |
| CVE-2021-39711 | MEDIUM | 4.4 | 0.1% | Mar 16, 2022 | In bpf_prog_test_run_skb of test_run.c, there is a possible out of bounds read due to Incorrect Size Value. This could l... |
| CVE-2021-39690 | MEDIUM | 5.5 | 0.1% | Mar 16, 2022 | In setDisplayPadding of WallpaperManagerService.java, there is a possible way to cause a persistent DoS due to improper ... |
| CVE-2021-39689 | MEDIUM | 6.7 | 0.1% | Mar 16, 2022 | In multiple functions of odsign_main.cpp, there is a possible way to persist system attack due to a logic error in the c... |
| CVE-2021-39667 | MEDIUM | 6.5 | 0.7% | Mar 16, 2022 | In ih264d_parse_decode_slice of ih264d_parse_slice.c, there is a possible out of bounds write due to a heap buffer overf... |
| CVE-2021-39624 | MEDIUM | 5.5 | 0.1% | Mar 16, 2022 | In PackageManager, there is a possible permanent denial of service due to resource exhaustion. This could lead to local ... |
| CVE-2021-33853 | MEDIUM | 5.4 | 0.6% | Mar 16, 2022 | A Cross-Site Scripting (XSS) attack can cause arbitrary code (javascript) to run in a user’s browser while the browser i... |
| CVE-2021-20257 | MEDIUM | 6.5 | 0.4% | Mar 16, 2022 | An infinite loop flaw was found in the e1000 NIC emulator of the QEMU. This issue occurs while processing transmits (tx)... |
| CVE-2021-20180 | MEDIUM | 5.5 | 0.3% | Mar 16, 2022 | A flaw was found in ansible module where credentials are disclosed in the console log by default and not protected by th... |
| CVE-2021-45787 | MEDIUM | 5.4 | 0.5% | Mar 16, 2022 | There is a stored Cross Site Scripting (XSS) vulnerability in maccms v10 through adding videos. XSS code can be inserted... |
| CVE-2021-42552 | MEDIUM | 6.1 | 0.7% | Mar 16, 2022 | Cross-site Scripting (XSS) vulnerability in ArchivistaBox webclient allows an attacker to craft a malicious link, execut... |
| CVE-2021-46705 | MEDIUM | 4.4 | 0.2% | Mar 16, 2022 | A Insecure Temporary File vulnerability in grub-once of grub2 in SUSE Linux Enterprise Server 15 SP4, openSUSE Factory a... |
| CVE-2021-45852 | MEDIUM | 5.3 | 0.7% | Mar 16, 2022 | An issue was discovered in Projectworlds Hospital Management System v1.0. Unauthorized malicious attackers can add patie... |
| CVE-2021-43956 | MEDIUM | 6.1 | 0.7% | Mar 16, 2022 | The jQuery deserialize library in Fisheye and Crucible before version 4.8.9 allowed remote attackers to to inject arbitr... |
| CVE-2021-43955 | MEDIUM | 4.3 | 0.8% | Mar 16, 2022 | The /rest-service-fecru/server-v1 resource in Fisheye and Crucible before version 4.8.9 allowed authenticated remote att... |
| CVE-2021-29134 | MEDIUM | 5.3 | 1.3% | Mar 15, 2022 | The avatar middleware in Gitea before 1.13.6 allows Directory Traversal via a crafted URL. |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now