2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-4101HIGH8.8Heap buffer overflow in Swiftshader in Google Chrome prior to 96.0.4664.110 allowed a remote attacker to potentially exp...
CVE-2021-4100HIGH8.8Object lifecycle issue in ANGLE in Google Chrome prior to 96.0.4664.110 allowed a remote attacker to potentially exploit...
CVE-2021-4099HIGH8.8Use after free in Swiftshader in Google Chrome prior to 96.0.4664.110 allowed a remote attacker to potentially exploit h...
CVE-2021-4098HIGH7.4Insufficient data validation in Mojo in Google Chrome prior to 96.0.4664.110 allowed a remote attacker who had compromis...
CVE-2021-46366HIGH8.8An issue in the Login page of Magnolia CMS v6.2.3 and below allows attackers to exploit both an Open Redirect vulnerabil...
CVE-2021-46365HIGH7.8An issue in the Export function of Magnolia v6.2.3 and below allows attackers to execute XML External Entity attacks via...
CVE-2021-46364HIGH7.8A vulnerability in the Snake YAML parser of Magnolia CMS v6.2.3 and below allows attackers to execute arbitrary code via...
CVE-2021-46363HIGH7.8An issue in the Export function of Magnolia v6.2.3 and below allows attackers to perform Formula Injection attacks via c...
CVE-2021-39677HIGH7.5In startVideoStream() there is a possibility of an OOB Read in the heap, when the camera buffer is ‘zero’ in size.Produc...
CVE-2021-39676HIGH7.8In writeThrowable of AndroidFuture.java, there is a possible parcel serialization/deserialization mismatch due to improp...
CVE-2021-39674HIGH7.8In btm_sec_connected and btm_sec_disconnected of btm_sec.cc file , there is a possible use after free. This could lead t...
CVE-2021-39672HIGH7.8In fastboot, there is a possible secure boot bypass due to a configuration error. This could lead to local escalation of...
CVE-2021-39669HIGH7.8In onCreate of InstallCaCertificateWarning.java, there is a possible way to mislead an user about CA installation circum...
CVE-2021-39668HIGH7.8In onActivityViewReady of DetailDialog.kt, there is a possible Intent Redirect due to a confused deputy. This could lead...
CVE-2021-39663HIGH7.8In openFileAndEnforcePathPermissionsHelper of MediaProvider.java, there is a possible bypass of a permissions check due ...
CVE-2021-39662HIGH7.8In checkUriPermission of MediaProvider.java , there is a possible way to gain access to the content of media provider co...
CVE-2021-39619HIGH7.8In updatePackageMappingsData of UsageStatsService.java, there is a possible way to bypass security and privacy settings ...
CVE-2021-22824HIGH7.5A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could result in denial of service, due t...
CVE-2021-22806HIGH7.5A CWE-669: Incorrect Resource Transfer Between Spheres vulnerability exists that could cause data exfiltration and unaut...
CVE-2021-22804HIGH7.5A CWE-22: Improper Limitation of a Pathname to a Restricted Directory vulnerability exists that could cause disclosure o...
CVE-2021-22800HIGH7.5A CWE-20: Improper Input Validation vulnerability exists that could cause a Denial of Service when a crafted packet is s...
CVE-2021-22798HIGH7.5A CWE-522: Insufficiently Protected Credentials vulnerability exists that could cause Sensitive data such as login crede...
CVE-2021-22796HIGH7.8A CWE-287: Improper Authentication vulnerability exists that could allow remote code execution when a malicious file is ...
CVE-2021-22788HIGH7.5A CWE-787: Out-of-bounds Write vulnerability exists that could cause denial of service when an attacker sends a speciall...
CVE-2021-22787HIGH7.5A CWE-20: Improper Input Validation vulnerability exists that could cause denial of service of the device when an attack...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now