2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22785 | HIGH | 7.5 | 1.1% | Feb 11, 2022 | A CWE-200: Information Exposure vulnerability exists that could cause sensitive information of files located in the web ... |
| CVE-2021-22748 | HIGH | 8.8 | 1.8% | Feb 11, 2022 | A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could... |
| CVE-2021-23597 | HIGH | 7.5 | 2.0% | Feb 11, 2022 | This affects the package fastify-multipart before 5.3.1. By providing a name=constructor property it is still possible t... |
| CVE-2021-35077 | HIGH | 7.8 | 0.2% | Feb 11, 2022 | Possible use after free scenario in compute offloads to DSP while multiple calls spawn a dynamic process in Snapdragon A... |
| CVE-2021-35075 | HIGH | 7.8 | 0.2% | Feb 11, 2022 | Possible null pointer dereference due to lack of WDOG structure validation during registration in Snapdragon Auto, Snapd... |
| CVE-2021-35074 | HIGH | 7.8 | 0.2% | Feb 11, 2022 | Possible integer overflow due to improper fragment datatype while calculating number of fragments in a request message i... |
| CVE-2021-35069 | HIGH | 7.8 | 0.2% | Feb 11, 2022 | Improper validation of data length received from DMA buffer can lead to memory corruption. in Snapdragon Auto, Snapdrago... |
| CVE-2021-30326 | HIGH | 7.5 | 0.6% | Feb 11, 2022 | Possible assertion due to improper size validation while processing the DownlinkPreemption IE in an RRC Reconfiguration/... |
| CVE-2021-30323 | HIGH | 7.8 | 0.2% | Feb 11, 2022 | Improper validation of maximum size of data write to EFS file can lead to memory corruption in Snapdragon Auto, Snapdrag... |
| CVE-2021-30322 | HIGH | 7.8 | 0.2% | Feb 11, 2022 | Possible out of bounds write due to improper validation of number of GPIOs configured in an internal parameters array in... |
| CVE-2021-30318 | HIGH | 7.8 | 0.1% | Feb 11, 2022 | Improper validation of input when provisioning the HDCP key can lead to memory corruption in Snapdragon Auto, Snapdragon... |
| CVE-2021-30317 | HIGH | 7.8 | 1.4% | Feb 11, 2022 | Improper validation of program headers containing ELF metadata can lead to image verification bypass in Snapdragon Auto,... |
| CVE-2021-30309 | HIGH | 7.8 | 0.1% | Feb 11, 2022 | Improper size validation of QXDM commands can lead to memory corruption in Snapdragon Compute, Snapdragon Consumer IOT, ... |
| CVE-2021-44892 | HIGH | 8.8 | 1.9% | Feb 10, 2022 | A Remote Code Execution (RCE) vulnerability exists in ThinkPHP 3.x.x via value[_filename] in index.php, which could let ... |
| CVE-2021-44454 | HIGH | 7.8 | 0.3% | Feb 9, 2022 | Improper input validation in a third-party component for Intel(R) Quartus(R) Prime Pro Edition before version 21.3 may a... |
| CVE-2021-40044 | HIGH | 8.8 | 0.3% | Feb 9, 2022 | There is a permission verification vulnerability in the Bluetooth module.Successful exploitation of this vulnerability m... |
| CVE-2021-39992 | HIGH | 7.8 | 0.2% | Feb 9, 2022 | There is an improper security permission configuration vulnerability on ACPU.Successful exploitation of this vulnerabili... |
| CVE-2021-37109 | HIGH | 7.8 | 0.2% | Feb 9, 2022 | There is a security protection bypass vulnerability with the modem.Successful exploitation of this vulnerability may cau... |
| CVE-2021-33137 | HIGH | 7.8 | 0.2% | Feb 9, 2022 | Out-of-bounds write in the Intel(R) Kernelflinger project may allow an authenticated user to potentially enable escalati... |
| CVE-2021-33129 | HIGH | 7.8 | 0.2% | Feb 9, 2022 | Incorrect default permissions in the software installer for the Intel(R) Advisor before version 2021.4.0 may allow an au... |
| CVE-2021-33115 | HIGH | 8.8 | 0.7% | Feb 9, 2022 | Improper input validation for some Intel(R) PROSet/Wireless WiFi in UEFI may allow an unauthenticated user to potentiall... |
| CVE-2021-33113 | HIGH | 8.1 | 0.7% | Feb 9, 2022 | Improper input validation for some Intel(R) PROSet/Wireless WiFi in multiple operating systems and Killer(TM) WiFi in Wi... |
| CVE-2021-33101 | HIGH | 7.8 | 0.2% | Feb 9, 2022 | Uncontrolled search path in the Intel(R) GPA software before version 21.2 may allow an authenticated user to potentially... |
| CVE-2021-26613 | HIGH | 7.5 | 0.8% | Feb 9, 2022 | improper input validation vulnerability in nexacro permits copying file to the startup folder using rename method. |
| CVE-2021-23152 | HIGH | 7.8 | 0.2% | Feb 9, 2022 | Improper access control in the Intel(R) Advisor software before version 2021.2 may allow an authenticated user to potent... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now