2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-22889MEDIUM6.1Revive Adserver before v5.2.0 is vulnerable to a reflected XSS vulnerability in the `statsBreakdown` parameter of stats....
CVE-2021-22888MEDIUM6.1Revive Adserver before v5.2.0 is vulnerable to a reflected XSS vulnerability in the `status` parameter of campaign-zone-...
CVE-2021-3467MEDIUM5.5A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.26 handled component references in CDEF ...
CVE-2021-3466CRITICAL9.8A flaw was found in libmicrohttpd. A missing bounds check in the post_process_urlencoded function leads to a buffer over...
CVE-2021-3446MEDIUM5.5A flaw was found in libtpms in versions before 0.8.2. The commonly used integration of libtpms with OpenSSL contained a ...
CVE-2021-3443MEDIUM5.5A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.27 handled component references in the J...
CVE-2021-29096HIGH7.8A use-after-free vulnerability when parsing a specially crafted file in Esri ArcReader, ArcGIS Desktop, ArcGIS Engine 10...
CVE-2021-27195MEDIUM5.9Improper Authorization vulnerability in Netop Vision Pro up to and including to 9.7.1 allows an attacker to replay netwo...
CVE-2021-27194HIGH8.8Cleartext transmission of sensitive information in Netop Vision Pro up to and including 9.7.1 allows a remote unauthenti...
CVE-2021-27193CRITICAL9.8Incorrect default permissions vulnerability in the API of Netop Vision Pro up to and including 9.7.1 allows a remote una...
CVE-2021-27192HIGH7.8Local privilege escalation vulnerability in Windows clients of Netop Vision Pro up to and including 9.7.1 allows a local...
CVE-2021-26597MEDIUM6.5An issue was discovered in Nokia NetAct 18A. A remote user, authenticated to the NOKIA NetAct Web Page, can visit the Si...
CVE-2021-26596MEDIUM5.4An issue was discovered in Nokia NetAct 18A. A malicious user can change a filename of an uploaded file to include JavaS...
CVE-2021-20217HIGH7.5A flaw was found in Privoxy in versions before 3.0.31. An assertion failure triggered by a crafted CGI request may lead ...
CVE-2021-20216HIGH7.5A flaw was found in Privoxy in versions before 3.0.31. A memory leak that occurs when decompression fails unexpectedly m...
CVE-2021-20215HIGH7.5A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the show-status CGI handler when memory allocatio...
CVE-2021-20214HIGH7.5A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the client-tags CGI handler when client tags are ...
CVE-2021-20213HIGH7.5A flaw was found in Privoxy in versions before 3.0.29. Dereference of a NULL-pointer that could result in a crash if acc...
CVE-2021-20212HIGH7.5A flaw was found in Privoxy in versions before 3.0.29. Memory leak if multiple filters are executed and the last one is ...
CVE-2021-20211HIGH7.5A flaw was found in Privoxy in versions before 3.0.29. Memory leak when client tags are active can cause a system crash.
CVE-2021-20210HIGH7.5A flaw was found in Privoxy in versions before 3.0.29. Memory leak in the show-status CGI handler when no filter files a...
CVE-2021-25368HIGH7.5Hijacking vulnerability in Samsung Cloud prior to version 4.7.0.3 allows attackers to intercept when the provider is exe...
CVE-2021-25367MEDIUM5.4Path Traversal vulnerability in Samsung Notes prior to version 4.2.00.22 allows attackers to access local files without ...
CVE-2021-25366LOW2.9Improper access control in Samsung Internet prior to version 13.2.1.70 allows physically proximate attackers to bypass t...
CVE-2021-25355HIGH7.8Using unsafe PendingIntent in Samsung Notes prior to version 4.2.00.22 allows local attackers unauthorized action withou...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now