2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-1729HIGH7.1Windows Update Stack Setup Elevation of Privilege Vulnerability
CVE-2021-1640HIGH7.8Windows Print Spooler Elevation of Privilege Vulnerability
CVE-2021-28132CRITICAL9.8LUCY Security Awareness Software through 4.7.x allows unauthenticated remote code execution because the Migration Tool (...
CVE-2021-21378HIGH8.2Envoy is a cloud-native high-performance edge/middle/service proxy. In Envoy version 1.17.0 an attacker can bypass authe...
CVE-2021-21364MEDIUM5.5swagger-codegen is an open-source project which contains a template-driven engine to generate documentation, API clients...
CVE-2021-21363HIGH7swagger-codegen is an open-source project which contains a template-driven engine to generate documentation, API clients...
CVE-2021-28134CRITICAL9.8Clipper before 1.0.5 allows remote command execution. A remote attacker may send a crafted IPC message to the exposed vu...
CVE-2021-27919MEDIUM5.5archive/zip in Go 1.16.x before 1.16.1 allows attackers to cause a denial of service (panic) upon attempted use of the R...
CVE-2021-27918HIGH7.5encoding/xml in Go before 1.15.9 and 1.16.x before 1.16.1 has an infinite loop if a custom TokenReader (for xml.NewToken...
CVE-2021-21375MEDIUM6.5PJSIP is a free and open source multimedia communication library written in C language implementing standard based proto...
CVE-2021-21371HIGH8.6Tenable for Jira Cloud is an open source project designed to pull Tenable.io vulnerability data, then generate Jira Task...
CVE-2021-21334MEDIUM6.3In containerd (an industry-standard container runtime) before versions 1.3.10 and 1.4.4, containers launched through con...
CVE-2021-21265HIGH7.5October is a free, open-source, self-hosted CMS platform based on the Laravel PHP Framework. In October before version 1...
CVE-2021-3034MEDIUM5.1An information exposure through log file vulnerability exists in Cortex XSOAR software where the secrets configured for ...
CVE-2021-21772HIGH8.1A use-after-free vulnerability exists in the NMR::COpcPackageReader::releaseZIP() functionality of 3MF Consortium lib3mf...
CVE-2021-20205MEDIUM6.5Libjpeg-turbo versions 2.0.91 and 2.0.90 is vulnerable to a denial of service vulnerability caused by a divide by zero w...
CVE-2021-0465HIGH7.8In GenerateFaceMask of face.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lea...
CVE-2021-0464HIGH7.8In sound_trigger_event_alloc of platform.h, there is a possible out of bounds write due to a heap buffer overflow. This ...
CVE-2021-0463MEDIUM5.5In convertToHidl of convert.cpp, there is a possible out of bounds read due to uninitialized data from ReturnFrameworkMe...
CVE-2021-0462MEDIUM6.7In the NXP NFC firmware, there is a possible insecure firmware update due to a logic error. This could lead to local esc...
CVE-2021-0461MEDIUM6.7In iaxxx_core_sensor_change_state of iaxxx-module.c, there is a possible out of bounds write due to a missing bounds che...
CVE-2021-0460MEDIUM4.4In the FingerTipS touch screen driver, there is a possible out of bounds read due to an integer overflow. This could lea...
CVE-2021-0459MEDIUM4.4In fts_driver_test_write of fts_proc.c, there is a possible out of bounds read due to a missing bounds check. This could...
CVE-2021-0458MEDIUM4.4In the FingerTipS touch screen driver, there is a possible out of bounds read due to an integer overflow. This could lea...
CVE-2021-0457MEDIUM6.7In the FingerTipS touch screen driver, there is a possible out of bounds write due to a heap buffer overflow. This could...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now