2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-0396CRITICAL9.8In Builtins::Generate_ArgumentsAdaptorTrampoline of builtins-arm.cc and related files, there is a possible out of bounds...
CVE-2021-0395HIGH7.8In StopServicesAndLogViolations of reboot.cpp, there is possible memory corruption due to a use after free. This could l...
CVE-2021-0394MEDIUM5.5In android_os_Parcel_readString8 of android_os_Parcel.cpp, there is a possible out of bounds read due to a missing bound...
CVE-2021-0393HIGH7.8In Scanner::LiteralBuffer::NewCapacity of scanner.cc, there is a possible out of bounds write due to an integer overflow...
CVE-2021-0392HIGH7.8In main of main.cpp, there is a possible memory corruption due to a double free. This could lead to local escalation of ...
CVE-2021-0391HIGH7.8In onCreate() of ChooseTypeAndAccountActivity.java, there is a possible way to learn the existence of an account, withou...
CVE-2021-0390HIGH7.8In various methods of WifiNetworkSuggestionsManager.java, there is a possible modification of suggested networks due to ...
CVE-2021-0378MEDIUM6.5In getNbits of pvmp3_getbits.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead ...
CVE-2021-0377MEDIUM5.5In DeltaPerformer::Write of delta_performer.cc, there is a possible use of untrusted input due to improper input validat...
CVE-2021-0376HIGH7.8In checkUriPermission and related functions of MediaProvider.java, there is a possible way to access external files due ...
CVE-2021-0375MEDIUM5.5In onPackageModified of VoiceInteractionManagerService.java, there is a possible change of default applications due to a...
CVE-2021-0374MEDIUM4.4In BnAudioPolicyService::onTransact of IAudioPolicyService.cpp, there is a possible out of bounds read due to a missing ...
CVE-2021-0372HIGH7.8In getMediaOutputSliceAction of RemoteMediaSlice.java, there is a possible permission bypass due to an unsafe PendingInt...
CVE-2021-0371MEDIUM6.7In nci_proc_rf_management_ntf of nci_hrcv.cc, there is a possible out of bounds read due to a missing bounds check. This...
CVE-2021-0370MEDIUM6.7In Write of NxpMfcReader.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to l...
CVE-2021-0369HIGH7.8In CrossProfileAppsServiceImpl.java, there is the possibility of an application's INTERACT_ACROSS_PROFILES grant state n...
CVE-2021-0368MEDIUM6.5In oggpack_look of bitwise.c, there is a possible out of bounds read due to a missing bounds check. This could lead to r...
CVE-2021-28122CRITICAL9.8A request-validation issue was discovered in Open5GS 2.1.3 through 2.2.x before 2.2.1. The WebUI component allows an una...
CVE-2021-21491MEDIUM6.1SAP Netweaver Application Server Java (Applications based on WebDynpro Java) versions 7.00, 7.10, 7.11, 7.20, 7.30, 7.31...
CVE-2021-3224MEDIUM5.4A stored cross-site scripting (XSS) vulnerability in cszcms 1.2.9 exists in /admin/pages/new via the content parameter.
CVE-2021-28007MEDIUM6.1Web Based Quiz System 1.0 is affected by cross-site scripting (XSS) in register.php through the name parameter.
CVE-2021-20673MEDIUM4.8Stored cross-site scripting vulnerability in Admin Page of GROWI (v4.2 Series) versions from v4.2.0 to v4.2.7 allows rem...
CVE-2021-20672MEDIUM6.1Reflected cross-site scripting vulnerability due to insufficient verification of URL query parameters in GROWI (v4.2 Ser...
CVE-2021-20671HIGH7.2Invalid file validation on the upload feature in GROWI versions v4.2.2 allows a remote attacker with administrative priv...
CVE-2021-20670HIGH7.5Improper access control vulnerability in GROWI versions v4.2.2 and earlier allows a remote unauthenticated attacker to r...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now