2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-0396 | CRITICAL | 9.8 | 1.9% | Mar 10, 2021 | In Builtins::Generate_ArgumentsAdaptorTrampoline of builtins-arm.cc and related files, there is a possible out of bounds... |
| CVE-2021-0395 | HIGH | 7.8 | 0.1% | Mar 10, 2021 | In StopServicesAndLogViolations of reboot.cpp, there is possible memory corruption due to a use after free. This could l... |
| CVE-2021-0394 | MEDIUM | 5.5 | 0.3% | Mar 10, 2021 | In android_os_Parcel_readString8 of android_os_Parcel.cpp, there is a possible out of bounds read due to a missing bound... |
| CVE-2021-0393 | HIGH | 7.8 | 1.0% | Mar 10, 2021 | In Scanner::LiteralBuffer::NewCapacity of scanner.cc, there is a possible out of bounds write due to an integer overflow... |
| CVE-2021-0392 | HIGH | 7.8 | 0.2% | Mar 10, 2021 | In main of main.cpp, there is a possible memory corruption due to a double free. This could lead to local escalation of ... |
| CVE-2021-0391 | HIGH | 7.8 | 0.7% | Mar 10, 2021 | In onCreate() of ChooseTypeAndAccountActivity.java, there is a possible way to learn the existence of an account, withou... |
| CVE-2021-0390 | HIGH | 7.8 | 0.2% | Mar 10, 2021 | In various methods of WifiNetworkSuggestionsManager.java, there is a possible modification of suggested networks due to ... |
| CVE-2021-0378 | MEDIUM | 6.5 | 0.8% | Mar 10, 2021 | In getNbits of pvmp3_getbits.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead ... |
| CVE-2021-0377 | MEDIUM | 5.5 | 0.1% | Mar 10, 2021 | In DeltaPerformer::Write of delta_performer.cc, there is a possible use of untrusted input due to improper input validat... |
| CVE-2021-0376 | HIGH | 7.8 | 0.1% | Mar 10, 2021 | In checkUriPermission and related functions of MediaProvider.java, there is a possible way to access external files due ... |
| CVE-2021-0375 | MEDIUM | 5.5 | 0.1% | Mar 10, 2021 | In onPackageModified of VoiceInteractionManagerService.java, there is a possible change of default applications due to a... |
| CVE-2021-0374 | MEDIUM | 4.4 | 0.1% | Mar 10, 2021 | In BnAudioPolicyService::onTransact of IAudioPolicyService.cpp, there is a possible out of bounds read due to a missing ... |
| CVE-2021-0372 | HIGH | 7.8 | 0.1% | Mar 10, 2021 | In getMediaOutputSliceAction of RemoteMediaSlice.java, there is a possible permission bypass due to an unsafe PendingInt... |
| CVE-2021-0371 | MEDIUM | 6.7 | 0.1% | Mar 10, 2021 | In nci_proc_rf_management_ntf of nci_hrcv.cc, there is a possible out of bounds read due to a missing bounds check. This... |
| CVE-2021-0370 | MEDIUM | 6.7 | 0.1% | Mar 10, 2021 | In Write of NxpMfcReader.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to l... |
| CVE-2021-0369 | HIGH | 7.8 | 0.1% | Mar 10, 2021 | In CrossProfileAppsServiceImpl.java, there is the possibility of an application's INTERACT_ACROSS_PROFILES grant state n... |
| CVE-2021-0368 | MEDIUM | 6.5 | 0.7% | Mar 10, 2021 | In oggpack_look of bitwise.c, there is a possible out of bounds read due to a missing bounds check. This could lead to r... |
| CVE-2021-28122 | CRITICAL | 9.8 | 4.0% | Mar 10, 2021 | A request-validation issue was discovered in Open5GS 2.1.3 through 2.2.x before 2.2.1. The WebUI component allows an una... |
| CVE-2021-21491 | MEDIUM | 6.1 | 0.7% | Mar 10, 2021 | SAP Netweaver Application Server Java (Applications based on WebDynpro Java) versions 7.00, 7.10, 7.11, 7.20, 7.30, 7.31... |
| CVE-2021-3224 | MEDIUM | 5.4 | 0.5% | Mar 10, 2021 | A stored cross-site scripting (XSS) vulnerability in cszcms 1.2.9 exists in /admin/pages/new via the content parameter. |
| CVE-2021-28007 | MEDIUM | 6.1 | 0.9% | Mar 10, 2021 | Web Based Quiz System 1.0 is affected by cross-site scripting (XSS) in register.php through the name parameter. |
| CVE-2021-20673 | MEDIUM | 4.8 | 0.8% | Mar 10, 2021 | Stored cross-site scripting vulnerability in Admin Page of GROWI (v4.2 Series) versions from v4.2.0 to v4.2.7 allows rem... |
| CVE-2021-20672 | MEDIUM | 6.1 | 0.9% | Mar 10, 2021 | Reflected cross-site scripting vulnerability due to insufficient verification of URL query parameters in GROWI (v4.2 Ser... |
| CVE-2021-20671 | HIGH | 7.2 | 1.8% | Mar 10, 2021 | Invalid file validation on the upload feature in GROWI versions v4.2.2 allows a remote attacker with administrative priv... |
| CVE-2021-20670 | HIGH | 7.5 | 1.5% | Mar 10, 2021 | Improper access control vulnerability in GROWI versions v4.2.2 and earlier allows a remote unauthenticated attacker to r... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now