2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-3144 | CRITICAL | 9.1 | 5.2% | Feb 27, 2021 | In SaltStack Salt before 3002.5, eauth tokens can be used once after expiration. (They might be used to run command agai... |
| CVE-2021-25284 | MEDIUM | 4.4 | 0.5% | Feb 27, 2021 | An issue was discovered in through SaltStack Salt before 3002.5. salt.modules.cmdmod can log credentials to the info or ... |
| CVE-2021-25283 | CRITICAL | 9.8 | 10.4% | Feb 27, 2021 | An issue was discovered in through SaltStack Salt before 3002.5. The jinja renderer does not protect against server side... |
| CVE-2021-25282 | CRITICAL | 9.1 | 92.3% | Feb 27, 2021 | An issue was discovered in through SaltStack Salt before 3002.5. The salt.wheel.pillar_roots.write method is vulnerable ... |
| CVE-2021-25281 | CRITICAL | 9.8 | 72.9% | Feb 27, 2021 | An issue was discovered in through SaltStack Salt before 3002.5. salt-api does not honor eauth credentials for the wheel... |
| CVE-2021-27803 | HIGH | 7.5 | 1.2% | Feb 26, 2021 | A vulnerability was discovered in how p2p/p2p_pd.c in wpa_supplicant before 2.10 processes P2P (Wi-Fi Direct) provision ... |
| CVE-2021-27198 | CRITICAL | 9.8 | 13.6% | Feb 26, 2021 | An issue was discovered in Visualware MyConnection Server before v11.1a. Unauthenticated Remote Code Execution can occur... |
| CVE-2021-27799 | HIGH | 7.5 | 2.4% | Feb 26, 2021 | ean_leading_zeroes in backend/upcean.c in Zint Barcode Generator 2.9.1 has a stack-based buffer overflow that is reachab... |
| CVE-2021-26567 | HIGH | 7.8 | 1.1% | Feb 26, 2021 | Stack-based buffer overflow vulnerability in frontend/main.c in faad2 before 2.2.7.1 allow local attackers to execute ar... |
| CVE-2021-26566 | CRITICAL | 9 | 1.4% | Feb 26, 2021 | Insertion of sensitive information into sent data vulnerability in synorelayd in Synology DiskStation Manager (DSM) befo... |
| CVE-2021-26565 | MEDIUM | 5.9 | 0.7% | Feb 26, 2021 | Cleartext transmission of sensitive information vulnerability in synorelayd in Synology DiskStation Manager (DSM) before... |
| CVE-2021-26564 | HIGH | 8.7 | 0.6% | Feb 26, 2021 | Cleartext transmission of sensitive information vulnerability in synorelayd in Synology DiskStation Manager (DSM) before... |
| CVE-2021-26563 | MEDIUM | 6.7 | 0.5% | Feb 26, 2021 | Incorrect authorization vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM) before 6.2.4-25553 all... |
| CVE-2021-26562 | HIGH | 8.1 | 1.7% | Feb 26, 2021 | Out-of-bounds write vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allow... |
| CVE-2021-26561 | HIGH | 8.1 | 1.9% | Feb 26, 2021 | Stack-based buffer overflow vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM) before 6.2.3-25426... |
| CVE-2021-26560 | HIGH | 7.4 | 0.7% | Feb 26, 2021 | Cleartext transmission of sensitive information vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM... |
| CVE-2021-21309 | HIGH | 8.8 | 4.9% | Feb 26, 2021 | Redis is an open-source, in-memory database that persists on disk. In affected versions of Redis an integer overflow bug... |
| CVE-2021-0406 | MEDIUM | 6.7 | 0.1% | Feb 26, 2021 | In cameraisp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation... |
| CVE-2021-0405 | MEDIUM | 6.7 | 0.1% | Feb 26, 2021 | In performance driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local e... |
| CVE-2021-0404 | MEDIUM | 4.4 | 0.1% | Feb 26, 2021 | In mobile_log_d, there is a possible information disclosure due to improper input validation. This could lead to local i... |
| CVE-2021-0403 | MEDIUM | 4.4 | 0.1% | Feb 26, 2021 | In netdiag, there is a possible information disclosure due to a missing permission check. This could lead to local infor... |
| CVE-2021-0402 | MEDIUM | 6.7 | 0.1% | Feb 26, 2021 | In jpeg, there is a possible out of bounds write due to improper input validation. This could lead to local escalation o... |
| CVE-2021-0401 | MEDIUM | 6.4 | 0.1% | Feb 26, 2021 | In vow, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege ... |
| CVE-2021-0367 | MEDIUM | 6.4 | 0.1% | Feb 26, 2021 | In vpu, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege ... |
| CVE-2021-0366 | MEDIUM | 6.4 | 0.1% | Feb 26, 2021 | In vpu, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now