2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-3144CRITICAL9.1In SaltStack Salt before 3002.5, eauth tokens can be used once after expiration. (They might be used to run command agai...
CVE-2021-25284MEDIUM4.4An issue was discovered in through SaltStack Salt before 3002.5. salt.modules.cmdmod can log credentials to the info or ...
CVE-2021-25283CRITICAL9.8An issue was discovered in through SaltStack Salt before 3002.5. The jinja renderer does not protect against server side...
CVE-2021-25282CRITICAL9.1An issue was discovered in through SaltStack Salt before 3002.5. The salt.wheel.pillar_roots.write method is vulnerable ...
CVE-2021-25281CRITICAL9.8An issue was discovered in through SaltStack Salt before 3002.5. salt-api does not honor eauth credentials for the wheel...
CVE-2021-27803HIGH7.5A vulnerability was discovered in how p2p/p2p_pd.c in wpa_supplicant before 2.10 processes P2P (Wi-Fi Direct) provision ...
CVE-2021-27198CRITICAL9.8An issue was discovered in Visualware MyConnection Server before v11.1a. Unauthenticated Remote Code Execution can occur...
CVE-2021-27799HIGH7.5ean_leading_zeroes in backend/upcean.c in Zint Barcode Generator 2.9.1 has a stack-based buffer overflow that is reachab...
CVE-2021-26567HIGH7.8Stack-based buffer overflow vulnerability in frontend/main.c in faad2 before 2.2.7.1 allow local attackers to execute ar...
CVE-2021-26566CRITICAL9Insertion of sensitive information into sent data vulnerability in synorelayd in Synology DiskStation Manager (DSM) befo...
CVE-2021-26565MEDIUM5.9Cleartext transmission of sensitive information vulnerability in synorelayd in Synology DiskStation Manager (DSM) before...
CVE-2021-26564HIGH8.7Cleartext transmission of sensitive information vulnerability in synorelayd in Synology DiskStation Manager (DSM) before...
CVE-2021-26563MEDIUM6.7Incorrect authorization vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM) before 6.2.4-25553 all...
CVE-2021-26562HIGH8.1Out-of-bounds write vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allow...
CVE-2021-26561HIGH8.1Stack-based buffer overflow vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM) before 6.2.3-25426...
CVE-2021-26560HIGH7.4Cleartext transmission of sensitive information vulnerability in synoagentregisterd in Synology DiskStation Manager (DSM...
CVE-2021-21309HIGH8.8Redis is an open-source, in-memory database that persists on disk. In affected versions of Redis an integer overflow bug...
CVE-2021-0406MEDIUM6.7In cameraisp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation...
CVE-2021-0405MEDIUM6.7In performance driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local e...
CVE-2021-0404MEDIUM4.4In mobile_log_d, there is a possible information disclosure due to improper input validation. This could lead to local i...
CVE-2021-0403MEDIUM4.4In netdiag, there is a possible information disclosure due to a missing permission check. This could lead to local infor...
CVE-2021-0402MEDIUM6.7In jpeg, there is a possible out of bounds write due to improper input validation. This could lead to local escalation o...
CVE-2021-0401MEDIUM6.4In vow, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege ...
CVE-2021-0367MEDIUM6.4In vpu, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege ...
CVE-2021-0366MEDIUM6.4In vpu, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now